Pathpick for Jira: Privacy Policy
Effective date: October 1, 2026 Publisher: Great Work LLC, 651 N Broad St Suite 206, Middletown, DE 19709, USA Contact: hello@greatwork.company
This policy explains what information the Pathpick app for Jira Cloud and Jira Service Management (the "App") processes, where it is kept, and your rights. It covers only the App, not Atlassian's products, which are governed by Atlassian's own privacy policy.
1. Summary
- The App runs entirely on Atlassian's Forge platform ("Runs on Atlassian"). It has no servers of its own and sends no data to Great Work or to any third party.
- It stores the option trees your Jira admins build or import, and the values your users pick in the custom fields created from its field type.
- Great Work LLC cannot see your options, your values, your work items or who used the App.
2. What the App processes
| Data | Why | Where it lives |
|---|---|---|
| Option trees: tree names, level names, option labels, their order, which are retired, the account id of the admin who last changed a tree and when | The App's purpose: the options people pick from | Forge SQL for your site (hosted by Atlassian) |
| Picked values: the option ids of each pick, the path as text (for example "EMEA > Germany > Berlin"), every branch and level as text, and counters (depth, unmatched, complete) | Show the value, let Jira search it with JQL, show it in list view and exports | In your Jira, in the custom fields created from the App's field type, like any other field value |
| Field context settings (which tree, rules, level names) | Apply your admins' choices | Stored by Jira against the field context |
| Short-lived caches (the list of the App's fields, context settings) | Speed | Forge app storage; expire after 1 to 10 minutes |
| Last license state seen; storage schema version | Stop background work when the subscription lapses; keep the tables up to date | Forge app storage |
The App reads work items only to update its own field's value (matching text written by imports, bulk edit or automation, and rewriting stored text after an option is renamed or moved), and searches work items with JQL only to find values that use a renamed, moved or deleted option. It does not read descriptions, comments or attachments, and it does not collect email addresses, IP addresses, passwords, API tokens, payment information or analytics. It sets no cookies and loads no third-party scripts.
3. Where data is stored
All App data is stored by Atlassian, in your Jira site (field values and field context settings) or in Forge SQL and Forge app storage for your site, subject to Atlassian's data residency settings. Atlassian is the hosting provider and acts as a subprocessor under Atlassian's terms. Great Work LLC uses no other subprocessors.
4. Who can see what
- Values are visible to everyone who can see the work item, like any Jira field, and to portal customers on request types that include the field.
- Options are visible to people picking a value in the field (they see the options of the tree configured for that project and work type) and to Jira admins on the admin page.
- Only Jira admins can create, change, import, export or delete option trees. The App checks the Jira admin permission on every such request.
- Great Work LLC: no access. If you open a support request, we see only what you send us.
- Atlassian: as the platform operator, under Atlassian's privacy policy.
5. Retention and deletion
Values stay in Jira until your users clear them or the field is deleted. Option trees stay until your admins delete options or trees (options in use can be retired but not deleted). Caches expire on their own. Uninstalling the App removes its Forge SQL and app storage according to Atlassian's Forge data deletion process. Fields created from the App's field type disappear from Jira when the App is uninstalled and come back with their data if it is reinstalled within 30 days (Atlassian's rule for Forge custom fields).
6. Support requests
If you contact support through our help desk or by email, we process what you send (name, email, message, attachments) only to answer you, keep it up to 24 months, and delete it sooner on request.
7. Your rights
Depending on where you live (for example EU/UK GDPR or US state privacy laws), you may have the right to access, correct, delete or port personal data and to object to processing. For data in your Jira site, your organization (the Atlassian customer) is the controller and Atlassian processes it on your behalf; your admins can export or delete option trees, clear values, delete the App's fields or uninstall the App. For support data, Great Work LLC is the controller: email hello@greatwork.company. We respond within 30 days.
8. Security
The App uses only Atlassian-hosted compute and storage. Values are saved through Jira's own field editing, with Jira's permission checks and the field's validation. The only writes the App makes by itself are to its own fields (Jira enforces field ownership) and to its own option tables. It keeps no secrets of its own. Report vulnerabilities to hello@greatwork.company.
9. Children
The App is a business tool and is not directed to children under 16.
10. Changes
We will post changes here and update the effective date. Material changes will also be announced in the App's Marketplace release notes.
11. Contact
Great Work LLC, 651 N Broad St Suite 206, Middletown, DE 19709, USA. hello@greatwork.company