Host product
The person authorizes an action in Jira or Confluence.
The Data packet shows the expected full flow: input, processing, possible storage, output, retention, and deletion. The app concepts use no remote product backend; both public forms remain closed until their privacy information is complete.
Demos use fictional browser data. A form can write to Prisma only after server opt-in, consent, and publication of the controller, rights contact, and retention.
The person authorizes an action in Jira or Confluence.
The minimum data is read and transformed for the task.
Necessity, region, and retention must be documented.
The result returns to the flow; deletion remains controllable.
Every category must state its purpose, location, duration, and deletion mechanism. ‘We take security seriously’ fills no field.
| Category | Example | Purpose | Current state |
|---|---|---|---|
| Host context | Authorized issue, project, or page | Required for the function | No active remote storage |
| App configuration | Criteria, preferences, relationships | Make the experience persistent | Model still to define |
| Technical logs | Error, correlation, version | Diagnostics and security | Retention still to define |
| Sensitive content | Minimize and classify | Never collected by default | Processing requires justification |
| Evaluation brief | Name, email, company, and context | Process a voluntary request | Writes blocked by default · conditional activation |
| Editorial updates | Email and consent evidence | Prepare future field-note delivery | Writes blocked by default · no active delivery |
Now connect the data flow to application scopes and documented configuration steps.