Jira
مباشرالمطوّرموصّل Jira — للقراءة فقط، بدون وكيل
Audits your Jira Cloud site — public projects and "Anyone on the web" filters/dashboards, admin sprawl and dormant users, permission schemes that grant sensitive actions to everyone, missing issue-security on security-labeled projects, insecure webhooks, unrecognized write-scoped apps, and automation rules that post data externally. Read-only.
ما الذي نفحصه
- Projects and their visibility, permission schemes, issue-security schemes, workflows, webhooks, connected apps and scopes, automation rules, shared filters/dashboards, and the user directory (never record data)
- Only the labels and identifiers of security-tagged issues, to flag exposure — never issue bodies or credentials
مراقبة بصلاحية القراءة فقط — لا يتغيّر شيء في بيانات Jira الخاصة بك ما لم تُفعّل المعالجة التلقائية وتمنح وصول الكتابة بشكل منفصل.
النتائج الأمنية
يتم تشغيل 15 قاعدة كشف في كل فحص لـ Jira. تأتي كل نتيجة مع شرح بلغة واضحة، والأدلة التي تدعمها، وخطوات المعالجة.
- CRITICALPublic exposure
Jira project is publicly visible
- CRITICALPublic exposure
Jira filter or dashboard shared with "Anyone on the web"
- HIGHMisconfig
Sensitive Jira project has no Issue Security Scheme
- HIGHOver permission
Jira permission scheme grants a sensitive action to everyone
- HIGHMisconfig
Jira webhook posts to a non-HTTPS endpoint
- HIGHOver permission
Too many Jira administrators
- MEDIUMExternal access
External user can access a sensitive Jira project
- MEDIUMPublic exposure
Jira Service Management portal is public
- MEDIUMMisconfig
Security-labeled Jira workflow has no approval step
- MEDIUMShadow it
Unrecognized write-scoped app is connected to Jira
- MEDIUMShadow it
Jira automation rule posts to an external URL
- MEDIUMOver permission
Sensitive Jira issues are visible to all project members
- MEDIUMMisconfig
Vendor AI-training data-contribution posture
- LOWStale access
Stale (long-inactive) Jira user
- LOWPublic exposure
Attachments exposed on a public Jira project
كيفية ربط Jira
الخطوة 1
سجّل حسابًا أو سجّل الدخول إلى 8200.dev
الخطوة 2
انتقل إلى Connectors ← Jira
الخطوة 3
انقر على Connect وامنح التفويض عبر شاشة الموافقة الخاصة بـ Jira
الخطوة 4
يقوم 8200.dev بالفحص تلقائيًا — تظهر النتائج خلال دقائق
اربط مصدرك الأول في دقائق — مجاناً، للقراءة فقط، دون الحاجة إلى مكالمة مبيعات.