Visibility Configuration

NEW IN 4.1 Space Privacy is compatible with Confluence’s Dark Mode. Yay!

The user visibility in Confluence, when you use the Space Privacy app, depends on several factors.

These factors are:

  • Context (global or extranet space);
  • Space Privacy settings (visibility configuration);
  • Extranet space assignment (is an extranet user or not);
  • Extranet role (extranet user or extranet manager);
  • Internal User (member of an internal group);
  • The action you want to perform (search, mention, etc.).

How do I define internal groups?

Navigate to Confluence Administration → Space Privacy → Configuration → Visibility.

In the Define internal groups section, enter the internal groups’ names.

What are internal groups?

Members of internal groups can always see each other, regardless of their assignment to extranet spaces.

For example, you can define internal groups, so that your own employees can continue to work together as usual – even in extranet spaces.

Internal groups are excluded from filters by Space Privacy. To achieve this, you will need to define Confluence groups in the Visibility configuration tab.

Internal groups mode

NEW IN VERSION 3.0

After configuring internal groups, you can set the internal groups mode. This option is new in Space Privacy 3.0.

Members can see all users and groups without restrictions.

With this setting, the internal group members can use Confluence with minimum restrictions (as if Space Privacy is not installed).

Members can see each other and any user or any group with whom they share an extranet space…

This was the behavior before the internal groups mode was introduced (before Space Privacy 3.0). Only internal groups members, which are also Extranet User Managers, can use the Confluence functionality.

Who are extranet users allowed to see?

Scroll down to the Extranet users are only allowed to see users… section.

Here you can choose whether users that are not assigned to an extranet space should be visible to all extranet users or not.

Only users with whom they share at least one extranet space.

This option limits extranet users. Extranet users will only be able to see other users who are also assigned to one of their spaces.

Only users with whom they share at least one extranet space and all users who are not assigned to any extranet space.

This option allows extranet users to see users who are assigned to the same space and, additionally, all users who are not assigned to any extranet space at all.

Which users are Extranet users managers allowed to assign?

You can choose whether or not extranet user administrators can assign all users from the system to an extranet space. This option is relevant when you want to allow external users to manage their own extranet spaces.

All users that exist in the system.

Select this option to allow extranet user administrators to assign all users that exist in your system to an extranet space.

Only users with whom they share at least one extranet space.

Extranet user managers can only assign users to their space with whom they share at least one space.

Recommended configuration

Every use case may need an individual configuration, but we still have a “best practice” we would like to share with you.

We recommend to always use internal groups!

A group like “non-extranet-users” does not exist in Space Privacy. Space Privacy only differentiates between users in extranet spaces and “internal users”. For the best user experience for internal employees, always choose Members can see all users and groups without restrictions as the internal groups mode.

Every user who is not assigned to an extranet space will be handled like an internal user by Space Privacy. And every user who is not assigned to an internal group may lose all visibility, even if they actually are an internal colleague.

That’s why you should always use internal groups to actually mark the internal users and make sure that they can see each other!

Furthermore, in combination with this setting, you should restrict all visibility, too. That’s how you ensure most safety within your system.