Public pages for the Attest app: privacy policy, support, terms
Effective 6 September 2026.
Recert (“the app”) is published on the Atlassian Marketplace by its developer (“we”). This policy explains what the app processes and stores, where, and for how long.
To compute who has access to a Jira project or Confluence space, the app reads, from your own Atlassian site and only while it is installed there:
The app does not read issue content, page content, comments, attachments, or email addresses.
The app stores, in Atlassian-hosted Forge SQL storage attached to your site:
The app stores personal data only in the form of Atlassian account ids and display names, which are needed to say who has access and who made a decision. It stores no email addresses, passwords, or credentials.
All storage is Atlassian-hosted Forge storage in the region of your Atlassian site. The app makes no calls to any server outside Atlassian: it has no external egress and qualifies for Atlassian’s “Runs on Atlassian” programme. We, the developer, cannot read your data: there is no developer-side database, dashboard, or export.
If an administrator enables it for a campaign, the app creates one Jira issue per review in a project they choose, so Jira’s own notifications remind the reviewer. These issues contain the project or space name, the campaign name, the due date and a link, and are resolved by the app when the review is signed off. They stay in your Jira like any other issue.
The app shares no data with any third party. It sends no analytics.
Because the app stores nothing outside your own Atlassian site, requests to access, correct or delete data are fulfilled by your own Atlassian administrators using the app or by uninstalling it. Questions about this policy: see the support page.
Material changes to this policy will be dated at the top of this page.