Skip to content
NarrowForge

NF / Legal / Atlassian

License Radar for JiraPrivacy policy

Scope and product boundary

This policy explains how License Radar for Jira handles information when it is installed in Jira Cloud. The product reviews the Jira site where it is installed; it does not build a cross-site organisation directory or a separate identity-management system.

Information processed

License Radar processes the minimum information needed to provide a read-only access review:

  • Jira site and Atlassian Forge installation identifiers.
  • Atlassian account identifiers, display names and email addresses when Jira returns them.
  • Jira application-role access and observed group membership when exposed by the supported API.
  • Issue update timestamps associated with assignee, reporter and creator references.
  • Review thresholds, cost assumptions, decisions, exclusions and aggregate scan status.

Activity evidence is bounded

A License Radar activity date comes from Jira issue updates visible to the installed app. It is not an Atlassian organisation-wide last-login, sign-in or last-active metric. A missing activity record means that the available signal is insufficient; it does not prove that a person never used Jira or that access should be removed.

What we do not collect

License Radar does not ask for or store Atlassian passwords, API keys, personal access tokens, OAuth secrets, issue descriptions, comments, attachments or unrelated Jira content. Issue searches request only the fields needed to calculate the bounded activity signal.

Why we process it

We process this information to identify supported Jira access, calculate an observable activity signal, show review candidates, apply the administrator's cost assumptions, preserve review decisions and generate the reports available in the selected plan. We do not sell customer data or use it for advertising.

Storage, isolation and retention

The production app uses Atlassian Forge Storage inside the installation environment. Data is scoped to the authenticated Jira installation, so one site cannot read another site's configuration, scans or review records. License Radar has no separate external customer-data database or configured analytics endpoint.

  • Free exposes the latest completed scan and its available review data.
  • Pro retains a bounded scan history and aggregate trends where the feature is enabled.
  • Temporary processing data is kept only for the time needed to complete the analysis.
  • Configuration, decisions and available report data remain until deleted or the app is uninstalled.

Deletion and rights

Administrators can delete available configuration and report data through the product where those controls are provided. When the app is uninstalled, associated Forge Storage is removed according to Atlassian's policies. To ask a question about access, deletion or applicable privacy rights, use the support form or email support@narrowforge.com.

Read-only safety

License Radar reads Jira data and writes only its own analysis records. It does not remove or suspend users, change groups, revoke product access, edit permissions or change billing. Any action outside the product remains the administrator's decision and responsibility.

Related documents and contact

Terms of service · Security policy · Customer support

Privacy contact: support@narrowforge.com

Last updated: 2026-09-08.