Effective 2026-08-20. Applies to the "OpenAPI Reference for Confluence" app by Chockablock, built on Atlassian Forge.
The app is rendering-only and runs entirely on Atlassian-hosted infrastructure
(Atlassian Forge). It declares no external egress permissions of any kind: no vendor
servers, no content delivery networks, no analytics or telemetry, no external fonts, no
outbound requests. This is enforced by the Forge platform, verifiable by Atlassian's own
forge eligibility check, and the app is eligible for Atlassian's
Runs on
Atlassian program.
read:attachment:confluence, used solely to list and read attachments on the
page where you configure the macro, with the viewing user's own permissions.Nothing. We operate no servers for this app, set no cookies, and collect no personal data, usage data, or content through it. The only information we ever hold about you is what you choose to send us by email for support.
None, beyond Atlassian itself as the hosting platform for your Confluence site and this app. Data residency follows your Atlassian site's configuration, since all processing and storage is Atlassian's.
If you email [email protected], we keep the correspondence for as long as needed to help you and improve the app, and we do not share it. Please do not send credentials or confidential specification content; we never need them.
If a future version of the app ever changes any of the above — in particular, if any egress of any kind were introduced — this policy will be updated before release, the change will be visible in the app's Marketplace listing and permission prompts, and such a change would also be surfaced to your admins by Atlassian's own major-update approval flow.
Chockablock · [email protected] · chockablock.dev