The architecture favors read-only access, data minimization, and deterministic processing.

Forge permissions

The Jira app declares read:jira-work to retrieve required project and issue signals, plus storage:app for app-owned project configuration. It does not request Jira write scopes.

Processing

Rules run deterministically. No generative AI service is part of the analysis path, and no customer Jira data is sent to an LLM by ReleaseProof.

Failure boundary

Invalid Jira responses, unsafe mappings, or incomplete pagination stop the analysis. This fail-closed posture avoids presenting partial populations as complete.

Continue exploring

Product overview