Privacy Policy

Privacy Policy


1. 🌍 Overview

This Privacy Policy describes how Knockd ("the App") processes data when installed from the Atlassian Marketplace and used within Atlassian Cloud products.

Knockd is developed as an Atlassian Forge application and operates exclusively within the Atlassian Cloud infrastructure.

The App:

  • ❌ Does not operate external servers

  • ❌ Does not use third-party hosting

  • ❌ Does not maintain external databases

  • ✅ Processes data only within Atlassian Cloud

Knockd follows a strict privacy-first and minimal data processing approach.


2. 🏢 Data Controller

The entity responsible for Knockd is:

Adviceworx
Email: support@adviceworx.net

For customer data stored within an Atlassian Cloud site, the Atlassian customer (organization / site administrator) remains the data controller.

Knockd acts solely as a technology provider operating within Atlassian’s infrastructure.


3. 📌 Scope of Application

This Privacy Policy applies to:

  • Administrators installing Knockd

  • End users interacting with Knockd

  • Organizations using Knockd within Atlassian Cloud products

This Policy does not apply to Atlassian’s independent data processing activities.


4. ⚖️ Data Processing Principles

Knockd adheres to the following principles:

  • 📉 Data minimization

  • 🎯 Purpose limitation

  • 🔒 No external storage

  • 🚫 No third-party sharing

  • 🚫 No profiling

  • 🚫 No advertising usage

Only data strictly necessary to provide application functionality is processed.


5. 📊 Categories of Data Processed

Depending on granted scopes and user interaction, Knockd may process:

  • Project metadata

  • Issue or page metadata

  • Permission-related information

  • Atlassian account identifiers (e.g., account ID)

  • App configuration settings

Knockd does not independently collect:

  • Personal contact information

  • Payment details

  • Authentication credentials

  • Sensitive personal data

All data remains within Atlassian Cloud.


6. ☁️ Data Storage and Hosting

Knockd is built exclusively using Atlassian Forge.

This means:

  • Data is processed within Atlassian infrastructure

  • No external databases are used

  • No replication of customer data outside Atlassian

  • No direct access to raw database layers

Knockd maintains no infrastructure outside Atlassian Cloud.


7. 🤝 Subprocessors

Knockd does not use subprocessors.

No third-party services receive, process, or store customer data on behalf of Knockd.


8. 🌐 International Data Transfers

Knockd does not independently initiate cross-border data transfers.

Any international processing is governed solely by Atlassian’s infrastructure and compliance framework.

Customers should consult Atlassian documentation for details regarding data residency and transfer safeguards.


9. 🛡️ Security Measures

Knockd benefits from Atlassian Forge security architecture, including:

  • 🔐 Sandboxed runtime execution

  • 🔒 Encryption in transit (TLS)

  • 🔒 Encryption at rest (managed by Atlassian)

  • 👤 Permission-based access scopes

  • 🔑 Authentication handled by Atlassian Identity Services

Knockd does not expose external APIs or endpoints processing customer data.


10. 🔑 Access Controls

Knockd fully respects Atlassian’s native permission model.

The App only accesses data within granted scopes and respects user-level permissions.

Users cannot access data through Knockd that they are not authorized to access within Atlassian.


11. 🗄️ Data Retention

Knockd does not independently retain customer data.

All processed data remains within the customer’s Atlassian Cloud environment and is subject to the customer’s configured retention policies.

Uninstalling the App removes its access to customer data.


12. 📜 Audit and Logging

Knockd does not maintain independent activity logs containing personal data outside Atlassian systems.

Operational logs, if generated, remain within Atlassian’s Forge environment.


13. 📘 Legal Basis for Processing (GDPR)

Where GDPR applies, processing is based on:

  • Article 6(1)(b) – Performance of a contract

  • Article 6(1)(f) – Legitimate interest in providing application functionality

Knockd does not independently determine the purpose of customer data processing.


14. 👤 Data Subject Rights

Where applicable, individuals may have the right to:

  • Access their personal data

  • Rectify inaccurate data

  • Request erasure

  • Restrict processing

  • Object to processing

  • Data portability

Since Knockd does not store data independently, such requests should be directed to the Atlassian site administrator.


15. 🚨 Incident Response

In the unlikely event of a security incident directly attributable to Knockd:

  • We will investigate promptly

  • Notify affected customers where legally required

  • Cooperate with Atlassian where applicable

Knockd does not operate independent infrastructure that introduces additional breach vectors.


16. 📑 Compliance Alignment

Knockd operates within Atlassian Forge, which aligns with industry standards such as:

  • SOC 2

  • ISO 27001

  • Cloud security best practices

Knockd does not claim independent certification unless explicitly stated.


17. 💳 Licensing and Billing

Knockd is offered as a paid application via the Atlassian Marketplace.

All licensing, subscription management, invoicing, and payment processing are handled exclusively by Atlassian.

Knockd does not:

  • Process payments

  • Store billing information

  • Access credit card data

  • Maintain independent subscription databases

Billing-related processing is governed solely by Atlassian’s Marketplace Terms and Privacy Policy.


18. 🧾 License Verification and Entitlement

Knockd may process licensing information provided by Atlassian in order to:

  • Verify active license status

  • Enable or disable paid features

  • Enforce subscription validity

This may include:

  • License status

  • Subscription tier

  • Installation identifiers

No personal financial data is accessed or stored.


19. 🔄 Changes to This Policy

We may update this Privacy Policy to reflect legal, technical, or operational changes.

The updated version will be published on this page with a revised "Last Updated" date.


20. 📬 Contact

For privacy-related inquiries:

Email: support@adviceworx.net
Company: Adviceworx


21. 🏷️ Independent Vendor Statement

Knockd is an independent application developed for the Atlassian Marketplace.

It is not affiliated with, sponsored by, or endorsed by Atlassian.

All Atlassian trademarks are property of Atlassian.