Reference

Permissions Reference

Required Permissions by Action

ActionRequired Permission
View all reportsAny Jira user
Run a scanAny Jira user
Confirm write actions (where available)Administer Jira (org admin)
Install the appJira site administrator

Notes

  • Any Jira user with access to the app can view dashboards, findings, and section reports.
  • Running a scan fetches data via the Atlassian API using the OAuth token of the user who authorised the app - no elevated permissions are required for read-only scans.
  • Write-back actions (where available) require the Administer Jira global permission.
  • App installation requires Jira site administrator access.