Exporting Findings
Security for Confluence allows users to export CSV files containing findings in the spaces for which they have administration privileges. This can be done from the Soteri Dashboard, or when viewing a particular space’s Security Analysis.
Exporting findings is very time-consuming and there is currently no way to monitor the progress of exports. See below for more information.
Exporting findings from the dashboard
To export all findings for all spaces for which you have administration privileges, click the Export button at the top of the Soteri Dashboard:

There are three options, all of which are in CSV format:
- A Dashboard overview export of the list of spaces visible on the dashboard together with their individual scan status, up to date status, and the number of unreviewed findings in that space. 
- An All findings export contains the scan results for the space. 
- A Reviewed false positives export contains reviewed false positives, including who reviewed them and when they were reviewed. Reviewed false positives are scoped per-space and apply to all future and past findings in the space that match exactly. 
Exporting space findings from the dashboard
To export findings for a particular space from the Soteri Dashboard, use the Export button in the Action Menu for the space:

Finally, when viewing the Security Analysis for a particular space, you can use the Export Space dropdown at the top of the page. The rule filter will also filter the exported findings.

Performance
Security for Confluence only stores the locations of findings, not their actual text. To perform an export, Security for Confluence therefore must query Confluence to retrieve the text of all content with findings, which can be very time consuming. This is particularly noticeable for full instance exports. A large full instance export could potentially take an hour or more.
Redacting findings in exported reports
If you want to keep the full text of findings from appearing in exported reports, you can disable the Include full finding text in exported reports setting in the plugin settings page:

Disabling this option will remove the Finding text and Full text columns from CSV exports, and will add a URL column, Content link – a link to the page containing the finding.
Deduplicate findings in exports
If you want to show every finding occurrence in your export reports, you can disable the Deduplicate findings in exports setting. Otherwise, findings will be presented once for every page they’re discovered in, even if the are discovered more than once in the history of that page, blog post, or attachment. This behavior presents an export similar to the layout of the Security Analysis page.

Columns in exported findings reports
Following are the column names in the exported reports, in order, most of which are self-explanatory:
- Space key 
- Content title 
- Content ID 
- Latest content version, or Content version if the “Deduplicate findings in exports” setting is disabled. 
- Historical: if this scan finding is historical. 
- Rule name 
- Match text: the exact match text of the finding. This can be used to review the finding; see Hiding false positives, revoked credentials, etc. . Excluded if the “Include full finding text in exports” setting is disabled. 
- Reviewed?: if the finding is reviewed at space scope. 
- Individually Reviewed?: if the finding is reviewed at content scope. 
- Globally Reviewed?: if the finding is reviewed across all of Confluence. 
- Publication time 
- Full text: the complete text of the fragment, or, if it is too long, then only the specific text that triggered the finding. Excluded if the “Include full finding text in exports” setting is disabled. 
- Content link Included if the “Include full finding text in exports” setting is disabled. 
