Privacy Policy for qadram Atlassian Marketplace Apps

    This Privacy Policy describes how BranchCreation S.L.U., operating under the brand qadram ("we", "us", or "our") accesses, processes, and protects information when customers install and use our applications available through the Atlassian Marketplace.

    1. Scope

    This Privacy Policy applies to Atlassian Marketplace applications developed and published by qadram (BranchCreation S.L.U.) that run on the Atlassian Forge platform.

    Our applications are designed to provide additional functionality within Atlassian products such as Jira Cloud.

    2. Information We Access

    Depending on the functionality of a particular application and the permissions granted to it, the application may access information stored in the customer's Atlassian environment.

    This may include:

    • Jira issue data.
    • Jira project information.
    • Comments and other issue content.
    • User identifiers and basic user profile information made available by Atlassian.
    • Configuration information required for the operation of the application.

    The specific information accessed depends on the functionality of each application and the Atlassian permissions or scopes granted to it.

    3. How Information Is Used

    Information accessed through Atlassian is processed only as necessary to provide the functionality requested by the user.

    We do not use Atlassian End User Data for advertising, profiling, marketing, or unrelated purposes.

    We do not sell End User Data.

    4. Data Storage

    Our Forge-based applications are hosted on the Atlassian Forge platform.

    Where persistent application data is required, the application may use storage services provided by Atlassian Forge.

    We do not operate an external application backend or external database for these Forge applications unless explicitly stated otherwise in the Marketplace listing for a particular application.

    Data stored using Atlassian Forge storage is managed within Atlassian's infrastructure and subject to the security and data management controls provided by the Forge platform.

    5. Data Transfers and Third Parties

    Our Forge applications do not send Atlassian End User Data to third-party services or external systems unless this is specifically disclosed in the Marketplace listing for the application.

    We do not sell, rent, or provide End User Data to advertisers or data brokers.

    Atlassian provides the Forge infrastructure on which the applications operate. Accordingly, data processed by Forge is subject to Atlassian's applicable infrastructure, privacy, security, and data residency practices.

    6. Authentication and Permissions

    Authentication is handled through Atlassian and the Forge platform.

    Our applications request only the Atlassian API permissions required to provide their functionality.

    Users do not provide their Jira passwords or Atlassian credentials directly to us.

    7. Logging

    Application logs may contain technical information required for troubleshooting, diagnostics, security, and operation of the application.

    We design our applications to avoid intentionally recording sensitive End User Data, authentication credentials, access tokens, or unnecessary personal information in application logs.

    8. Data Retention and Deletion

    Our applications retain information only for as long as necessary to provide their functionality.

    Where application data is stored using Forge-hosted storage, its lifecycle is managed using the capabilities provided by the Atlassian Forge platform.

    Customers may contact us to request information regarding application data or deletion requirements.

    Uninstalling an application may result in application data being deleted according to Atlassian Forge's applicable data lifecycle and retention mechanisms.

    9. Personal Data

    Depending on the Jira content processed by the application, Atlassian End User Data may include personal data.

    We process such data only as required to provide the functionality of the application and in accordance with applicable data protection laws.

    The customer remains responsible for determining the lawful basis for the information they store and process within their Atlassian products.

    10. Security

    We take reasonable technical and organizational measures to protect information processed by our applications.

    Our Forge applications benefit from security controls provided by Atlassian Forge, including platform-level authentication, execution isolation, infrastructure security, and encryption of Forge-hosted storage.

    Additional information is available in our Security Policy.

    11. Children's Data

    Our applications are intended for organizations and users of Atlassian products and are not specifically designed for children.

    We do not knowingly collect personal information directly from children.

    12. Changes to This Privacy Policy

    We may update this Privacy Policy when our applications, legal requirements, or security and privacy practices change.

    The latest version will always be published at this location, together with its effective or last-updated date.

    13. Contact

    For privacy questions, data requests, or concerns regarding our Atlassian Marketplace applications, please contact:

    qadram (BranchCreation S.L.U.)

    Website: https://qadram.com

    Email: info@qadram.com