WorkatoSight Data Handling Disclosure
Last updated: 2026-06-26
Summary
Section titled “Summary”WorkatoSight uses Atlassian Forge to store app configuration, Workato credentials, cached Workato metadata, and refresh state needed to render Confluence dashboards, macros, bylines, and documentation-coverage views.
Data categories
Section titled “Data categories”| Category | Examples | Purpose |
|---|---|---|
| Confluence context | Site, space, page, macro, and page-link context | Render dashboards, macros, bylines, and coverage findings |
| Configuration | Workato API origin, browser host patterns, refresh preferences, timezone | Configure each Confluence space |
| Credential | Workato API credential | Stored with Forge secret storage for admin-approved tests and refreshes |
| Cached Workato metadata | Projects, Folders, Recipes, Connections, Lookup Tables, API Collections, API Endpoints, API Clients, API Keys, runtime rollups | Render cache-backed Workato context in Confluence |
| Operational state | Cache freshness, refresh status, partial-access limits, sanitized errors | Show reliable status and support troubleshooting |
| Support data | Sanitized screenshots, timestamps, page URLs, and ticket details | Resolve customer support requests |
Storage and egress
Section titled “Storage and egress”WorkatoSight stores app data in Atlassian Forge hosted storage. Workato credential values use Forge secret storage. Backend egress is limited to Workato hosts configured by the customer and permitted by the app manifest.
Redaction
Section titled “Redaction”WorkatoSight redacts OAuth tokens, access tokens, refresh tokens, private keys, signing keys, passphrases, bearer material, API keys, credentials, passwords, and token-bearing URL query values before data reaches cache, logs, UI, screenshots, or support evidence.
Customer controls
Section titled “Customer controls”Customers control which spaces are configured, which Workato credential is used, which refresh preferences are enabled, and which Confluence pages contain WorkatoSight macros or Workato links.
Support handling
Section titled “Support handling”Do not send Workato credentials or token-bearing URLs to Flowdence support. If a credential is exposed, rotate it in Workato and update WorkatoSight Configuration.