Skip to:

Marketplace

Enclave — Zero-Egress PII & DLP for Confluence

works with Confluence Cloud

INSTALLS

No installs yet

SUPPORT

  • Partner Supported

TRUST SIGNALS

Showing details for Cloud

Key highlights of the appFind, classify, and redact PII in Confluence — pages and attachments — without your data ever leaving Atlassian

hero

Scan and detect PII across your entire space

Scan an entire Confluence space in minutes. 25 detectors catch emails, credit cards, API keys, and national IDs across pages, titles, and attachments. Results are always masked; raw values are never stored or shown.

Automatic sensitivity classification

Every scanned page gets a sensitivity label, from Public to Restricted, based on the PII it contains. Manual overrides are sticky, and downgrades always need human review, so protection is never silently reduced.

Audit-ready compliance reports in one click

Generate a compliance summary PDF plus findings and audit-trail CSVs: everything an auditor needs, with masked previews only. Built for large spaces, so reports generate in the background and never time out.

More details

Access controls decide who can see a page. They don't tell you what's on it.

Enclave scans Confluence Cloud for sensitive data — PII, secrets, and financial data, across pages and attachments — classifies pages by sensitivity, and redacts or masks what it finds, with a full audit trail. It runs entirely inside your own Atlassian tenant: built on Forge, with no external network access, so your content is never sent to a vendor backend — removing the data-transfer question from your security review before it's asked.

Detection is checksum-validated and confidence-tiered to cut false positives, with jurisdiction packs and custom regex rules. Redactions are previewed, verified, and markup-safe, and classification never silently lowers a page's sensitivity. Export compliance PDFs and findings/audit CSVs for your auditors.

Free for teams up to 10 users.

Resources

  • App documentation

    Comprehensive set of documentation from the partner on how this app works

Privacy and Security

Privacy policy

Atlassian's privacy policy is not applicable to the use of this app. Please refer to the privacy policy provided by this app's partner.

Partner privacy policy

Security program

This app is not part of the Marketplace Bug Bounty program.

Integration permissions

Enclave — Zero-Egress PII & DLP for Confluence integrates with your Atlassian app

Version information

Version 2.2.0for Confluence Cloud

Release date
Jul 11th 2026
Summary
On-platform PII scanning, classification, and remediation for Confluence
Details

Initial release of Enclave.

  • Scan a Confluence space for PII across page bodies, titles, and attachments (DOCX, PDF, XLSX, TXT) using 25 detectors across 7 packs: secrets/credentials, financial data, contact info, and US/UK/EU national identifiers.
  • Automatic sensitivity classification (Public/Internal/Confidential/Restricted) with sticky manual overrides and human-reviewed downgrades.
  • Redact, mask, or privately notify on findings, with mandatory preview, version-conflict protection, and post-edit verification.
  • Custom detection rules and policies to automate classification, alerts, and remediation queuing by space.
  • Compliance reports: PDF summary plus findings and audit-trail CSV exports.
  • Daily or weekly scheduled scans.
  • Zero external egress: all processing and storage stays within your Atlassian instance; raw PII values are never stored, logged, or displayed.
Payment model
Paid via Atlassian
License type
Commercial

Learn and explore

  • What’s Marketplace
  • App installation
  • About Atlassian
  • Atlassian resources
  • Search and ranking
  • Atlassian events
  • Atlassian foundation

Follow