Privacy policy · Confluence Cloud

Field Report — privacy policy

This policy covers the Field Report app for Confluence Cloud, published on the Atlassian Marketplace by Mastero. Last updated: 28 September 2026.

Where your data goes

Nothing you have in Confluence leaves Atlassian. The app runs on Atlassian Forge. It makes no request to any host outside your Atlassian site, so there is no third party, no analytics service and no server of ours that could receive your data. This is enforced by the platform, not by our good intentions: a Forge app that egresses data must declare it, and this one declares none.

No AI model is used. The app declares no language model and sends nothing to one.

What is stored, and where. The app keeps an index of your pages — page identifiers, titles, spaces, versions, and the field names and values it found — inside Forge SQL storage, which lives in Atlassian's own infrastructure under your installation. That index is what makes the board, the macro and the export possible. Page bodies are read into memory while a page is being indexed and are not kept.

What is not stored. No attachments, no credentials, no e-mail addresses beyond those you wrote into your own pages and asked the app to report on. The app never builds a profile of anyone.

Who can see it. The app acts as the person using it: before anything is shown, it checks that person can open the page it came from. We, as the developer, have no way to read your data — there is no admin console on our side and no copy anywhere else.

Deletion. Uninstalling the app empties its index immediately, on the way out. Forge would otherwise keep an uninstalled app's storage in soft deletion for a while; the app does not rely on that, it clears the tables itself.

Our role under data protection law

Under the GDPR we act as a data processor, not a data controller: the app processes Confluence content only on behalf of your organisation, only inside your Atlassian site, and only to show you the reports you asked for. The data it handles is Confluence page and blog post content, page and space titles, the field names and values found in them, labels, and page, space and Atlassian account identifiers.

We do not sell personal information, and no personal information is shared with any third party. The app keeps no data outside Atlassian, so there is nothing to transfer outside the European Economic Area and no separate retention period: the index lives as long as the app is installed and is emptied when it is uninstalled.

Logs

The app writes operational logs through Forge, which Atlassian stores. They carry identifiers, counts and error codes, so that a failure can be traced when you report it. They are not shared with anyone outside Atlassian.

Contact

Questions about privacy, requests about your data, and reports of security issues: [email protected]. We answer within 48 hours.

The rest of the documentation is at fieldreport.maste.ro.