Security Policy

Alpha Checklist — Alpha Tecnologia

Last updated: June 16, 2026

This Security Policy describes how Alpha Tecnologia ("we") protects customer data and handles security for the Alpha Checklist application, distributed for Jira and Jira Service Management through the Atlassian Forge platform.

Alpha Checklist runs entirely on Atlassian Forge. It does not use external servers or third-party infrastructure: all data is stored within the Atlassian cloud environment using Forge Hosted Storage and Jira issue properties. This means our security posture is built on, and inherits, the controls of the Atlassian platform.

1. Reporting a Security Issue

If you discover a security vulnerability or have a security concern about Alpha Checklist, please contact us as soon as possible at:

checklist@alphatecapp.com

Please include a description of the issue, the steps to reproduce it, and any relevant details (affected version, environment, screenshots). We ask that you report issues privately and give us a reasonable opportunity to remediate before any public disclosure.

2. How We Handle Security Incidents

When a security issue or incident is reported or detected, we follow these steps:

3. Vulnerability Management

We manage vulnerabilities through an ongoing process of reporting, triage and remediation:

4. Key Security Controls

The following security controls are in place for Alpha Checklist:

5. Data Privacy

For details on how data is collected, processed, stored and deleted, please see our Privacy Policy.

6. Contact

For any security-related questions or to report a vulnerability, contact us at checklist@alphatecapp.com.