Restriction Manager for Confluence: user guide

Confluence passes view restrictions down to the pages below, but not edit restrictions. Restriction Manager does: switch it on for a space, and pages created, moved or copied there get their parent's edit restrictions automatically. A restriction audit finds the pages that slipped through and fixes them in one click.

Before you start

Switch it on for a space

  1. Open Space settings → Integrations → Restriction Manager.
  2. Turn on Inherit edit restrictions in this space.
  3. Choose how child pages inherit:
    • Copy: child pages get exactly the parent's edit restrictions.
    • Add: child pages keep their own edit restrictions and also get the parent's.
  4. Optionally turn on When someone changes a page's edit restrictions, update the pages below it too, so pages keep following their parent after a change.
  5. Select Save.

To bring pages that already exist in line, select Apply to existing pages. It runs in the background and shows its progress; select Cancel to stop it.

What happens automatically

Apply restrictions to one page tree

On any page, open ••• → Apps → Restriction Manager: apply to page tree. The dialog shows who can edit the page and offers:

Both run in the background, and the dialog shows progress and a Cancel button.

The restriction audit

Open Restriction audit in the space sidebar and select Scan now. The audit lists the pages where restrictions start or differ from the parent page, with who can view and edit each one. Pages that simply have their parent's edit restrictions are counted rather than listed, so the list stays short.

Each listed page is compared with its parent:

Label Meaning
Matches parent Same edit restrictions as the parent page
Stricter than parent Fewer people can edit it than its parent; usually intentional
Looser than parent Anyone who can view it can edit it, while its parent is locked down: the risky case
Different from parent Restricted, but to different people than its parent

To fix a flagged page, select Match parent on its row; to fix every looser page at once, select Fix all looser pages. You confirm before anything changes. A fixed page gets its parent's edit restrictions, and so do pages below it that have none of their own. The list updates straight away.

"Nobody (view only)" means nobody can edit the page, and "Nobody (hidden)" means only the app can view it.

Activity log

Recent changes on the settings screen lists every change the app made in the last 90 days: when, which page, why, and who could edit it before and after.

Good to know

Uninstalling

Restrictions the app set stay on your pages as ordinary Confluence restrictions. The app's own data is deleted as described in the privacy policy.

Getting help

Email support@keywardlabs.com with your site address, the space and what you expected to happen.