ConfigMonitor — Privacy Policy

The configuration change audit app for Jira Cloud, by Macon Apps. This policy covers only ConfigMonitor.

Effective date: August 3, 2026

The short version: ConfigMonitor runs entirely on Atlassian's Forge platform, inside your Atlassian cloud environment. Everything it reads and everything it stores stays with Atlassian — the app makes no network calls to Macon Apps or to any other external service. We operate no servers for ConfigMonitor, so there is no place your data could reach us. The app never asks for, collects, or stores an API token, password, or any other credential.

1. Who We Are

ConfigMonitor is a Jira Cloud app operated by Macon Apps, a trade name of Investor Direction LLC, an Ohio (USA) entity. Contact: [email protected] or 937-217-7327.

2. What ConfigMonitor Accesses

ConfigMonitor reads your Jira site's configuration: workflows, custom field definitions, field configurations, screens and screen schemes, permission schemes, notification schemes, and issue type schemes. To show who made a change, it also reads Jira's built-in audit log records. All reads use the app permissions a site admin approves at install — Atlassian's Forge platform enforces that boundary.

ConfigMonitor does not read the content of your issues, comments, attachments, or user directories, and it writes nothing to your Jira configuration — it is a read-only observer.

3. What ConfigMonitor Stores, and Where

To detect and display changes, ConfigMonitor keeps the following in Forge storage — Atlassian-hosted storage that lives inside Atlassian's cloud, alongside your Jira data:

Because storage is provided by Atlassian's Forge platform, it inherits Atlassian's hosting, security, and data-residency arrangements for your site. Macon Apps has no independent copy and no way to access your site's data outside the app itself.

4. No API Tokens, Ever

ConfigMonitor authenticates through Forge's built-in app identity, granted once at install by your site admin. It has no setup screen requesting an email-plus-token, no credential field of any kind, and it does not collect, transmit, or store Atlassian user API tokens — in line with Atlassian Marketplace security requirements. If any screen ever appears to ask you for a credential, it is not ours: stop and contact us.

5. Payments

ConfigMonitor is sold through the Atlassian Marketplace. Billing, invoicing, and payment details are handled entirely by Atlassian on your existing Atlassian bill — Macon Apps never sees your payment information. Atlassian shares standard sales reporting with us (site-level license status), not personal payment data.

6. Cookies, Analytics & Tracking

ConfigMonitor sets no cookies of its own, embeds no analytics, and does no tracking of any kind. The app's user interface is served by Atlassian inside Jira, and the app makes no network egress to any non-Atlassian destination.

7. Data Retention & Deletion

8. Third Parties We Rely On

That's the whole list. ConfigMonitor uses no other processor, host, or service.

9. Your Rights

The only personal data ConfigMonitor holds is admin display names on change events, stored inside your own Atlassian environment and visible only to your site's admins. Requests about your Atlassian account and its data are handled by Atlassian; for anything about ConfigMonitor's stored history (access, correction, deletion under GDPR, UK GDPR, CCPA, or similar), email [email protected] and we'll honor them.

10. Changes to This Policy

If a future feature changes what ConfigMonitor stores or where — for example, optional notifications that require external delivery — we'll update this page, adjust the effective date above, and describe the change in the app's Marketplace listing before it ships. Material changes will be called out in the app itself.

11. Contact

Questions about this policy or your data: [email protected] · 937-217-7327 · or via the support portal.