Working with other capabilities

Most of what makes Smartsheet worth having in the suite comes from what sits next to it. This page is the summary; each connection has its own page with the detail.

Where a connection does not exist, it is listed as such rather than left out, so you can stop looking.


#Every connection

Connects to

What you get

How connecting to Smartsheet works

Sign-in opens a new top-level browser tab to Capable's own service, which forwards you to app.smartsheet.com to approve read and admin access to your sheets. The token is exchanged, refreshed, tested and revoked entirely on Capable's servers; it never reaches Confluence or your browser. You connect.

One connection per person

Tokens are keyed by app, site and user, so each Confluence user has at most one Smartsheet connection. Reconnecting replaces it. There is no per macro account choice.

Which Smartsheet calls the app can make

Every Smartsheet call goes through a strict allowlist: the current user, the sheet list, sheet search, one sheet's contents, and one sheet's publish settings. Nothing else is reachable, and publish settings only accept an audience of everyone or your organisation.

What the app is allowed to embed

Only four Smartsheet addresses may be framed: publish.smartsheet.com, publish.smartsheet.eu, app.smartsheet.com and app.smartsheet.eu. And app.smartsheet.com/.eu only on the /b/publish path. This is enforced when the page renders, not just when you type a link.

Confluence permissions the app asks for

Read-only: content, page and blog post, content summaries and permissions, space summaries, user and group, content properties, search, and app storage. No write, delete, email or impersonation permission. Permissions are app-managed, so a new permission comes with pending admin approval rather than

How readers without Smartsheet see the Interactive table

When the author sets up viewer access, the server serves the table using the author's stored Smartsheet connection. Three independent checks gate that: the requested sheet must match the sheet saved on the macro, the page the request comes from must match the page the access was set up on (or the re

Who may change sharing

Seeing the sharing panel, publishing, removing a publish link, setting up viewer access and minting the macro signature all require Confluence edit permission on the page, plus a connected Smartsheet account. The server also proves your own connection can read that exact sheet first.

Help articles

Help.gocapable.com/smartsheet. Insert a Smartsheet sheet, Getting started, User guide, Table types and FAQ, linked from the space page's Introduction tab.

Click to interact

Both the embedded sheet and the Interactive table sit behind a "Click to interact" overlay so scrolling the page is not captured by the embed. Moving the pointer away locks it again.


#The pages


#A few things worth knowing

  • A connection needs both halves installed. In a standalone app most of these do not exist.

  • Anything that depends on search only reflects pages that have been indexed.

  • Published sites render Capable macros properly, which is where several of these pay off.



Better with company.