impulsum
Force360
Privacy policy

Last updated: May 27, 2026

Impulsum Force360 Privacy Policy

This policy explains how Impulsum Force360 handles local Salesforce workspace data, Salesforce-hosted OAuth, protected token storage, and Setapp distribution data.

Product Scope

Impulsum Force360 is a macOS desktop app for Salesforce professionals who manage Salesforce organizations from a local desktop workspace. The Setapp build is distributed through Setapp and uses Salesforce-hosted OAuth for organization authorization.

Data We Process

Impulsum Force360 may store local app data needed to operate the desktop workspace, including connected organization names, usernames, Salesforce org IDs, instance URLs, API version preferences, query history, snippets, and local app settings.

When you connect a Salesforce organization, authentication happens on Salesforce-hosted login and consent pages. Impulsum Force360 does not ask you to enter Salesforce credentials directly into the app. By default, OAuth uses Salesforce PlatformCLI for broad org compatibility. Enterprise teams may configure a custom Connected App client ID when their Salesforce admin policy requires it.

Salesforce Tokens

On macOS, newly written Salesforce access token and refresh token values are protected with macOS Keychain. The local SQLite database stores app records and token references instead of newly written raw token values. Legacy local obfuscation support may remain only so existing local data can be read during migration.

Local-First Storage

Impulsum Force360 is designed as a local desktop productivity app. Salesforce org metadata and workflow data are used to power local features such as org management, SOQL exploration, schema inspection, logs, Apex tests, deployments, data operations, flows, permissions, and scratch org workflows.

Setapp Distribution

The Setapp build uses Setapp for distribution, subscription entitlement, and update ownership. Setapp may process subscription and installation information under Setapp's own terms and privacy policy. Impulsum Force360 may report non-blocking Setapp usage events required for Setapp attribution.

Data Sharing

Impulsum Force360 uses Salesforce APIs only for workflows you initiate after connecting an org. The app does not sell Salesforce data. Any future external service integration should be documented in this policy before release.

User Controls

You can remove connected organizations from the app. Removing an organization should remove local org records and associated protected token material. You can also revoke Salesforce OAuth access from Salesforce setup or connected app usage controls.

Support Contact

For privacy or support questions, contact Impulsum at hello@impulsum.ai.