Security – Migration Doctor for Jira Cloud

Architecture

Access control

Changes to your site

Permissions requested from Atlassian

Scope Why
read:jira-work Read filters, dashboards, permission schemes, fields and projects; validate JQL
write:jira-work Create a missing or corrected filter and hand it to its owner, only after approval
read:jira-user Match Data Center users to Cloud accounts; check that groups exist
manage:jira-configuration Read workflows with their transition rules. Jira offers no read-only classic scope for this; the app never changes configuration
report:personal-data Weekly personal data report to Atlassian

Development practices

Reporting a vulnerability

E-mail support@687.monster with the subject "Security". We acknowledge within 2 business days and follow Atlassian's Marketplace security requirements for fix timelines.