Migration Overview
SimplePerm's migration wizard converts Salesforce profile permissions into permission sets. You walk through a guided process that handles the entire conversion in minutes -- no manual recreation needed.
Why Migrate Profiles to Permission Sets?
Salesforce is moving away from profiles as the primary way to manage permissions. Permission sets are more flexible: you can mix and match them, assign multiple sets to a single user, and follow a least-privilege model where users only get the access they actually need.
But migrating manually is tedious. A single profile can have hundreds of individual permissions across objects, fields, system settings, tabs, and more. Doing that by hand means hours of clicking and a real risk of missing something. SimplePerm automates the whole thing.
What Gets Migrated
SimplePerm covers 13 permission types -- essentially everything that has a permission set equivalent:
| Permission Type | What It Covers |
|---|---|
| Object Permissions | Create, Read, Edit, Delete, View All, Modify All access on standard and custom objects |
| Field Permissions | Field-level security (read and edit access) for every field on every object |
| System/User Permissions | Administrative and user permissions like "Manage Users" or "View Setup" |
| Tab Settings | Which tabs are visible, hidden, or set as default |
| Apex Class Access | Access to specific Apex classes |
| Visualforce Page Access | Access to specific Visualforce pages |
| Custom Permissions | Custom permission flags used by apps and automations |
| Record Type Visibilities | Which record types are visible for each object |
| Flow Access | Access to run specific flows (Screen Flows, Autolaunched, Record-Triggered) |
| Custom Metadata Type Access | Access to specific custom metadata types |
| Custom Setting Access | Access to specific custom settings |
| External Data Source Access | Access to external data sources |
| App Visibilities | Which Lightning apps are visible (retrieved via Metadata API) |
What Doesn't Get Migrated
A few profile settings have no permission set equivalent. These are profile-only concepts:
- Login Hours -- IP-restricted login time windows
- Login IP Ranges -- IP address restrictions
- Layout Assignments -- Page layout assignments per record type
SimplePerm flags these in the preview step so you're aware, but they can't be moved to a permission set -- Salesforce doesn't support it.
The 7-Step Wizard
Here's what the wizard looks like end to end:
- Select Profiles -- Pick which profiles to migrate (up to 5 at once)
- Configure Permission Types -- Choose which of the 13 types to include
- Preview Migration -- Review exactly what will be created before anything changes
- Resolve Conflicts -- Handle name collisions if a permission set already exists
- Run Migration -- Execute the migration and watch progress in real time
- View Results -- See what succeeded, what failed, and why
- Assign Users -- Optionally assign the new permission sets to users
The following pages walk through each step in detail.