Privacy policy
RepoPages for Confluence · effective 2026-10-07, updated 2026-10-07 (website analytics)
RepoPages for Confluence ("RepoPages", "the app") is an app for Atlassian Confluence Cloud, developed and operated by Filip Zoričić ("the developer"). It is built on Atlassian Forge and runs entirely on Atlassian's infrastructure. This policy describes what data the app handles, where it is kept and who can see it.
What the app does
Your continuous-integration system (CI) sends Markdown files and rendered diagram images from your Git repository to the app, signed with a secret you created in Confluence. The app writes them as pages and attachments into a Confluence space you chose. The app never connects to your Git host or to any other system outside Atlassian.
Data the app receives
With every push from your CI, the app receives: the repository name, the branch and commit identifier, the paths and contents of the Markdown files that changed, images rendered from diagram blocks in those files, and a signature. The contents are converted into Confluence pages and attachments in your site and are not kept by the app in any other form.
Data the app stores
The app keeps a small amount of configuration and bookkeeping data in Atlassian's app storage for your Confluence site (Forge storage), separately for each installation:
| Data | Purpose |
|---|---|
| Mappings: repository name, folder, target space, optional parent page, include and exclude patterns | To know where each repository's pages go |
| One signing secret per repository, in Forge's secret storage | To verify that a push really comes from your CI |
| For each synced file: its path, the id of its Confluence page and a hash of its content | To update the right page and skip unchanged files |
| Run summaries: counts of created, updated and archived pages, the paths of files that failed and the error message, the status and time of the last request | To show the sync status on the settings screen |
The app does not store copies of your documents, user profiles, or any data about the people who read the pages.
Logs
The app writes operational log lines to Atlassian's Forge logging for the app. A log line can contain the repository name, the commit identifier, file paths and error messages. Log lines never contain file contents or secrets. Logs are retained by Atlassian according to the Forge platform's log retention.
Where data is processed
All processing happens inside Atlassian's Forge platform in the region of your Confluence site, under Atlassian's privacy policy and trust commitments. The app has no outbound network access: it does not send data to the developer, to third parties, to analytics services or to any server outside Atlassian. The app is eligible for Atlassian's "Runs on Atlassian" program for this reason.
Who can access the data
Pages and attachments written by the app belong to your Confluence site and are governed by your site's permissions. Configuration data on the settings screen is visible to Confluence administrators of your site. The developer can see the app's logs and aggregated metrics through the Atlassian developer console, which includes repository names and file paths but not contents. The developer does not access the stored data of an installation except to investigate a support request you have raised, using tooling provided by Atlassian.
Data retention and deletion
Pages and attachments stay in your Confluence site as your content; removing a file from the repository archives its page, it never deletes it. Deleting a mapping on the settings screen removes that mapping, its secret and its page bookkeeping from app storage. Uninstalling the app stops all processing; the remaining app storage is then subject to Atlassian's Forge storage lifecycle for uninstalled apps.
Security
Every push is authenticated with an HMAC-SHA256 signature over the request body, using the per-repository secret. Secrets are shown once when created, kept in Forge's encrypted secret storage, and can be rotated from the settings screen. The app requests only the Confluence permissions it needs: reading and writing pages and attachments, reading spaces, and its own app storage.
This website
This website is static. It uses Google Analytics 4 to count visits. If your browser's time zone is in Europe (the EU and EEA, the United Kingdom, Switzerland), the counter runs only after you accept it in the bar at the bottom of the page; until then no analytics script is loaded and no cookie is set. Elsewhere the counter runs from the first page view, and the "Cookie settings" link in the footer lets you switch it off. When the counter runs, your browser loads Google's script, which sets Google's cookies and sends Google the pages you open, the site you came from, your browser and device type, and an approximate location derived from your IP address; Google processes that under Google's privacy policy. We see only aggregated reports, never individual visitors. Your choice is stored in your browser and can be changed at any time with the "Cookie settings" link in the footer.
Changes and contact
Changes to this policy are published on this page with a new effective date. Questions about the app or this policy: open an issue at github.com/repopages-app/ci/issues.