Uploaded image for project: 'Confluence Cloud'
  1. Confluence Cloud
  2. CONFCLOUD-6647

add permission type VIEW PAGE SOURCE

    XMLWordPrintable

Details

    • Suggestion
    • Resolution: Unresolved
    • None
    • Confluence Pages with sensitive information in page source
    • 1
    • Our product teams collect and evaluate feedback from a number of different sources. To learn more about how we use customer feedback in the planning process, check out our new feature policy.

    Description

      NOTE: This suggestion is for Confluence Cloud. Using Confluence Server? See the corresponding suggestion.

      Using several confluence macros (jiraissues, SQL, CHAR-Plugin etc.) needs to embedd sensitive information (UserID, Passwords, SQL-Statements, etc.). to the Confluence source pages.

      Currently, there is no way to hide this information, because view page permission == view page source permission.

      You can edit the layer templates to remove the 'page source' link, but the 'view source URL' will still work for anyone who can see the page.

      The only way to hide this sensitive information is to prevent access to the Confluence Page Source.

      This leads to the feature request to add a new permission type: "view page source" to be able to revoke access to the page sources.

      Without this feature, Confluence pages are limited to non-sensitive information if you provide access for external parties like customers etc.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              7c053887-380b-433f-a5ba-d4d850d12439 Deleted Account (Inactive)
              Votes:
              18 Vote for this issue
              Watchers:
              14 Start watching this issue

              Dates

                Created:
                Updated: