Skip to content

Commit 9073a87

Browse files
committed
docs(confluence): list the knowledge base connector's service-account scopes, including attachments
1 parent 5796e86 commit 9073a87

1 file changed

Lines changed: 23 additions & 1 deletion

File tree

‎apps/docs/content/docs/integrations/atlassian-service-account.mdx‎

Lines changed: 23 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ import { Image } from '@/components/ui/image'
99
Use an Atlassian service account for Jira, Jira Service Management, and Confluence workflows. One credential can serve all three products on the same site when its account access and token scopes cover each product.
1010

1111
<Callout type="info">
12-
Setting up Search? Follow the [Confluence Search service-account guide](/search/confluence#using-a-service-account) for its content and permission scopes. [Jira Search](/search/jira) uses each teammate's OAuth account; a workflow service account does not replace that connection.
12+
Setting up a Confluence knowledge base connector? Use the [connector scope list](#confluence-knowledge-base-connectors). For Search, follow the [Confluence Search service-account guide](/search/confluence#using-a-service-account). [Jira Search](/search/jira) uses each teammate's OAuth account; a workflow service account does not replace that connection.
1313
</Callout>
1414

1515
## Create the account and token
@@ -56,6 +56,28 @@ read:page:confluence
5656

5757
`read:confluence-user` covers the [current-user check](https://developer.atlassian.com/cloud/confluence/rest/v1/api-group-users/#api-wiki-rest-api-user-current-get). The [space picker](https://developer.atlassian.com/cloud/confluence/rest/v2/api-group-space/#api-spaces-get) needs `read:space:confluence`; page reads and the page picker need `read:page:confluence`.
5858

59+
### Confluence knowledge base connectors
60+
61+
A Confluence knowledge base connector reads pages, blog posts, attachments, labels, and the space permissions and page restrictions it mirrors. Its service-account token needs every scope below, not only the Confluence scopes above:
62+
63+
```text
64+
read:confluence-content.all
65+
read:page:confluence
66+
read:blogpost:confluence
67+
read:attachment:confluence
68+
read:space:confluence
69+
read:label:confluence
70+
search:confluence
71+
read:confluence-space.summary
72+
read:content.metadata:confluence
73+
read:space.permission:confluence
74+
read:confluence-user
75+
read:user:confluence
76+
read:group:confluence
77+
```
78+
79+
Without `read:attachment:confluence`, pages still sync, but their PDF, Word, Excel, and PowerPoint attachments are not indexed and each sync reports a partial source listing. To fix a token that is missing scopes, create a replacement token with the full list. A credential admin then opens the credential in **Integrations**, selects **Reconnect**, and enters the new token and site domain. Connectors that use the credential keep using it.
80+
5981
### Workflow actions
6082

6183
Add scopes for the actions your workflow performs:

0 commit comments

Comments
 (0)