Legal

Data Processing Addendum

Effective date: 10 September 2026 (replaces earlier drafts that incorrectly named a company)

This Data Processing Addendum (“DPA”) is between the Atlassian Cloud customer that installs a Berkly Marketplace app (“Customer”, controller) and Berk Karabacak, an individual developer publishing under the Berkly name (“Processor”). It is Berkly’s own DPA. It is not Atlassian’s DPA.

Processor: Berk Karabacak (individual developer; no parent company)

Contact: info@berkly.nl

This DPA is not offered by Berkly B.V., Berkly N.V., or any Dutch company.

This DPA applies when Customer installs a Berkly Forge app that processes personal data on Customer’s behalf. It forms part of the agreement created by installing the app from the Atlassian Marketplace and accepting the listing EULA.

1. Roles

Customer is the controller of personal data in its Jira Cloud site. Berk Karabacak is a processor only to the extent the app processes that data to provide the app. Atlassian is a separate processor / infrastructure provider under Customer’s Atlassian Cloud terms. This DPA does not replace Atlassian’s DPA.

2. Subject matter, nature, and purpose

Subject matter: providing the installed Forge app.

Nature and purpose:

The app does not export issue content off the Atlassian platform and does not use personal data for marketing.

3. Duration

This DPA lasts for the life of the installation, plus any short period needed to delete residual support email. Uninstall ends processing for that site.

4. Types of personal data and data subjects

Data subjects: Customer’s Jira users and, indirectly, people named in Jira issues that a searcher is already allowed to see.

Personal data:

5. Instructions

I process personal data only to provide the app and to follow documented Customer instructions (install, configure, uninstall, support). Customer’s instructions are the Marketplace listing, this DPA, and written support requests.

6. Confidentiality and security

Anyone acting for me who could see support email is bound to confidentiality. App runtime access is limited to the Forge sandbox on Atlassian. There is no external fetch, no vendor logging endpoint, and no Berkly-hosted database of Customer Jira data.

7. Subprocessors

Authorised infrastructure sub-processor: Atlassian (Forge runtime and storage). No other subprocessors are used for these apps.

8. International transfers

I do not transfer Customer Jira data to my own systems. Any transfer is inside Atlassian Cloud under Customer’s Atlassian agreement.

9. Assistance, breaches, deletion

Most data-subject requests are handled in Customer’s Jira site. I will reasonably help via info@berkly.nl. If I become aware of a personal-data breach in my processing, I will notify Customer without undue delay. On uninstall, Forge app data for that installation is deleted by the platform.

10. Law

Liability follows the Marketplace EULA accepted at install. This DPA is governed by the laws of the Republic of Türkiye.

Privacy Policy · Security · Contact