We have given certain people outside our organization access to certain parts of our internal jira and confluence. However, we have discovered that it is not working the way we thought it should. For example, they can go into a page they are allowed to access in Confluence, click in the search bar, search for something and get results back that take them to a jira item that they are NOT assigned security for and should NOT be allowed to see. Why are search results shown to them that fall outside of this security? Can we disable the search bar? Are we not implementing something correctly that is allowing this loophole to exist? At this point we are looking at revoking all access to our atlassian sites to protect proprietary data which is not ideal.