Skip to main content

Security: Runs on Atlassian Forge

Argon Powerful JQL Search is built on Atlassian Forge, Atlassian's next-generation cloud development platform. This architecture provides enterprise-grade security by design.

What is Atlassian Forge?​

Forge is Atlassian's serverless compute platform for building cloud apps. Unlike traditional Jira apps that run on external servers, Forge apps run entirely within Atlassian's infrastructure.

Security Benefits​

Your Data Never Leaves Atlassian​

With Forge, your Jira data is processed within Atlassian's secure cloud environment:

  • No external servers: Argon doesn't run on third-party infrastructure
  • No data egress: Your issue data, comments, and attachments stay within Atlassian
  • No API tokens stored externally: Authentication is handled by Atlassian's platform

Atlassian-Managed Infrastructure​

Forge provides:

  • Automatic security updates: Atlassian manages the runtime environment
  • Isolated execution: Each app instance runs in its own sandbox
  • Certified infrastructure: Runs on Atlassian's infrastructure which holds multiple security certifications
  • Data residency: Data stays in your Atlassian cloud region

Scoped Permissions​

Argon only requests the permissions it needs:

PermissionPurpose
read:jira-workRead issues, comments, worklogs
write:jira-workUpdate entity properties for indexing
read:jira-userResolve user references

You can review these permissions in the Atlassian Marketplace before installation.

How Argon Uses Forge​

Data Processing​

  1. Event Listeners: Forge triggers run when issues change
  2. On-Platform Storage: Index data is stored using Forge Storage (within Atlassian)
  3. JQL Functions: Execute within Forge's compute environment

No External Dependencies​

Argon has:

  • No external databases
  • No external APIs (except Atlassian's own)
  • No third-party analytics
  • No external logging services

Compliance​

Argon runs on Atlassian's infrastructure, which holds multiple security certifications including SOC 2 Type II, ISO 27001, and more. Atlassian also provides GDPR compliance and data residency options.

For details on Atlassian's security practices and certifications, see Atlassian Trust Center.

Frequently Asked Questions​

Does Argon store my data externally?​

No. All data is stored using Forge Storage, which runs within Atlassian's infrastructure.

Can Argon access issues in all projects?​

Argon can only access projects where it has been installed and where the user has permissions.

Is my data encrypted?​

Yes. Atlassian encrypts data at rest and in transit. Forge Storage uses Atlassian's encryption standards.

What happens if I uninstall Argon?​

When uninstalled, Forge Storage data is deleted according to Atlassian's data retention policies.

Does Argon work with Data Residency?​

Yes. Forge apps respect Atlassian's data residency settings for your organization.

Learn More​