JiraDash(이하 "확장 프로그램")는 사용자가 본인의 Jira Cloud 사이트의 이슈를 브라우저에서 조회·수정하고 관련 알림을 받을 수 있게 하는 Chrome 확장 프로그램입니다. 본 방침은 확장 프로그램이 어떤 데이터를 다루고 어떻게 보호하는지 설명합니다.
확장 프로그램은 개발자가 운영하는 서버가 없으며, 어떠한 데이터도 개발자나 제3자에게 전송하지 않습니다. 분석(analytics), 추적, 광고, 오류 보고 SDK를 포함하지 않습니다.
다음 데이터는 사용자가 직접 입력하거나 사용 중 생성되며, chrome.storage.local을 통해 사용자의 브라우저 안에만 저장됩니다.
이 데이터는 브라우저 동기화 대상이 아니며(local 영역), 확장 프로그램을 삭제하면 함께 삭제됩니다. 설정 페이지의 "연결 해제"로 연결 정보를 즉시 지울 수 있습니다.
확장 프로그램이 보내는 모든 API 요청은 사용자가 설정에 입력한 본인의 Atlassian 사이트(https://<사이트>.atlassian.net)로만 전송됩니다. 요청에는 사용자의 이메일과 API 토큰이 HTTP Basic 인증 헤더로 포함되며, 이는 Atlassian이 정한 표준 인증 방식입니다. 이 요청으로 조회한 이슈·댓글·보드 정보는 화면 표시에만 사용되고 저장되지 않습니다(위 2항의 "마지막 확인 시각·상태" 제외).
그 외 외부 요청은 UI 글꼴을 위한 Google Fonts 스타일시트(fonts.googleapis.com, fonts.gstatic.com) 로드만 있으며, 이 요청에는 사용자 데이터가 포함되지 않습니다. Google의 처리 방침은 Google 개인정보처리방침을 따릅니다.
*.atlassian.net/browse/*, /jira/*): 현재 페이지 URL에서 이슈 키만 읽어 툴바를 표시합니다.ABC-123)만 찾아 상태 배지를 표시합니다. 그 외 페이지 내용은 읽지 않으며, 읽은 키도 저장하거나 외부로 전송하지 않습니다.사용자 데이터를 제3자에게 판매·전송·공유하지 않습니다. 확장 프로그램의 전용 목적 외의 용도로 사용하지 않으며, 신용도 판단·대출 등에 사용하지 않습니다.
API 토큰은 사용자의 브라우저 프로필 안에 저장되므로, 기기와 브라우저 프로필의 보안이 곧 토큰의 보안입니다. 공용 기기에서는 사용 후 "연결 해제"를 권장합니다. 토큰이 유출되었다고 판단되면 Atlassian 계정 설정(API 토큰)에서 즉시 폐기할 수 있습니다.
확장 프로그램은 업무용 도구이며 만 14세 미만 아동을 대상으로 하지 않습니다.
본 방침이 변경되면 이 페이지에 게시하고 상단의 최종 수정일을 갱신합니다. 데이터 처리 방식이 실질적으로 바뀌는 경우 확장 프로그램 업데이트 노트에도 명시합니다.
GitHub 이슈 페이지(github.com/choiminu/jira-dash/issues)를 통해 문의할 수 있습니다.
JiraDash (the "Extension") is a Chrome extension that lets you view and update issues on your own Jira Cloud site from the browser and receive related notifications. This policy explains what data the Extension handles and how it is protected.
The Extension has no developer-operated server and transmits no data to the developer or any third party. It contains no analytics, tracking, advertising or crash-reporting SDKs.
The following data is entered by you or generated during use and is stored solely inside your browser via chrome.storage.local:
This data is not synced (local area only) and is deleted when the Extension is removed. "Disconnect" in the settings page erases the connection data immediately.
Every API request made by the Extension is sent only to the Atlassian site you entered in settings (https://<yoursite>.atlassian.net). Requests carry your email and API token in an HTTP Basic authentication header, which is Atlassian's standard authentication method. Issues, comments and board data retrieved this way are used only for display and are not stored (except the last-seen timestamp/status noted in section 2).
The only other external request is loading the Google Fonts stylesheet (fonts.googleapis.com, fonts.gstatic.com) for UI typography; it carries no user data. Google's handling is governed by the Google Privacy Policy.
*.atlassian.net/browse/*, /jira/*): only the issue key is read from the current URL to show the toolbar.ABC-123) to display status badges. No other page content is read, and detected keys are neither stored nor transmitted elsewhere.We do not sell, transfer or share user data with third parties. Data is not used for purposes unrelated to the Extension's single purpose, nor for creditworthiness or lending decisions.
Your API token is stored inside your browser profile; the security of your device and profile is the security of the token. On shared devices, use "Disconnect" after use. If you believe a token is compromised, revoke it immediately in your Atlassian account (API tokens).
The Extension is a work tool and is not directed at children under 13.
Changes to this policy will be posted on this page with an updated date above. Material changes to data handling will also be noted in the Extension's release notes.
Open an issue at github.com/choiminu/jira-dash/issues.