Skip to the content.

Privacy Policy — Freeze Mode for Jira

Effective date: 1 July 2026

Freeze Mode for Jira (“the app”) is developed and operated by David Lee (“I”, “me”), an independent developer. This policy describes what data the app handles and where it lives. The short version: your data never leaves Atlassian’s infrastructure, and I never see it.

What the app does

The app lets a global Jira administrator put one or more company-managed projects into a temporary read-only (“frozen”) state during sensitive windows — audits, migrations, financial close — and cleanly release them afterward. It works entirely at Jira’s permission layer, by swapping a project’s permission scheme for a locked-down one and restoring it on release. It also keeps a durable Freeze Log: an append-only record of each freeze and release, which is the app’s core compliance artifact.

What data the app stores

When a project is frozen or released, the app stores a Freeze Log entry and the active-freeze state needed to release it later. Per freeze this includes:

Entries are hash-chained (each carries a hash of the prior entry) so out-of-band tampering is detectable on export. That is the only data the app persists.

Where the data lives

The Freeze Log and active-freeze state are stored in Atlassian Forge hosted storage (Forge KVS), inside Atlassian’s cloud infrastructure, scoped to your Jira site’s installation of the app. The app is built entirely on Atlassian Forge and makes no network calls outside Atlassian:

Atlassian’s handling of Forge-hosted data is governed by the Atlassian Privacy Policy.

What data the app accesses but does not store

To do its job, the app reads from and configures your Jira site at the moment an administrator uses it, under the permissions granted at install time:

These reads and configuration changes happen inside your Jira site under the permissions you granted at install time and are not retained by the app beyond the Freeze Log described above. The app requests no permission to read, edit, or delete issue content — it operates on permission schemes, not on the substance of your issues.

Retention and deletion

Your rights

Because all data is stored within your own Jira site’s Forge storage and under your organisation’s Atlassian agreement, your Jira admin controls it fully: any stored data is removed by uninstalling the app. For data-subject requests concerning your Atlassian account data, see Atlassian’s privacy resources.

Changes to this policy

If a future version of the app changes what data is handled (for example, optional features that require new permissions), this policy will be updated and the effective date revised before that version is released.

Contact

Questions or concerns: support@davidleetech.uk