Privacy Policy
Summary
Our apps run entirely inside Atlassian’s cloud infrastructure on the Forge platform. They make no connections to any server outside Atlassian. We do not receive, store, or have access to your Jira or Confluence data.
What data the apps access
Bulk Link Manager for Jira reads issues matching the JQL query you enter (issue key, summary, type, and status), reads the issue link types configured on your site, and creates the issue links you request. It accesses nothing else.
All access happens with your own Atlassian permissions. The apps cannot see or change anything you could not see or change yourself.
What we store
Nothing. Bulk Link Manager holds no database and writes no records. Data you enter exists only for the duration of the request and is never persisted, by us or on your behalf.
Where data goes
Nowhere. The apps declare no external network permissions, which Atlassian enforces at the platform level — a request to an outside server would be blocked by Forge, not merely discouraged by policy. This is why our apps qualify for Atlassian’s Runs on Atlassian programme.
Because no data leaves your tenant, there is no sub-processor list, no data-transfer mechanism, and no data-processing agreement required for our apps to operate.
Analytics and tracking
We collect no analytics, telemetry, or usage data from within the apps. We do not use cookies or tracking of any kind in the app interface.
Atlassian independently collects installation and licensing information as the Marketplace operator. That data is governed by Atlassian’s privacy policy, not this one.
Support correspondence
If you email us for support, we receive whatever you choose to send — your email address, your message, and any screenshots or details you include. We use it only to answer you, we do not share it, and we delete support correspondence once a matter is closed and no longer useful for reference.
Please do not send credentials, API tokens, or personal data in support requests. We will ask you to rotate anything sensitive that reaches us by accident.
Your rights
Since we hold no customer data, there is generally nothing for us to export or delete. For any support correspondence we may still hold, write to support@outlaplabs.com and we will delete it on request.
Security issues
Report suspected vulnerabilities to security@outlaplabs.com. We aim to acknowledge within two business days. Atlassian additionally scans every version of our apps for known vulnerabilities through its Ecoscanner programme, and we are bound by Atlassian’s published remediation timelines.
Changes
If this policy changes materially, we will update the date above and note the change here. Continued use of the apps after a change constitutes acceptance of the revised policy.
Contact
Outlap Labs LLC, Ohio, USA — support@outlaplabs.com