S
Simpleasyty
COMPLIANCE — Security

Security and infrastructure

Last updated: December 2025

At Simpleasyty, we take a security-first approach. Our products run entirely within Atlassian’s secure cloud using Forge Native infrastructure.

All apps run on Atlassian, operating within Atlassian-managed systems. There is no external data egress as part of the app’s core functionality — customer data is not transmitted or stored outside Atlassian’s infrastructure.

Simpleasyty apps do not independently store or process personally identifiable information (PII) outside of Atlassian’s infrastructure, and we do not access user content beyond what is strictly necessary for the app’s functionality. Interactions are limited to secure, scoped permissions declared in each app’s manifest.

Atlassian’s platform provides robust controls — encryption in transit and at rest, fine-grained access control, platform audits, and automated vulnerability scanning. By building exclusively on Forge, Simpleasyty inherits these controls.

No third-party subprocessors are involved in operating our apps’ core runtime. Logic and storage reside within Atlassian’s infrastructure, and app code runs in Atlassian’s serverless environment.

We continuously monitor Atlassian Forge updates, security advisories, and API changes to keep our apps compliant and secure.

If you believe you have identified a security vulnerability, please report it responsibly to security@simpleasyty.com, including as much relevant detail as possible so we can investigate promptly.

For data-handling details, see our Privacy Policy and Data Processing Agreement.

For security-related inquiries, contact us at security@simpleasyty.com.