Compliance Glossary for Confluence

How does four-eyes approval work?

The person who creates, edits, or submits a term cannot approve that same content. A separate permitted reviewer must make the approval decision. Production v6 validates this separation before recording approved evidence. It preserves the content version, actors, timestamps, decision, and reason with the governed term history.

Last verified against production v6 · 26 September 2026

At a glance

InputActionOutputLimit
Draft termSelect Submit for ReviewReview-pending versionSubmission is not approval
Permitted reviewerSelect Approve or rejectRecorded review decisionCreator, editor, or submitter cannot approve the same content
Approval reasonSave it with the decisionExplainable approval evidenceA reason does not replace policy authority
Later content changeCreate a new versionNew review cyclePrior approval does not cover changed content

How it works

  1. A term manager creates or edits the draft.
  2. The manager selects Submit for Review.
  3. A different permitted reviewer opens the term.
  4. The reviewer checks the meaning and usage guidance.
  5. The reviewer records a reason and selects Approve or reject.
  6. Any later content change returns through review.

Example

An author updates the definition of “critical supplier.” That author submits the version but cannot approve it. A second term manager reviews the change and records the decision. The approved version keeps both actors and the reason.

What this does not mean

Four-eyes approval separates term-content duties. It does not approve Confluence pages, controlled documents, releases, or electronic signatures. Organizations still define reviewer qualifications and authority.

Related questions

Next step

Assign at least two qualified term managers before requiring four-eyes approval.

View on Atlassian Marketplace
Verification basis: production v6 code, tests, manifest, and operations guidance. Verified 26 September 2026.