Just a heads up: On March 24, 2025, starting at 4:30pm CDT / 19:30 UTC, the site will be undergoing scheduled maintenance for a few hours. During this time, the site might be unavailable for a short while. Thanks for your patience.

×
Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in

DLP

kelly.jee June 12, 2023 edited

Does the Confluence cloud premium comply with DLP? or any free plugin for DLP?

2 answers

1 accepted

0 votes
Answer accepted
Fabio Racobaldo _Herzum_
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
June 13, 2023
0 votes
Oliver Siebenmarck _Polymetis Apps_
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
June 13, 2023

Hi @kelly.jee ,

Currently, there are no built-in DLP features in Confluence or any other Atlassian product. There is an entry about DLP capabilities on their roadmap, although that seems to be set far in the future. 

Fortunately, there are some apps on the marketplace you can install today. Before getting into the details, let me disclose that we at Polymetis Apps have just recently launched our own DLP app (PII Protection for Confluence), so I'm quite invested and potentially biased here.

Now, @Fabio Racobaldo _Herzum_ already mentioned Nightfall AI, who have an integration to their DLP product in the marketplace. Nightfall is not free, only the integration app itself is. In my understanding, their's the kind of product you would look at when you have multiple apps that need DLP (like Slack, Confluence, etc). 

Searching the marketplace for DLP yields only a few results, but depending on what exactly  you want to achieve there might be other apps that could also fit the bill. You could search for terms like "sensitive data" or "PII" in the Security category on marketplace to see what's there.

In any case, I would always consider two things when choosing a DLP solution: The question of trust and the ability to perform remediation actions automatically.

1. Trust

A DLP product scans your organization's Confluence for various data and whatever it finds is typically highly sensitive – think passwords, credit cards, social security numbers, etc. So you should always pick a vendor that you trust in. In the context of Atlassian cloud, some vendors (we are one of those) build on Atlassian Forge which allows them to sandbox their app within your Confluence instance. Basically, the app cannot talk to external services and not even the vendor has a chance to see its Findings. 

2. Remediation

Whenever a DLP app finds something that is potentially sensitive, you'll want to take remediation actions asap. If the app can do that for you automatically or at least alert you and your team, that's a huge plus.

Hope that helps, 
 Oliver

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
CLOUD
PRODUCT PLAN
PREMIUM
TAGS
AUG Leaders

Upcoming Confluence Events