Starlie Starlie

Security

Last updated: 25 June 2026

This page describes how Starlie protects your data. In short: Starlie is a native macOS app that talks to your Jira instance directly from your Mac. Your Jira content never reaches our servers.

To report a security issue, email david@starlie.app. We aim to acknowledge reports within 3 business days.

1. Architecture

2. Authentication

3. Data storage

4. Logging

The App keeps a transient diagnostic buffer in memory only (capped at 3000 lines) to help troubleshoot. It is never written to disk, never transmitted off your device, and is cleared when the App closes. We do not collect, retain, or have any access to it. There is no remote logging, analytics, tracking, or crash reporting in the App.

5. Data in transit

All connections — to Atlassian, to our authentication service, and to our website — use TLS encryption.

6. Sub-processors

Provider Purpose Data
Atlassian Your Jira data source (you connect your own instance) Processed directly between your Mac and Atlassian
Apple App distribution, payments and billing Purchase and subscription data (handled by Apple)
Starlie auth service (auth.starlie.app, EU) OAuth token exchange only Authorization code and tokens (transient)

7. Vulnerability reporting

Found a vulnerability? Email david@starlie.app with steps to reproduce. Please give us reasonable time to remediate before public disclosure. We do not currently run a paid bug bounty program.

8. Contact

Starlie — David Zukhbaia (individual entrepreneur, Georgia)
david@starlie.app