Skip to main content
Nintex Community Menu Bar

Action required: Salesforce security change may require reauthorisation of idle workflow connections

  • August 28, 2026
  • 0 replies
  • 9 views

Forum|alt.badge.img+1

Salesforce is implementing a security change that affects OAuth refresh tokens used by integrations, including Nintex Workflow Salesforce connections. 

What is changing? 

Salesforce will invalidate refresh tokens that have not been used for 30 consecutive days. As a result, Salesforce connections in Nintex Workflow that remain inactive for more than 30 days may require reauthorization before they can be used again.  

Who is affected? 

This applies to customers using the Salesforce connector in Nintex Workflow, particularly those who use it infrequently. 

What happens if a connection becomes inactive? 

If a Salesforce connection is not used for more than 30 consecutive days: 

  • The refresh token may expire. 

  • Workflow actions using that connection may pause (if error handling is enabled) or fail. 

  • The connection may need to be reauthorized before workflows can successfully execute again. 

Recommended actions 

To avoid disruption, we recommend one of the following: 

Option 1: Create a scheduled workflow 

Create a scheduled workflow that runs periodically (for example, every 25 days) and performs a Salesforce action using the connection. This will keep the connection active and prevent token expiration. 

Option 2: Use a Salesforce Start Event 

If applicable, configure a Salesforce Start Event. The polling activity associated with the start event will continue using the connection and help keep it active. 

Timeline 

This change will be enabled in Nintex Workflow Commercial environments beginning 24th August 2026.  

Need help? 

If you're unsure whether your workflows may be affected, contact your account managers or support@nintex.com for guidance.