When you grant access to the Atlassian Jira Cloud app instance, Netskope seeks consent for the following permissions from the Atlassian account:
| Permissions Required by Netskope | Description | Purpose |
|---|---|---|
| manage:jira-configuration | Take Jira administration actions (for example, create projects and custom fields, view workflows, and manage issue link types). | Retrieve audit logs from Jira Cloud. |
| read:jira-work | Read Jira project and issue data, search for issues, and objects associated with issues like attachments and work-logs. | Retrieve projects and issues data to perform policy scanning. |
| write:jira-work | Create and edit issues in Jira, post comments as the user, create work-logs, and delete issues. | Quarantine or restrict sensitive data from Jira Cloud. |
| read:jira-user | View user information in Jira that the user has access to, including usernames, email addresses, and avatars. | Retrieve both user and group information from Jira Cloud. |
| manage:jira-webhook | Fetch, register, refresh, and delete dynamically declared Jira web-hooks. | Create a webhook to receive issues related events. |
| read:permission:jira | Scope for reading permissions. | Read permissions of the granted user to check if there is any lack of permissions required. |

