Privacy Policy — Space Roles Manager

Last updated: 23 June 2026

Space Roles Manager is an Atlassian Forge app for Confluence Cloud, developed and operated by the Lumas Forgery team ("we", "us"). This policy explains what data the app processes, why, how it is stored and shared, which subprocessors are involved, and how to contact us about privacy matters.

1. Summary

Space Roles Manager is a "Runs on Atlassian" Forge app. It executes entirely inside Atlassian's Forge platform and Atlassian Cloud. We operate no servers, databases, or infrastructure of our own, and the app sends no Confluence data to any system outside Atlassian's cloud. The app acts only in response to an authenticated Confluence user's request, using that user's own permissions.

2. What data we process, and why

The app processes the following data solely to deliver its features (auditing, assigning and removing space roles, saving role templates, and exporting role data):

DataUsed forStored?
Confluence space metadata (space id, key, name)Let you select a space to audit or manageNo — read on demand only
Space role definitions (role id, name, description)Display human-readable role namesNo — read on demand only
Space role assignments — principal identifier (account id, group id, or access class), principal type, and role idAudit who holds which role; assign or remove roles when you request itNo — read/written on demand only
Limited user information (account id, display name)Show which user holds a roleNo — read on demand only
App configuration and role templates you createProvide the reusable-templates featureYes — in Atlassian Forge Storage, scoped to your installation
Anonymous, aggregated usage counters (e.g. number of audits or assignments performed)Understand which features are used, to guide developmentYes — counters only; contain no personal data and are not linked to any individual

The app authenticates its Confluence requests as the signed-in user, so it can only read or change what that user is already permitted to. It does not act with elevated privileges on a user's behalf.

3. Roles and responsibilities

For the Confluence data the app reads and writes, the Atlassian customer (your organization) is the data controller. We act as a processor, handling that data only to provide the app's functionality to you.

4. How data is stored

5. How data is used and shared

6. Subprocessors and third parties

7. Data retention and deletion

Stored Forge data (templates, configuration, usage counters) persists until you delete it within the app or uninstall the app. Uninstalling removes the app's access, and the associated Forge Storage is removed in line with Atlassian's data lifecycle. Because we keep no separate copies of your data, there is nothing further for us to delete. For questions or requests relating to email correspondence, contact us below.

8. Children's data

Space Roles Manager is a business administration tool and is not directed to children.

9. International data handling

All app data is hosted within Atlassian's cloud and is subject to Atlassian's data residency and cross-border transfer practices. We introduce no additional storage locations.

10. Changes to this policy

We may update this policy from time to time. The "Last updated" date above reflects the current version, and material changes will be published on this page.

11. Contact

For privacy questions or requests, contact: support@lumasforgery.com. We aim to respond within 5 business days.