Atlassian · Atlassian Sub-Processors · View original document ↗

AI-Related Subprocessor Disclosure

Medium severity Medium confidence Inferredfromcontext Unique · 0 of 352 platforms
Get alerted the next time Atlassian changes these terms. Get same-day alerts →
Share 𝕏 Share in Share 🔒 PDF
Monitor governance changes for Atlassian Monitor emails you the same day this changes. The archive stays free.
Get same-day alerts →

Get the weekly research letter

Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean. No account.

Document Record

What it is

The document discloses subprocessors engaged for AI-related processing activities in connection with Atlassian cloud products, establishing that customer data may be processed by third-party AI vendors as part of product functionality.

This analysis describes what Atlassian's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology

ConductAtlas Analysis

Why it matters (compliance & governance perspective)

This provision is operationally significant because AI-related subprocessors may process customer content data, not merely metadata, which creates additional considerations under GDPR's requirements for automated processing, the EU AI Act for high-risk AI systems, and enterprise AI governance policies.

Interpretive note: The document lists subprocessors by processing category but does not specify the technical scope of data access for each AI subprocessor; the extent of AI subprocessor data access must be determined by reference to Atlassian's product documentation and DPA.

Consumer impact (what this means for users)

This provision establishes that customer data may be processed by third-party AI vendors as part of Atlassian's AI-powered product features. Customers with internal AI governance policies or sector-specific AI restrictions should review the listed AI subprocessors against those requirements.

Cross-platform context

See how other platforms handle AI-Related Subprocessor Disclosure and similar clauses.

Compare across platforms →

Monitoring

Atlassian has changed this document before.

Receive same-day alerts, structured change summaries, and monitoring for up to 25 platforms.

Get Monitor Or create a free account →
▸ View Original Clause Language DOCUMENT RECORD
"
Atlassian subprocessors who process customer data.

Excerpt from Atlassian's Sub-Processors

ConductAtlas Analysis

Institutional analysis (regulatory & governance intelligence)

1) REGULATORY LANDSCAPE: The EU AI Act imposes obligations on providers and deployers of AI systems, including requirements around transparency, risk classification, and data governance. GDPR Article 22 applies where AI processing constitutes solely automated decision-making with significant effects on individuals. The FTC has issued guidance on AI-related unfair or deceptive practices. Sector-specific AI regulations (financial services, healthcare) may impose additional requirements on customers who use Atlassian AI features. 2) GOVERNANCE EXPOSURE: Medium. The disclosure that AI subprocessors access customer data requires enterprise customers to assess whether their own AI governance frameworks, acceptable use policies, or client-facing commitments are consistent with AI subprocessor access. Customers in regulated industries should determine whether AI-processed data includes special category data or data subject to sector-specific restrictions. 3) JURISDICTION FLAGS: EU customers face heightened exposure under the EU AI Act and GDPR Article 22. UK customers should evaluate under UK GDPR and emerging UK AI governance frameworks. US customers in financial services or healthcare should assess sector-specific AI guidance from relevant regulators. 4) CONTRACT AND VENDOR IMPLICATIONS: Enterprise agreements should specify which Atlassian AI features are enabled by default and which require opt-in, as this determines the operational scope of AI subprocessor access. Procurement teams should request documentation on AI subprocessors' data retention, model training, and output logging practices. Customers should confirm whether their DPA includes AI-specific processing restrictions. 5) COMPLIANCE CONSIDERATIONS: Compliance teams should assess whether the use of AI subprocessors triggers any customer-side notification obligations to data subjects under GDPR transparency requirements (Articles 13-14). Internal AI governance reviews should include a mapping of Atlassian AI features to the listed AI subprocessors. Where enterprise AI policies restrict third-party AI processing of certain data categories, customers should evaluate whether product-level controls exist to limit AI subprocessor access.

Full institutional analysis
Regulatory citations, enforcement risk, and due diligence action items.
Start Professional · $99/mo Start with Monitor · $29/mo

Applicable agencies

  • FTC
    The FTC has jurisdiction over AI-related data practices and has issued guidance on unfair or deceptive practices involving AI processing of consumer data, relevant to AI subprocessors listed in this document.
    File a complaint →

Provision details

Document information
Document
Atlassian Sub-Processors
Entity
Atlassian
Document last updated
July 6, 2026
Tracking information
First tracked
July 7, 2026
Last verified
July 7, 2026
Record ID
CA-P-013472
Document ID
CA-D-00938
Evidence Provenance
Source URL
Wayback Machine
Content hash (SHA-256)
c0e40771c27ef2ab6cb0610288266f89dd934528062513e5a5324aee9f29e429
Analysis generated
July 7, 2026 00:31 UTC
Methodology
Evidence
✓ Snapshot stored   ✓ Hash verified
Citation Record
Entity: Atlassian
Document: Atlassian Sub-Processors
Record ID: CA-P-013472
Captured: 2026-07-07 00:31:59 UTC
SHA-256: c0e40771c27ef2ab…
URL: https://conductatlas.com/platform/atlassian/atlassian-sub-processors/provision/CA-P-013472/ai-related-subprocessor-disclosure/
Accessed: July 23, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
Classification
Severity
Medium
Categories

Other risks in this policy

Governance intelligence across arbitration, AI governance, data rights, indemnification, and retention
Provision-level monitoring, governance timelines, and regulatory mapping built from archived source documents and historical version tracking.
Start Professional · $99/mo Start with Monitor · $29/mo

Frequently Asked Questions

What does Atlassian's AI-Related Subprocessor Disclosure clause do?

This provision is operationally significant because AI-related subprocessors may process customer content data, not merely metadata, which creates additional considerations under GDPR's requirements for automated processing, the EU AI Act for high-risk AI systems, and enterprise AI governance policies.

How does this clause affect you?

This provision establishes that customer data may be processed by third-party AI vendors as part of Atlassian's AI-powered product features. Customers with internal AI governance policies or sector-specific AI restrictions should review the listed AI subprocessors against those requirements.

Is ConductAtlas affiliated with Atlassian?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Atlassian.