Sprint Autopilot

Public privacy policy, terms of service, and product info for Sprint Autopilot — an Atlassian Marketplace app by FellowSheep Studios.

View the Project on GitHub panmateuszbaran/sprint-autopilot-docs

Sprint Autopilot — Privacy Policy

Last updated: 4 May 2026 Effective date: 4 May 2026 Vendor: FellowSheep Studios Contact: mrmateuszbaran+sprintautopilot@gmail.com

This Privacy Policy explains how Sprint Autopilot (“the App”, “we”, “us”) handles data. It applies to anyone using Sprint Autopilot inside their Atlassian Jira Cloud site.

TL;DR (the short version)

1. What data the App handles

When you use Sprint Autopilot, the following data is touched:

A. Jira issue data — read by the App, sent to Anthropic, not stored by us

B. Configuration data — stored encrypted in Atlassian Forge KVS, scoped to your Jira site

C. Audit/diagnostic logs — Atlassian-managed

D. What we do NOT collect

2. Data flow (in words)

When you click “Summarize this ticket with AI”:

  1. Your browser → Atlassian Forge function (using your Jira session, asUser scope).
  2. Forge function → Jira REST API (/rest/api/3/issue/...) to read the issue and its comments.
  3. Forge function → api.anthropic.com with your Anthropic API key + the ticket content as the prompt.
  4. Anthropic → Forge function (structured JSON response).
  5. Forge function → your browser (rendered in the AI Summary panel).

No step in this flow involves a Sprint Autopilot server. There is none.

3. Anthropic as a sub-processor

Sprint Autopilot’s AI features rely on Anthropic, PBC (the Claude API).

Because Sprint Autopilot uses your Anthropic key, your relationship with Anthropic is direct. We are not a sub-processor of Anthropic on your behalf — Anthropic is your processor.

4. Atlassian as the platform

Sprint Autopilot runs on Atlassian Forge. Atlassian operates the Forge runtime, the encrypted KVS where your API key lives, and the logging system.

5. Data subject rights (GDPR, CCPA, similar)

Because we do not hold any of your data, the answer to most data-subject requests is: we do not have your data. For the encrypted API key and configuration that does exist in your Forge KVS:

Requests about Jira content itself: contact your Jira workspace admin and Atlassian directly. Requests about prompt/output content already sent to Anthropic: contact Anthropic directly.

If you need help: mrmateuszbaran+sprintautopilot@gmail.com.

6. International transfers

Atlassian Forge runtime regions and Anthropic API regions are managed by their respective providers. Sprint Autopilot does not control where compute happens.

7. Children

Sprint Autopilot is a B2B developer tool. It is not directed at children under 16, and we do not knowingly collect data from them.

8. Security

9. Changes to this policy

Material changes will be posted here with an updated “Last updated” date and, where reasonably practical, surfaced in the App’s admin page or Marketplace release notes.

10. Contact

For privacy questions, GDPR/CCPA requests, or general support:

FellowSheep Studios mrmateuszbaran+sprintautopilot@gmail.com