Privacy Policy for Metrics Reporter

Last updated: 15 August 2026

1. Overview

Metrics Reporter by SolveroX ("the App") is a Jira reporting application built on Atlassian Forge. This Privacy Policy explains how data is accessed, processed, and stored when you use the App. By installing or using the App, you agree to this Privacy Policy.

2. Data We Access and Process

The App processes data made available through Atlassian Jira APIs, including:

  • Jira issues and their metadata (status, timestamps, SLA results, satisfaction ratings, etc)
  • Work Item comments and status transition details necessary for reports
  • Atlassian Jira user list and account identifiers
  • Project configuration data required to calculate metrics

The App does not intentionally access Atlassian passwords, authentication secrets, payment-card data, private authentication tokens, credentials or user names.

The App does not intentionally perform any "write" operation against your work items or Jira configuration.

3. Personal Data

Some data processed by the App may qualify as personal data, personal identifiers or personal information under applicable privacy or data protection laws. This may include Atlassian account identifiers, user-linked issue activity, work items, assignments, Atlassian user names, reporting metrics, satisfaction data, or other Jira data connected to identifiable individuals.

The App does not attempt to identify individuals beyond what is required to provide logging or reporting functionality, which may include user names, ids and similar. The App relies only on data, permissions, and identifiers made available by Atlassian and your Jira configuration.

4. Data Storage and Retention

  • All data is stored exclusively within Atlassian Forge
  • Only some Jira configuration and Jira report operations data is cached temporarily (max 24 hours) to improve reporting performance
  • Only limited operational data is logged and retained for 1 month within Atlassian with an option to share/not share the logs with SolveroX (Default is "share").
  • No archival or external backups are performed by the App
  • No report result is intentionally kept or retained by the App: As soon as the Jira agent closes the report output delivered to the browser, the report is gone.

5. Data Sharing and Transfers

  • The App does not transfer data outside Atlassian infrastructure
  • The App does not share any data with third parties

6. Security

The App runs entirely on Atlassian Forge and inherits Atlassian's security controls and authentication/authorization.

The App is for the Jira agents to generate reports. The App generates the reports by using the Jira agent's own security and authorization defined within Atlassian. This means that each Jira agent can see the reports generated only from the work items Jira agent is authorized to access.

7. Unauthorized Access and Data Exposure Risk

The App is designed to access and process Jira data only as required for authorized reporting functionality and only through Atlassian APIs, Atlassian permissions, Jira configuration, and App functionality.

However, no software, integration, permission model, reporting system, caching system, export process, logging process, cloud service, or API-based application can be guaranteed to be completely free from defects, misconfigurations, vulnerabilities, unauthorized access, over-collection, overexposure, misrouting, data loss, data corruption, or security incidents.

Potential risks may include accidental or unintended access to Jira/work item data, processing of more data than expected, incorrect permission handling, report-generation errors, export errors, caching errors, logging errors, cross-project exposure, cross-user exposure, public disclosure, or other unauthorized disclosure.

SolveroX uses reasonable technical and organizational measures intended to reduce these risks, but SolveroX does not guarantee that such risks can be completely eliminated.

You are responsible for configuring Jira permissions, project access, issue security, user roles, groups, exports, reports, dashboards, and App access controls to reduce the risk of unauthorized access or disclosure, and you accept the risks associated with using the App.

8. Customer Responsibilities

Customers are responsible for ensuring they have the right to process the data made available to the App and for complying with internal policies and applicable laws when using the App.

Jira instances may contain personal data, confidential business information, customer information, operational information, commercially sensitive information, trade secrets, employment-related information, or other sensitive data. You are solely responsible for determining whether the App is appropriate for the type, sensitivity, confidentiality, and regulatory status of the data in your Jira instance before installing, enabling, accessing, or using the App.

The App is not designed for Jira instances that carry sensitive, specially regulated or restricted data unless you have independently determined that such use is lawful, appropriate, authorized, and compatible with your obligations.

You are responsible for configuring Jira permissions, project access, issue security, user roles, groups, exports, reports, dashboards, and App access controls to prevent unauthorized access to confidential, sensitive, personal, regulated, or restricted data.

SolveroX is not responsible for your decision to store confidential, sensitive, personal, regulated, restricted, commercial, or trade-secret data in Jira, or for your decision to make such data available to the App.

9. Changes to This Policy

This Privacy Policy may be updated from time to time. Continued use of the App constitutes acceptance of the updated policy.

10. Contact

For privacy-related questions, contact [email protected].