Sealfield for Jira: Privacy Policy
Effective date: October 1, 2026 Publisher: Great Work LLC, 651 N Broad St Suite 206, Middletown, DE 19709, USA Contact: hello@greatwork.company
This policy explains what information the Sealfield app for Jira Cloud (the "App") processes, where it is kept, and your rights. It covers only the App, not Atlassian's products, which are governed by Atlassian's own privacy policy.
1. Summary
- The App runs entirely on Atlassian's Forge platform ("Runs on Atlassian"). It has no servers of its own and sends no data to Great Work or to any third party.
- Values you enter in restricted fields are stored in the App's storage on Atlassian's platform for your site, not in Jira fields, and are shown only to the people your Jira admins allow.
- Great Work LLC cannot see your restricted values, your audit log or who used the App.
2. What the App processes
| Data | Why | Where it lives |
|---|---|---|
| Restricted field values, with the time of the last change and the account id of who made it | The App's purpose | Forge app storage for your site, until someone clears the value, the work item is deleted, the field is deleted, or the App is uninstalled |
| Field definitions: names, types, options, projects, work types, and the project roles, group names and account ids allowed to see or change each field | To apply your admins' rules | Forge app storage until changed or uninstall |
| Audit log entries: time, action (for example revealed, edited, report, exported, field updated), account id, field name, work item id and key, project key, and a short description of what changed in a rule. Never field values | So admins can see who accessed or changed restricted data | Forge app storage; deleted automatically after the retention you set (30 to 365 days, default 365) |
| Copy, clear and delete jobs: the JQL, the Jira field copied from, counts, up to 50 work item keys with a short problem note, the admin who started it | To run the job in the background and show results | Forge app storage; deleted automatically after 180 days |
| Your account id, project roles, groups, Edit permission, and the work item's project, type, reporter and assignee | To decide whether you may see or change a value | In memory only |
| Values of the Jira field you copy from (copy jobs only) | To copy them into the restricted field | In memory while the job runs; the copy is stored as above |
The App does not read descriptions, comments or attachments, and it does not collect email addresses, IP addresses, passwords, API tokens, payment information or analytics. It sets no cookies and loads no third-party scripts.
3. Where data is stored
All App data is stored by Atlassian in Forge app storage for your Jira site, encrypted at rest by the platform and subject to Atlassian's data residency settings. Atlassian is the hosting provider and acts as a subprocessor under Atlassian's terms. Great Work LLC uses no other subprocessors.
4. Who can see what
- Restricted values: only people who can see the work item in Jira and are included in the field's rules (named people, project roles, groups, or the work item's reporter or assignee). Jira admins get no automatic access, but they can change the rules (every change is logged) and can export all values of a field for backup (also logged).
- The audit log and jobs: Jira admins.
- Great Work LLC: no access. If you open a support request, we see only what you send us.
- Atlassian: as the platform operator, under Atlassian's privacy policy.
5. Retention and deletion
Clearing a value deletes it. Deleting a work item deletes its restricted values. Deleting a restricted field deletes all of its values in the background. Audit entries and jobs expire automatically (see section 2). Uninstalling the App removes its Forge storage according to Atlassian's Forge data deletion process, so export values first if you want to keep them. Values are not included in Jira's own site backups or exports.
6. Support requests
If you contact support through our help desk or by email, we process what you send (name, email, message, attachments) only to answer you, keep it up to 24 months, and delete it sooner on request. Please never send restricted values to support.
7. Your rights
Depending on where you live (for example EU/UK GDPR or US state privacy laws), you may have the right to access, correct, delete or port personal data and to object to processing. For data in your Jira site, your organization (the Atlassian customer) is the controller and Atlassian processes it on your behalf; your admins can export, clear or delete values, shorten the audit retention or uninstall the App. For support data, Great Work LLC is the controller: email hello@greatwork.company. We respond within 30 days.
8. Security
The App uses only Atlassian-hosted compute and storage. Every read and change of a restricted value checks, at that moment, that the person can see the work item in Jira and is allowed by the field's rules. The work item is identified by the Forge platform, not by the browser. The App keeps no secrets of its own. Report vulnerabilities to hello@greatwork.company.
9. Children
The App is a business tool and is not directed to children under 16.
10. Changes
We will post changes here and update the effective date. Material changes will also be announced in the App's Marketplace release notes.
11. Contact
Great Work LLC, 651 N Broad St Suite 206, Middletown, DE 19709, USA. hello@greatwork.company