Freeze user account in Salesforce
Automatically freeze a Salesforce user from a Slack request with Stepwork. Sign-in is blocked at once, while their records and settings stay as they are.
- Use case
- Employee offboardingIT
- Best for
- Salesforce Administrator, IT Manager
- Applications used
Salesforce
Slack
- Business outcome
- Risk reduction
The problem
Deactivation can wait. Access can’t.
Some Salesforce users can’t be deactivated straight away. They own records that need a new home, or they are set as a default owner somewhere, and Salesforce stops the change until that is fixed.
Meanwhile the account stays live. For a sudden departure, that is the riskiest window, and it can last days while the cleanup gets done.
The outcome
Sign-in stops now. The cleanup can take its time.
Stepwork freezes the Salesforce user, so they can no longer sign in. Their records, settings, and license stay as they are until the rest of employee offboarding is done. The run records who asked and when the account was frozen.
- Sign-in is blocked as soon as the run finishes.
- Nothing the user owns is changed.
- The Slack reply confirms the account is frozen.
The process
From Slack request to frozen account
A teammate posts the request in Slack. Stepwork freezes the user in Salesforce Setup, without changing anything else.
- Step 1
Request it in Slack
A teammate posts the person’s work email in the offboarding channel. That message starts the flow, and Stepwork records who asked and when.

- Step 2
Find the user in Setup
Stepwork signs in to Salesforce and opens Users in Setup. If no user has that email, or more than one does, the run stops instead of guessing.

- Step 3
Freeze the account
Stepwork opens the user and selects Freeze, the same button a Salesforce admin uses. Sign-in is blocked straight away.

- Step 4
Confirm and reply in Slack
Stepwork checks that the user shows as frozen, then posts the result back in Slack with a timestamp.

Why Stepwork
A freeze stays a freeze
A deterministic agent runs only the steps you recorded. This path freezes the user and stops. It does not deactivate them or move their records, so the cleanup happens when you choose.
Similar use cases
Similar use cases
Deactivate user in SalesforceSigns into Salesforce Setup, locates the user, and deactivates the account, freeing the license.
Reassign a departing user’s Salesforce recordsTransfers accounts, open opportunities, and cases owned by a departing user to a named colleague.
Disable user account in Microsoft Entra IDSigns into the Entra admin center, locates the user, and blocks sign-in, disabling the account across Microsoft services.
FAQ





