---
title: "Understand encryption and data export"
canonical: "https://support.appfire.com/space/SUPPORT/3217588359/Understand%20encryption%20and%20data%20export"
format: markdown
---
This article explains how encryption works in Security & Encryption for Confluence and clarifies why bulk exporting or downloading secrets from the Secure Macro is not currently supported.

## Summary

Passwords and sensitive data stored within the **Secure Macro** are protected using end-to-end encryption. Due to this high-security architecture, data is stored in a PGP-encrypted format that is inaccessible for bulk decryption or export by Appfire or Confluence administrators.

## Security architecture

To maintain a high level of security, the app employs the following encryption standards:

- **End-to-End Encryption:** Data is encrypted on the client side before being transmitted.
- **PGP Encryption:** Secrets are stored in our database in PGP-encrypted format.
- **Privacy:** Appfire does not have access to your decryption keys, ensuring that your data remains private and secure.

## Use cases and limitations

### Bulk export of secrets

**Question:** Is there a way to bulk export secrets for backup to a separate secured location?  
**Answer:** No. Currently, users are not able to bulk download or export secrets from the **Secure Macro**. Because the data is stored in a PGP-encrypted format that only authorized users can decrypt individually through the UI, a bulk export mechanism is not available.

### Decryption issues

**Symptoms:**

- Pages failing to load (stuck on a spinning circle).
- Error message: "Failed to decrypt secret" when clicking the **Decrypt** button.

**Cause:**  
These issues are typically temporary and can be related to external factors such as:

- **API Rate Limiting:** Status issues reported on the [Appfire Cloud Apps Status page](https://appfire-apps.statuspage.io/) can affect the app's ability to communicate with Confluence.
- **Network Connectivity:** Temporary interruptions in the connection between your browser and the encryption service.

**Resolution:**  
In most cases, these errors resolve themselves once the underlying service interruption or rate-limiting event concludes. If the problem persists:

1. Check the [Appfire Status Page](https://appfire-apps.statuspage.io/) for ongoing incidents.
2. Verify that no recent changes were made to the user account (e.g., email address changes, SSO settings, or permission updates).
3. Ensure the app is updated to the latest version via **Manage apps**.