OVERALL RATINGS
INSTALLS
1
SUPPORT
- Partner Supported
TRUST SIGNALS
Key highlights of the appSee who can access any Jira project, and why
Every grant, explained in plain English
Click any cell to see what carries the permission, whether a direct grant, a group, or a project role. Every qualifying path is listed, so removing one does not quietly leave access in place.
One grid for the whole project
One row per person, one column per Jira permission, sensitive ones marked, and a badge counting how many paths grant each. Graded risk findings sit underneath, from public grants to dormant access.
Reverse lookup and audit-ready reviews
Check where a group is used before you change it, and everything one person can reach across all projects. Sign off a review to produce a hash-chained evidence bundle.
Supporting media
More details
Built for Jira admins and security leads who need to show exactly who can reach a project, and why.
KEY CAPABILITIES
- Permission grid: one row per person, one column per permission, with a badge counting how many paths grant each
- Plain-English reasons: click a cell to see the grant, group, or role behind it, with every qualifying path listed
- Graded risk findings: public grants, dormant access, and too many or too few project admins
- Reverse lookup and plain-word Ask: where a group is used before you change it, and every project one person can reach
- Snapshots and drift: capture before a change, then compare to see who gained or lost access
- Issue security: who can see a restricted issue, resolved to names
- Access reviews: sign off into a hash-chained evidence bundle for your ISO 27001 or SOC 2 review
BUILT ON FORGE. Read-only, runs with your own Jira permissions, and your data never leaves your tenant.
Resources
App documentation
Comprehensive set of documentation from the partner on how this app works
Privacy and Security
Privacy policy
Atlassian's privacy policy is not applicable to the use of this app. Please refer to the privacy policy provided by this app's partner.
Partner privacy policySecurity program
This app is not part of the Marketplace Bug Bounty program.
Integration permissions
Permission Auditor for Jira integrates with your Atlassian app
Version information
Version 2.8.0•for Jira Cloud
- Release date
- Jul 27th 2026
- Summary
- Risk findings, drift history, access reviews and issue security
- Details
This release takes Permission Auditor from the access explorer to the full audit toolkit.
NEW IN THIS RELEASE
- Graded risk findings: public grants, dormant access, admin sprawl, and single-administrator projects
- Snapshots and drift: capture access before a change, then compare to see who gained or lost it
- Issue security: a Who can see this issue panel, plus dead and decorative level checks
- Access reviews: decide each grant, then sign off into a SHA-256 hash-chained evidence bundle
- Comment edit and delete history, captured from install onward
- Ask, answered by the resolver rather than by AI
- An access posture gadget for your dashboard
ALSO
- Drift events now name people rather than raw account ids
- Dropdown menus render above surrounding components
- A security hardening pass and an expanded end-to-end test suite
Read-only scopes, unchanged, and no data leaves your Atlassian tenant.
- Payment model
- Paid via Atlassian
- License type
- Commercial