SF-Admin Agentforce AI Practice Question
An administrator needs to ensure that an Agentforce agent only accesses specific knowledge articles relevant to a customer's issue. Which configuration step is required to enforce these boundaries?
⚠ Common exam trap
Candidates often assume that standard Profile or Permission Set access automatically limits AI retrieval. However, Agentforce requires explicit configuration within the Agent Builder to define data sources and retrieval filters.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Add Knowledge as a data source in Agent Builder and define retrieval filters.
To control agent access, administrators must configure Knowledge as a data source within the Agentforce builder. By applying filters based on category or publication status, you ensure the AI retrieves only verified, relevant documentation. This is critical for maintaining data accuracy and preventing the agent from hallucinating based on irrelevant or outdated internal documents while interacting with external customers.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Enable Einstein GPT for Knowledge in the Setup menu.
Why it's wrong here
Enabling Einstein GPT is a prerequisite for broader generative features but does not provide the granular filtering required to restrict specific knowledge articles. You must specifically configure the data source integration within the agent builder to define scope, metadata filters, and access controls for the AI retrieval process.
- ✗
Assign the 'Agent Knowledge Reader' permission set to the agent profile.
Why it's wrong here
While permission sets manage user-level access, Agentforce operates using a defined service user context. Assigning a permission set to a user does not inherently define the search scope or filter logic for the agent's retrieval-augmented generation process, which requires data source configuration within the specific agent builder interface.
- ✓
Add Knowledge as a data source in Agent Builder and define retrieval filters.
Why this is correct
Defining Knowledge as a data source within the Agentforce builder allows for the application of specific filters. These filters ensure the agent only queries articles matching defined criteria, which is the standard mechanism for restricting the retrieval-augmented generation scope and ensuring the AI provides accurate, contextually relevant information.
- ✗
Update the sharing rules for all knowledge articles to public read-only.
Why it's wrong here
Modifying org-wide sharing rules is an inefficient and potentially insecure method for controlling agent behavior. It exposes sensitive documents to unauthorized users across the platform rather than restricting the agent's programmatic access. Proper configuration should always be handled within the Agentforce toolset using localized data source filtering.
About these practice questions
Courseiva writes every SF-Admin question from scratch — 202 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Salesforce exam blueprint
This SF-Admin practice question is part of Courseiva's free Salesforce certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SF-Admin exam.