ALERT
Updated November 1st, 2025
Who is affected?
- All instances with TaroWorks installed, including clients who implemented the workaround provided in September.
What is TaroWorks doing to resolve the issue?
- We have worked closely with Salesforce to identify a solution to eliminate the reliance on the permission so as to prevent mobile users from encountering authentication issues after Salesforce deprecates "Use Any API Client" User Permission. The deprecation, originally set for November 4, 2025, has now been postponed to december the 8th
- The solution involves upgrading to the next TaroWorks version and adding TaroWorks as a Trusted Connected App.
What can you do?
- ALL CLIENTS must upgrade to their next highest TaroWorks version if they have not done so since September 2025.
- Install TaroWorks as a Trusted Connected App.
- Test Test Test. Before launching any initiatives and best practices in general, please make sure you test mobile user access.
- If you had implemented the workaround provided in September, follow these additional steps:
- Delete the Permission Set previously created with the Permission “Use Any API Client.”
- Test to confirm successful login and sync.
- If you have any questions or need assistance, Contact TaroWorks Support.
Updated September 19th, 2025
Who is affected?
- New Mobile Users created around the timeframe Salesforce introduced these changes.
- Some clients have reported that this issue persists for existing users as well.
What is TaroWorks doing to resolve the issue?
- We have worked with Salesforce and identified a workaround to unblock the mobile users for now, as we explore a long-term fix. The workaround involves enabling the API Access Control Permission, which Salesforce has effected for all our client instances.
What can you do?
- Confirm that the API Access Control Permission is enabled in your Salesforce Instance by searching for “API Access Control” in the Quick Find in Set up.
- In case this is not enabled, please reach out to us so that we can coordinate with Salesforce to have this enabled.
- Create a new Permission Set with the Permission “Use Any API Client” (this permission should be visible after "API Access Control" is enabled in the org)
- Assign the new Permission Set to every partner community/platform/standard user in order to allow login with OAuth for the TaroWorks mobile app.
- Open a TaroWorks Support ticket if you need any support in handling this issue.
- Test Test Test. Before launching any initiatives, and best practice in general, please make sure you test mobile user access.
Comments
0 comments
Article is closed for comments.