Overview
This article provides the necessary information to complete a security review of the People.ai platform. You can find the required IP ranges for your firewall, clarification on application behaviour within Salesforce, and answers to other common security questions.
How to configure your firewall for People.ai services
To ensure proper communication, you must add specific People.ai IP ranges to your organization's firewall allow list.
Follow this procedure to update your firewall rules:
Navigate to your firewall configuration settings.
Add the following IP ranges to your allow list:
People.ai Production Environment (US-East-1)
35.174.76.124/3234.206.190.238/3234.236.123.133/32
PeopleGlass Production Environment (US-West-2)
100.20.91.88/3254.245.186.172/3254.214.81.150/32
Save your changes.
To ensure continuous service, People.ai will proactively notify you of any future changes to these IP ranges, providing you with ample time to update your firewall configurations.
Understanding application behaviour in Salesforce
The People.ai integration includes several components that operate in specific ways within the Salesforce ecosystem.
Use this list to understand the behaviour of each application:
People.ai Canvas App - This application is embedded within a Salesforce
iframeand authenticates users via SAML. Any necessary communication from this app will use the People.ai Production Environment IP ranges listed in the section above.ClosePlan Connected App - This app is designed for internal Salesforce use only and does not communicate externally. For this reason, whitelisting is not necessary for this application to function.
PeopleGlass App (User Login) - This app manages user authentication for the PeopleGlass application. You should focus on this app if your users are reporting errors when logging in to PeopleGlass.
Other Important Information
This section addresses common concerns about the security of your People.ai integration.
Data Access Restrictions - You have complete control over data access through Salesforce Profiles and Permission Sets. We encourage reviewing the permissions granted to the People.ai integration user to ensure they meet your business and security policies.
Sandbox Availability - Our solution is compatible with Salesforce Sandbox environments; however, our Services and Implementation team can advise on whether that is the best approach for field testing solutions for your business.
OAuth Token Management - The Canvas App uses SAML. For services that do use OAuth (like PeopleGlass), our client is engineered to automatically refresh tokens without interrupting the user, ensuring a seamless experience.
Ongoing Support - For any further questions, our technical support team is here to help. You can reach us at support@people.ai.
