Requisite for Jira Service Management: Privacy Policy
Effective date: October 1, 2026 Publisher: Great Work LLC, 651 N Broad St Suite 206, Middletown, DE 19709, USA Contact: hello@greatwork.company
This policy explains what information the Requisite app for Jira Service Management Cloud (the "App") processes, where it is kept, and your rights. It covers only the App, not Atlassian's products, which are governed by Atlassian's own privacy policy.
1. Summary
- The App runs entirely on Atlassian's Forge platform ("Runs on Atlassian"). It has no servers of its own and sends no data to Great Work or to any third party.
- It stores your catalog, stock counts, departments, budgets, approval rules and orders in Atlassian's app storage for your site.
- Great Work LLC cannot see your catalog, your orders or who placed them.
2. What the App processes
| Data | Why | Where it lives |
|---|---|---|
| Catalog items: SKU, name, category, description, price, unit, options, vendor name, limits, the request types that offer them, extra approver account ids | To show the catalog and price orders | Forge app storage for your site, until deleted or uninstall |
| Stock per item: on hand, reserved, low-stock level | Availability and reservations | Forge app storage, until deleted or uninstall |
| Departments: name, budget, period, budget owner account id | Budgets and owner approval | Forge app storage, until uninstall |
| Approval tiers and settings: amounts, approver account ids, chosen request types and field | To route approvals as your admins set | Forge app storage, until uninstall |
| Orders: request id and key, requester account id, department, lines (item, quantity, price, note), state, approver account ids, a history of who changed which line and when | So agents can fulfil and budgets can be counted | Forge app storage, until uninstall |
| Spend totals per department and period | Budget checks and reports | Forge app storage, until uninstall |
| The cart a requester builds on the portal | Saved with the request as a Jira issue property by JSM itself | Your Jira site, with the request |
| Order summary on the request: a Jira issue property (total, department, state, item count) and a comment listing the lines | JQL search and a record on the request | Your Jira site, with the request |
| Account ids, display names and permissions of the person using the App | To check what they may do and show names | In memory only |
The App does not collect email addresses, IP addresses, passwords, API tokens, payment card data or analytics. It sets no cookies and loads no third-party scripts or images. Line notes and item text are whatever your users type; avoid putting secrets in them.
3. Where data is stored
All App data is stored by Atlassian in Forge app storage or in your Jira site, subject to Atlassian's data residency settings. Atlassian is the hosting provider and acts as a subprocessor under Atlassian's terms. Great Work LLC uses no other subprocessors.
4. Who can see what
- Requesters (portal customers): the catalog offered on the request type (no vendor names, no approver ids), the price and approval reasons for their own cart, and the lines and status of their own requests. Budget figures only if an admin turns that on.
- Agents who can edit a request: its order, stock on hand for its items, vendor names, the department budget position and the order history.
- Jira admins: everything above plus the catalog, departments, budgets, tiers, settings, order list and spend report.
- Great Work LLC: no access. If you open a support request, we see only what you send us.
- Atlassian: as the platform operator, under Atlassian's privacy policy.
5. Retention and deletion
Catalog, departments and orders stay until an admin deletes them (departments are hidden rather than deleted, so past orders keep their name) or the App is uninstalled. Uninstalling removes the App's Forge storage according to Atlassian's Forge data deletion process. Issue properties and comments the App wrote stay on your requests like any other Jira content.
6. Support requests
If you contact support through our help desk or by email, we process what you send (name, email, message, attachments) only to answer you, keep it up to 24 months, and delete it sooner on request.
7. Your rights
Depending on where you live (for example EU/UK GDPR or US state privacy laws), you may have the right to access, correct, delete or port personal data and to object to processing. For data in your Jira site, your organization (the Atlassian customer) is the controller and Atlassian processes it on your behalf; your admins can delete data in the App or uninstall it. For support data, Great Work LLC is the controller: email hello@greatwork.company. We respond within 30 days.
8. Security
The App uses only Atlassian-hosted compute and storage. Admin changes are re-checked against Jira's admin permission on the server, agent changes against the right to edit the request, and portal customers only see orders on requests Jira lets them view. Prices are recalculated on the server, never taken from the browser. It keeps no secrets of its own. Report vulnerabilities to hello@greatwork.company.
9. Children
The App is a business tool and is not directed to children under 16.
10. Changes
We will post changes here and update the effective date. Material changes will also be announced in the App's Marketplace release notes.
11. Contact
Great Work LLC, 651 N Broad St Suite 206, Middletown, DE 19709, USA. hello@greatwork.company