Privacy Policy
Effective Date: July 24, 2025
Last Updated: July 24, 2025
Privacy Commitment: At Figma2Jira, we are committed to protecting your privacy and being transparent about how we collect, use, and safeguard your personal information.
1. Who We Are
Figma2Jira is operated by Good Looking Code, LLC, a limited liability company incorporated in the Commonwealth of Virginia. We provide AI-powered workflow automation services that integrate Figma design feedback with Jira project management and Git repository analysis.
2. Information We Collect
2.1 Account Information
When you create an account, we collect:
- Identity Information: Name, email address, company name, role/title
- Authentication Data: Password (encrypted) or OAuth tokens from Google
- Profile Settings: Timezone, notification preferences, dashboard settings
- Onboarding Progress: Step completion status and configuration data
2.2 Integration Data
Figma Integration:
- Design file names, page names, and metadata
- Comment text, author information, timestamps, and reactions
- Visual context, spatial relationships, and element positioning
- OAuth tokens for API authentication (encrypted)
- File scan history and incremental scanning data
Jira Integration:
- Project configurations, issue types, priorities, and custom fields
- Created tickets, status information, and ticket metadata
- Instance URLs, resource details, and connection status
- OAuth tokens for API authentication (encrypted)
- Project selection and configuration preferences
Git Integration (GitHub/Bitbucket):
- Repository metadata, names, URLs, and access permissions
- Language analysis, dependency information, and package data
- Code scan history, technical complexity assessments
- OAuth tokens for API authentication (encrypted)
- Repository association with Jira projects
2.3 AI Analysis Data
Our AI processing creates and stores:
- Generated ticket summaries, descriptions, and acceptance criteria
- Confidence scores, actionability ratings, and priority assessments
- Technical implementation suggestions and business impact analysis
- Cross-thread analysis, duplicate detection, and relationship mapping
- PM learning context and decision patterns
- Multi-stage AI analysis outputs (Stage 1-3 processing)
2.4 Usage and Analytics
- Usage metrics (scan credits, tickets created, processing time)
- Performance data, error logs, and system diagnostics
- Behavioral analytics via Google Analytics 4
- Technical information (browser, device, IP address)
- Scan session monitoring and progress tracking
- Time savings calculations and efficiency metrics
2.5 Billing Information
- Stripe customer ID and subscription status
- Billing cycles, payment history, and usage tracking
- Credit consumption, overage calculations, and plan limits
- Referral codes, rewards, and promotional data
- Trial period management and conversion tracking
Note: We do not store credit card information. Payment data is processed by Stripe, Inc.
2.6 Plugin Data
- Authentication tokens and session management
- File scan history and local caching data
- Project selection and configuration preferences
- Scan settings and automation preferences
- Plugin version and update tracking
3. How We Use Your Information
3.1 Core Service Delivery
- Process Figma comments to generate actionable insights
- Use Google Gemini AI for multi-stage content analysis
- Maintain secure connections with Figma, Jira, and Git APIs
- Display feedback analytics and project management tools
- Automatically generate and sync Jira tickets with rich content
- Analyze codebases for technical context and complexity
- Provide cross-thread analysis and conflict detection
3.2 Account and Billing Management
- Verify identity and maintain secure access
- Process payments and manage billing cycles
- Monitor credit consumption and calculate overages
- Provide customer support and troubleshooting
- Manage trial periods and subscription transitions
3.3 Platform Improvement
- Improve AI accuracy and platform performance
- Analyze usage patterns for product development
- Detect and prevent unauthorized access or abuse
- Study aggregated patterns to enhance AI models
- Optimize scan performance and resource utilization
- Develop new features based on user behavior
4. Information Sharing and Third Parties
4.1 Service Providers
We share information with trusted partners:
Google Services
- Firebase/Firestore for data storage and authentication
- Google Gemini AI for content analysis and ticket generation
- Google Analytics 4 for usage analytics and performance monitoring
Stripe
- Payment processing and subscription management
- Customer portal and billing services
- Usage tracking and overage billing
External APIs
- Figma API for file access and comment retrieval
- Jira API for project management and ticket creation
- GitHub/Bitbucket APIs for repository analysis
4.2 Legal Disclosures
We may disclose information when required by law or to:
- Comply with legal process or government requests
- Investigate potential violations of our Terms
- Protect user safety and platform security
- Prevent fraud, abuse, or harmful activities
5. Data Security
5.1 Security Measures
- Encryption: Data encrypted in transit (TLS) and at rest (AES-256)
- Token Encryption: OAuth tokens encrypted with AES-256 before storage
- Authentication: OAuth 2.0 and multi-factor authentication
- Access Controls: Role-based permissions and least privilege
- Monitoring: Continuous security monitoring and incident response
- Firestore Security: Type-safe database operations with validation
5.2 Data Breach Response
In the event of a data breach, we will:
- Immediately investigate and contain the incident
- Notify affected users within 72 hours
- Provide clear information about affected data
- Take corrective action to prevent future incidents
6. Your Privacy Rights
6.1 Access and Control
You have the right to:
- Access: View and download your personal data
- Correction: Update inaccurate information
- Deletion: Request account and data deletion
- Portability: Export data in JSON format
- Objection: Opt out of certain data uses
6.2 Data Export and Deletion
You can:
- Export your data through account settings
- Cancel subscription and delete your account
- Contact us for specific deletion requests
- Clear plugin storage and local cache data
7. Data Retention
- Account Data: While active, plus 30 days after deletion
- Integration Tokens: While connected, deleted upon disconnection
- AI Analysis: 2 years (anonymized after processing)
- Code Scan History: 1 year for technical context
- File Scan History: While file is monitored, plus 90 days
- Billing Records: 7 years for tax compliance
- Security Logs: 1 year for monitoring
- Plugin Cache: Local storage, cleared with plugin reset
8. Children's Privacy
Figma2Jira is not intended for children under 13. We do not knowingly collect information from children under 13. If you believe a child has provided information, please contact us at privacy@figma2jira.com.
9. International Data Transfers
Our services are hosted in the United States. International transfers are protected by appropriate safeguards including standard contractual clauses and security measures.
10. Changes to This Policy
We may update this Privacy Policy. Significant changes will be communicated via email at least 30 days before taking effect. Continued use constitutes acceptance of updates.
11. Contact Information
For privacy questions, contact:
Good Looking Code, LLC
Email: privacy@figma2jira.com
Support: support@figma2jira.com
Incorporated in: Commonwealth of Virginia
Response time: 30 days. Mark urgent requests as "URGENT - Privacy Request."
Document Information:
Privacy Policy Version: 1.1
Effective Date: January 17, 2025
© 2025 Good Looking Code, LLC. All rights reserved.