Privacy
What Group Watch for Confluence stores, where, and for how long.
The short version
- Your data stays in Atlassian's Forge storage, inside Atlassian's cloud.
- Nothing leaves Atlassian. The app has no outside servers and makes no outside calls.
- We store account ids, group names, and the titles of the pages and spaces your rules point at. We store no one's name or email address.
- When someone closes their Atlassian account, the app erases their account id within about a week.
- Atlassian deletes everything when you uninstall the app.
- We (Gold Standard Web) can't see your data.
What we store
- Account ids (Atlassian's random ids for people): who is covered by a watch the app added, who opted out, and which admin changed a rule.
- Group ids, and the group names picked in each rule, so the rules list is readable.
- Page and space ids, space keys, and the title of the page or space each rule targets.
- Rule settings: target type, Required on or off, status.
- Sync history: times, counts (added, removed, skipped), and short error messages from Confluence.
- Activity log: which account id did what to which rule, and when.
- App settings: sync frequency, big-rule limits, pause switch.
We don't store page content, comments, names or email addresses.
What we read but don't keep
To do its job the app reads, through Confluence's own API: group member lists, who can view a page, who watches a page, the list of child pages, and how many times pages were edited in the last 30 days (for the email estimate). These are used during a sync and not stored, except as the ids and counts above.
Where it lives
In Atlassian's Forge storage for your site. Forge is Atlassian's app platform, so the data is held under Atlassian's own security and data residency. The app has no servers of its own and sends nothing outside Atlassian.
Who can see it
Your Confluence admins, and space admins if you allow it, through the app's admin pages. We can't read your stored data. If you contact support, we only see what you send us.
How long we keep it
Until you uninstall. On uninstall, Atlassian deletes the app's storage. For 21 days after, if you reinstall, you can ask Atlassian to reconnect the old data. After that it's gone for good.
Each week the app tells Atlassian which account ids it holds, as Atlassian requires. If an account has been closed, the app erases that id: it deletes the person's watch records and opt-outs, and shows "A closed account" in the activity log.
Support emails
If you email hello@goldstandardweb.com, we keep that conversation to help you, and delete it on request.
Questions
Email hello@goldstandardweb.com.