-
Type:
Suggestion
-
Resolution: Duplicate
-
Component/s: Site - Security & Permissions
Summary:
Implement a more granular permission system in Jira to allow users to edit automation rules across multiple projects without needing full Jira Administrator rights, thereby minimizing the risk of unintended access to other critical administrative functions.
Description:
Currently, in Jira, users who need to edit automation rules across multiple projects require Jira Administrator permissions. However, this broad level of access presents potential risks, as it allows users to access other sensitive administrative functionalities that are not necessary for their role in automation editing.
Use Case:
Automation Editing Across Multiple Projects:
Users involved in managing and editing automation rules need access across various projects. However, granting them full Jira Administrator rights is excessive and poses security risks.
Risk Mitigation:
By limiting their access to only what is necessary for their role (i.e., editing automation rules), we can reduce the risk of accidental misconfiguration or unauthorized access to critical settings.
Proposed Solution:
Granular Permissions for Automation:
Introduce a new permission level specifically for managing automation rules. This would allow users to create, edit, and delete automation rules without giving them access to other administrative features.
- duplicates
-
AUTO-592 Enterprise / admin controls for Automation - provide a specific permission for editing automation rules, option to restrict external URLs / integrations, manage which actions send emails
- Future Consideration