Pickmark for Confluence: Privacy Policy
Effective date: October 1, 2026 Publisher: Great Work LLC, 651 N Broad St Suite 206, Middletown, DE 19709, USA Contact: hello@greatwork.company
This policy explains what information the Pickmark app for Confluence Cloud (the "App") processes, where it is kept, and your rights. It covers only the App, not Atlassian's products, which are governed by Atlassian's own privacy policy.
1. Summary
- The App runs entirely on Atlassian's Forge platform ("Runs on Atlassian"). It has no servers of its own and sends no data to Great Work or to any third party.
- Great Work LLC cannot see your Confluence content or the values you set.
- Values you set with the App are stored on each Confluence page as a page property, inside your Confluence site. Field definitions are stored in your site's Forge app storage.
2. What the App processes
| Data | Why | Where it lives |
|---|---|---|
| Field definitions: names, option labels and colors, defaults, descriptions | To show and validate the fields your team defines | Forge app storage for your site, until you delete them or uninstall |
| Values set on a page (option, checkbox, date), a text summary of them, and the last 25 changes (who, when, old and new value) | To display values, power reports and search, and show "changed by" | A content property on that Confluence page, inside your site; visible only to people who can see the page |
| Atlassian account ids: the creator of each field, people allowed to change a restricted field, people who changed a value | Permissions and change history | Forge app storage (fields) and the page property (changes) |
| Page titles, space keys and page links returned by Confluence search | To show reports | Not stored; shown to the person viewing the report, limited to pages they can see |
| Page bodies (Atlassian document format) when a page is published | To read the settings of Pickmark macros on that page (fixed values, defaults) | Not stored; read in memory only |
| CSV text pasted by an admin into the import tool | To set values on the listed pages | Forge app storage for that admin, up to 7 days or until the next import |
The App does not collect email addresses, names, IP addresses, passwords, API tokens, payment information or analytics. It sets no cookies and loads no third-party scripts.
3. Where data is stored
All App data is stored by Atlassian, either as Confluence page properties or in Forge storage associated with your Confluence site, subject to Atlassian's data residency settings. Atlassian is the hosting provider and acts as a subprocessor under Atlassian's terms. Great Work LLC uses no other subprocessors for the App.
4. Who can access it
- People on your site: values follow Confluence permissions. Anyone who can view a page can see its values; changing them requires edit permission on the page (and, for restricted fields, being on the field's list). Reports only list pages the viewer can see.
- Confluence admins: manage field definitions and run imports from the App's admin page.
- Great Work LLC: no access. If you open a support request, we see only what you send us.
- Atlassian: as the platform operator, under Atlassian's privacy policy.
5. Retention and deletion
Field definitions remain until an admin deletes them or the App is uninstalled. Page values are part of your Confluence pages: they remain until the value is cleared or the page is deleted, and they stay on the pages if the App is uninstalled (as inert page properties) so nothing is lost if you reinstall. Import data expires after 7 days. Uninstalling removes Forge app storage according to Atlassian's Forge data deletion process.
6. Support requests
If you contact support through our help desk or by email, we process what you send (name, email, message, attachments) only to answer you, keep it up to 24 months, and delete it sooner on request.
7. Your rights
Depending on where you live (for example EU/UK GDPR or US state privacy laws), you may have the right to access, correct, delete or port personal data and to object to processing. For data in your Confluence site, your organization (the Atlassian customer) is the controller and Atlassian processes it on your behalf; your admins can clear values, delete fields or uninstall the App. For support data, Great Work LLC is the controller: email hello@greatwork.company. We respond within 30 days.
8. Security
The App uses only Atlassian-hosted compute and storage, requests the minimum Confluence permissions it needs, acts as the signed-in user for reading and changing values (so Confluence permissions always apply), and keeps no secrets of its own. Report vulnerabilities to hello@greatwork.company.
9. Children
The App is a business tool and is not directed to children under 16.
10. Changes
We will post changes here and update the effective date. Material changes will also be announced in the App's Marketplace release notes.
11. Contact
Great Work LLC, 651 N Broad St Suite 206, Middletown, DE 19709, USA. hello@greatwork.company