---
title: "App scope and permissions"
canonical: "https://support.appfire.com/space/CDCCL/631114144/App%20scope%20and%20permissions"
format: markdown
---
> Macro (aura-html)

## Global scope and permissions

Each app for Confluence Cloud (like Comala Document Control) has to be configured with a specific [scope](https://developer.atlassian.com/cloud/confluence/scopes/).

> Scopes allow an app to request a particular level of access to an Atlassian product.

This configuration is done automatically when the app is installed and adds the **Comala Document Control app user **as an individual user in the **Global permissions** screen

![cdcc_globalpermission_appuser.png](media://7bcd2ba1-789c-4f45-a2c5-201882771819)

> ℹ️ <span style="color: #172b4d">The automatic configuration also adds the </span><span style="color: #172b4d">**Comala Document Control app user**</span><span style="color: #172b4d"> as an individual user for each space in the </span><span style="color: #172b4d">**Space permissions**</span><span style="color: #172b4d"> screen.</span>

<span style="color: #172b4d">The app user is assigned all individual user permissions for the space except </span><span style="color: #172b4d">**Restrictions Add/Delete**</span><span style="color: #172b4d">, </span><span style="color: #172b4d">**Delete own**</span><span style="color: #172b4d">, </span><span style="color: #172b4d">**Archive**</span><span style="color: #172b4d">, </span><span style="color: #172b4d">**Space Export**</span><span style="color: #172b4d">.</span>

![cdcc_spacepermissions_appuser.png](media://39c4e68a-5540-4867-88f5-524b22660ae0)

<span style="color: #172b4d">Within an instance, a global administrator can decide to further limit an app's actions. This is valuable because it allows administrators to safely install apps that they otherwise might not.</span>

Changes in

- scope by a global administrator may affect the global permissions for the app user and the functioning of the app in the instance
- individual space permissions for the app user (due to either the global change or a space administrator change) may affect the functioning of the app in that space

> 📝 Page restrictions added to content prior to the addition and application of the Document Control app workflow to the content may cause an error.

See [Troubleshooting](https://appfire.atlassian.net/wiki/spaces/CDCCL/pages/629608438).

## Page- level restrictions

Page-level restrictions can affect the successful application of the workflow. If the page-level restrictions do not include the Comala Document Control app add-on user, page activity is not processed by the workflow, for example, if the page is updated or a page is created with restrictions.

When this occurs, a message is displayed when the app attempts to initialize the state byline on the page. To resolve this, ensure the Comala Document Control app add-on user (or, in some cases, the current user) is added to the space permissions and any page restrictions, then refresh the page.