This app does not store, transmit, or retain any customer data outside of the Atlassian platform.
The app runs entirely inside Atlassian's Forge secure sandbox, which isolates, authenticates, and manages all execution.
All data access is controlled through Atlassian-approved OAuth scopes explicitly declared in the app manifest.
The app only reads Jira data required to provide its functionality and only accesses data that the current user is authorized to view.
This includes Jira issues, comments, comment authors, assignees, reporters, statuses, priorities, versions, sprints, labels, issue types, creation dates, and related issue metadata. The app respects Jira permissions and users can only view comments and issues they already have permission to access.
The app performs no writes and does not modify any Jira issues, comments, or other Jira content.
The app does not connect to any external servers, APIs, databases, analytics services, or third-party services.
All processing occurs within Atlassian-managed infrastructure.
No customer content is intentionally logged or transmitted.
Logs are limited to operational and diagnostic information required for application support and troubleshooting within the Atlassian Forge platform.
Security of authentication, authorization, storage, networking, and data isolation is provided by the Atlassian Forge platform.
Because the app runs entirely within Atlassian infrastructure and does not use external services or external data storage, it relies on the security controls provided by Atlassian, including, but not limited to, controls supporting compliance programs such as SOC 2, ISO 27001, GDPR-related safeguards, and other applicable security and compliance controls.
If you have questions regarding this Security Policy, please contact Simitech Ltd through the support channels listed on the Atlassian Marketplace.
This website uses cookies. By continuing to use this site, you accept our use of cookies.