Templates that help a team say no as clearly as yes.
These standalone documents connect directly to purchasing, security, and addly add-on migration decisions. Copy or download them without registration or a gated file.
Immediate utility
Copy the text, adapt it to your working tool, and keep evidence as dated, versioned links.
Marketplace app evaluation checklist
ATLASSIAN MARKETPLACE APP EVALUATION Scope: one app, one version, one hosting model, and one observable scenario. This working document is not vendor evidence. 1. Problem and moment of work - Person / team: - Host product and hosting model: - Current task: - Missing information or decision: - Observable success indicator: 2. Demonstration - Critical path actually exercised: - States actually exposed: - Empty / error / insufficient-permission states tested or recorded as missing evidence: - Observed limits and excluded cases: 3. Trust - Permission scopes and functional justification: - Data, storage, retention, and deletion: - Subprocessors, regions, and transfers: - Security support and incident process: 4. Deployment and adoption - Configuration of the evaluated app: - Internal owner and test environment: - Enablement and measurement: - Exit or uninstall behavior: 5. Decision - Selected option: - Evidence links: - Missing evidence: - Accepted risks: - Owner and next review date:
App security and data questionnaire
APP SECURITY AND DATA REVIEW Scope: verify the published app, version, hosting model, architecture, and source links. A blank answer remains missing evidence. - Listing, app version, and review date: - Host product and hosting model: - Manifest / permission scopes: - Functional justification for every permission: - Data categories, sources, and purposes: - Storage, regions, transfers, and subprocessors: - Retention, deletion, uninstall, and backups: - Encryption and secret management: - Private vulnerability-reporting channel: - Incident process and customer communication: - Certifications verified with source, scope, and validity: - Exceptions, residual risks, and owner: - Decision and next review:
addly add-on migration playbook
addly ADD-ON MIGRATION PLAYBOOK Scope: configuration and data belonging to the selected addly add-on only. This is not a Jira, Confluence, or Atlassian ecosystem migration service. INVENTORY - addly app and source / target versions: - Host product and hosting models: - App configuration, data, and volumes: - Automations and documented dependencies: - Owners and excluded data: REHEARSAL - Test environment: - Mapping and transformation rules: - Counts before / after: - Critical paths and permissions: - Differences, logs, and unresolved evidence: CUTOVER - Window and source of truth: - Start gate and authorized owner: - Stop threshold: - Rollback decision-maker: - Backup and restoration verification: - User communication: - Monitoring window and final decision:
A good template becomes the thread running through the decision.
Use the same document during the demo, security review, test, and final validation so evidence does not fragment across screenshots and messages.