Last updated: 23 June 2026
Space Roles Manager is an Atlassian Forge app for Confluence Cloud, developed and operated by the Lumas Forgery team ("we", "us"). This policy explains what data the app processes, why, how it is stored and shared, which subprocessors are involved, and how to contact us about privacy matters.
Space Roles Manager is a "Runs on Atlassian" Forge app. It executes entirely inside Atlassian's Forge platform and Atlassian Cloud. We operate no servers, databases, or infrastructure of our own, and the app sends no Confluence data to any system outside Atlassian's cloud. The app acts only in response to an authenticated Confluence user's request, using that user's own permissions.
The app processes the following data solely to deliver its features (auditing, assigning and removing space roles, saving role templates, and exporting role data):
| Data | Used for | Stored? |
|---|---|---|
| Confluence space metadata (space id, key, name) | Let you select a space to audit or manage | No — read on demand only |
| Space role definitions (role id, name, description) | Display human-readable role names | No — read on demand only |
| Space role assignments — principal identifier (account id, group id, or access class), principal type, and role id | Audit who holds which role; assign or remove roles when you request it | No — read/written on demand only |
| Limited user information (account id, display name) | Show which user holds a role | No — read on demand only |
| App configuration and role templates you create | Provide the reusable-templates feature | Yes — in Atlassian Forge Storage, scoped to your installation |
| Anonymous, aggregated usage counters (e.g. number of audits or assignments performed) | Understand which features are used, to guide development | Yes — counters only; contain no personal data and are not linked to any individual |
The app authenticates its Confluence requests as the signed-in user, so it can only read or change what that user is already permitted to. It does not act with elevated privileges on a user's behalf.
For the Confluence data the app reads and writes, the Atlassian customer (your organization) is the data controller. We act as a processor, handling that data only to provide the app's functionality to you.
Stored Forge data (templates, configuration, usage counters) persists until you delete it within the app or uninstall the app. Uninstalling removes the app's access, and the associated Forge Storage is removed in line with Atlassian's data lifecycle. Because we keep no separate copies of your data, there is nothing further for us to delete. For questions or requests relating to email correspondence, contact us below.
Space Roles Manager is a business administration tool and is not directed to children.
All app data is hosted within Atlassian's cloud and is subject to Atlassian's data residency and cross-border transfer practices. We introduce no additional storage locations.
We may update this policy from time to time. The "Last updated" date above reflects the current version, and material changes will be published on this page.
For privacy questions or requests, contact: support@lumasforgery.com. We aim to respond within 5 business days.