Configaze

プライバシーポリシーPrivacy Policy

最終更新 2026年9月2日Last updated September 2, 2026

Configaze: Custom Field History for Jira(以下「本アプリ」)は、ユーザー情報およびJira設定データの取扱いについて、以下の通りプライバシーポリシーを定めます。プライバシーに関する問い合わせはプライバシーフォームから送信してください。

1. アプリが処理するデータ

Jira管理者が手動でSnapshotを作成すると、Configazeは次のデータを処理・保存します。

Custom Fieldのテキストや管理者が入力した名前・メモには、顧客組織の情報が含まれる場合があります。Snapshot名やメモへ秘密情報・個人情報を入力しないでください。

2. 利用目的

Configazeは、読み取り専用のCustom Field Snapshot作成、履歴表示、対応属性の比較、管理者が要求したCSV / JSON download、履歴の整合性保護、削除・Privacy maintenanceのためだけにデータを使用します。

顧客データを広告、Profiling、AI学習、第三者Analyticsへ利用しません。

3. 保存、アクセス、共有

アプリデータはinstallation単位でAtlassian Forge hosted storageへ保存します。Configazeには外部app serverや外部DBがなく、アプリデータを発行元が運営する外部サービスへ送信しません。Atlassianによるhosted dataの処理には、Atlassianの該当する条件とポリシーが適用されます。

認証済みJira管理者だけがアプリを通じてConfigaze履歴へアクセスできます。アプリ操作ごとにサーバー側で権限を確認します。

4. 比較とExport

比較結果は2つの保存済みSnapshotから要求時に導出し、別recordとして保存しません。CSV / JSONは、管理者が表示中の比較結果を明示的にdownloadした時だけ生成します。download後のファイルはConfigazeの外にある管理者端末へ保存され、保持・共有・削除は管理者の責任となります。

ExportにはJira設定データ、Field名、説明、対応schema値、Checkpoint名が含まれる場合があります。Snapshot note、Atlassian account ID、history chain ID、内部storage keyは含めません。

5. 保持と削除

Configazeはapp installationごとに最大30件のSnapshotを保持します。これは件数上限であり、時間による保持保証ではありません。上限を超えた古いSnapshotは、新しいSnapshotの保存に伴い削除されます。

Jira管理者はData controls → Delete all historyから、installationのSnapshot履歴をすべて削除できます。この操作は発行元でも取り消せません。以前に管理者端末へdownloadしたファイルは、この操作では削除されません。

アンインストール後のForge hosted storageには、Atlassianのhosted-storage lifecycleが適用されます。即時削除が必要な場合は、アンインストール前にConfigazeで全履歴を削除してください。

6. Atlassian account data

Configazeは、保存中のAtlassian account IDを必要な周期でAtlassian Personal Data Reporting APIへ報告します。Atlassianから保存済みaccountの閉鎖または更新が通知された場合、要求を安全に処理するため、そのapp installationのSnapshot履歴を削除します。

7. ログとSecurity

ConfigazeはCustom Field名・説明、Snapshot名・メモ、Atlassian account ID、Snapshot内容を意図的にログへ出力しないよう設計しています。運用ログには、error category、HTTP status、Atlassian request IDなど限定した技術情報が含まれる場合があります。

Security上の懸念はセキュリティ報告ページから報告してください。Password、API token、未加工の個人情報、顧客設定全文を含めないでください。

8. WebサイトのAnalytics

b13.in/configaze/配下のWebページでは、利用状況の把握と内容改善のため、訪問者が許可した場合にGoogle Analyticsを使用します。Google AnalyticsはCookie等を使用し、閲覧ページ、利用環境、おおよその地域などのアクセス情報をGoogleへ送信する場合があります。詳細はb13.in Webサイトのプライバシーポリシーをご確認ください。

これはWebサイトだけの計測です。Configazeアプリ内ではGoogle Analyticsを読み込まず、Jira設定データ、Atlassian account IDその他のアプリデータをGoogle Analyticsへ送信しません。

一般サポート、Privacy、またはSecurityのGoogleフォームを利用した場合、訪問者が任意に入力した内容と連絡先はGoogle Formsにより処理・保存されます。GoogleフォームはConfigazeアプリとは別の外部サービスであり、アプリが保存するJira設定データを自動送信しません。

