The app collects nothing. It requests no Jira permissions, runs no server, and sends no data to us or to any third party.
Only what you put into the gadget: the text you write and the image addresses you paste. Both are saved in the gadget's own configuration, which Jira stores on your site alongside the dashboard. We never receive either.
The gadget shows images by address. The app does not fetch, copy or store the picture itself; the browser of whoever is looking at the dashboard requests it directly from the address you typed. That host therefore sees an ordinary web request from your viewer, including their IP address, the same as any image embedded in any web page. Point the gadget only at hosts you are content for your dashboard's viewers to contact.
The app declares no Jira scopes. It reads and writes only its own gadget configuration, through the interface Atlassian provides to gadgets.
None. No analytics, no telemetry, no advertising, no subprocessor. The text is rendered locally in your browser by Atlassian's own renderer.
Built on Atlassian Forge; the static files are served by Atlassian.
If this policy changes, the date above is updated.