9. 問い合わせと変更

アクセス、訂正、削除、異議その他のPrivacy問い合わせはプライバシーフォームから送信してください。PasswordやAPI tokenを求めず、対象installationの特定と権限確認に必要な最小限の情報を依頼する場合があります。

アプリ、Atlassian platform要件、適用される義務が変わった場合、このポリシーを更新することがあります。最新版と更新日はこのページへ掲載します。

Configaze: Custom Field History for Jira (the “App”) establishes this Privacy Policy regarding its handling of user information and Jira configuration data. Privacy questions and requests can be submitted through the privacy request form.

1. Data the app processes

When a Jira administrator manually creates a snapshot, Configaze processes and stores:

Custom field text and administrator-entered names or notes may contain information supplied by the customer's organization. Administrators should not enter secrets or personal information in snapshot names or notes.

2. How the data is used

Configaze uses this data only to create read-only custom field snapshots, show snapshot history, compare supported attributes, generate an administrator-requested CSV or JSON download, protect history integrity, and handle deletion or privacy-maintenance work.

The app does not use customer data for advertising, profiling, AI training, or third-party analytics.

3. Storage, access, and disclosure

App data is stored per installation in Atlassian Forge hosted storage. Configaze has no external application server or database and does not send app data to an external service operated by the publisher. Atlassian processes hosted data under its own applicable terms and policies.

Only an authenticated Jira administrator can access Configaze history through the app. Authorization is checked on the server side for app operations.

4. Comparisons and exports

A comparison is derived on request from two stored snapshots and is not stored as a separate record. CSV and JSON files are created only when an administrator explicitly downloads the displayed comparison. The downloaded file is stored on the administrator's device, outside Configaze. The administrator is responsible for its retention, sharing, and deletion.

Exports may contain Jira configuration data, including field names, descriptions, supported schema values, and checkpoint names. They exclude snapshot notes, Atlassian account IDs, history-chain IDs, and internal storage keys.

5. Retention and deletion

Configaze retains a maximum of 30 snapshots per app installation. This is a count limit, not a guaranteed time period. As new snapshots are saved, older snapshots beyond that limit are removed.

A Jira administrator can use Data controls → Delete all history to delete all snapshot history for the installation. This operation cannot be undone by the publisher. Files previously downloaded to an administrator's device are not deleted by this action.

After uninstall, Forge hosted storage follows Atlassian's hosted-storage lifecycle. If immediate deletion is required, an administrator should delete all history in Configaze before uninstalling.

6. Atlassian account data

Configaze reports stored Atlassian account IDs to Atlassian's Personal Data Reporting API on the required cycle. If Atlassian instructs the app that a stored account has been closed or updated, Configaze deletes the snapshot history for that app installation to handle the request safely.

7. Logs and security

Configaze is designed not to intentionally log custom field names or descriptions, snapshot names or notes, Atlassian account IDs, or snapshot contents. Operational logs may include limited technical information such as error categories, HTTP status codes, and Atlassian request IDs.

Report security concerns through the security reporting page. Do not include passwords, API tokens, unredacted personal data, or full customer configuration in a report.

8. Website analytics

The web pages under b13.in/configaze/ use Google Analytics, with the visitor's permission, to understand usage and improve the website. Google Analytics may use cookies and send information such as pages viewed, device and browser details, and approximate location to Google. See the b13.in website privacy policy for more information.

This measurement applies only to the website. The Configaze app does not load Google Analytics or send Jira configuration data, Atlassian account IDs, or other app data to Google Analytics.

If a visitor uses a Google Form for general support, privacy, or security, Google Forms processes and stores the information and contact details the visitor voluntarily submits. The forms are external services separate from the Configaze app and do not automatically receive Jira configuration data stored by the app.

9. Requests and changes

For access, correction, deletion, objection, or other privacy questions, use the privacy request form. A request may require enough information to identify the relevant app installation and verify authority without asking for passwords or API tokens.

This policy may be updated when the app, Atlassian platform requirements, or applicable obligations change. The latest version and its update date will be posted on this page.