10110010011101001011001101101110101018200.devFrom Enterprise.Systems
Jira logo

Jira

利用可能開発者

Jira コネクター — 読み取り専用、エージェントレス

Audits your Jira Cloud site — public projects and "Anyone on the web" filters/dashboards, admin sprawl and dormant users, permission schemes that grant sensitive actions to everyone, missing issue-security on security-labeled projects, insecure webhooks, unrecognized write-scoped apps, and automation rules that post data externally. Read-only.

スキャン対象

  • Projects and their visibility, permission schemes, issue-security schemes, workflows, webhooks, connected apps and scopes, automation rules, shared filters/dashboards, and the user directory (never record data)
  • Only the labels and identifiers of security-tagged issues, to flag exposure — never issue bodies or credentials

読み取り専用での監視のため、自動修復を有効にして書き込みアクセスを別途付与しない限り、Jira のデータが変更されることはありません。

セキュリティ検出結果

15件の検出ルールが、Jiraのスキャンごとに実行されます。各検出結果には、平易な言葉による説明、その根拠となる証拠、および修復手順が付属します。

  • CRITICALPublic exposure

    Jira project is publicly visible

  • CRITICALPublic exposure

    Jira filter or dashboard shared with "Anyone on the web"

  • HIGHMisconfig

    Sensitive Jira project has no Issue Security Scheme

  • HIGHOver permission

    Jira permission scheme grants a sensitive action to everyone

  • HIGHMisconfig

    Jira webhook posts to a non-HTTPS endpoint

  • HIGHOver permission

    Too many Jira administrators

  • MEDIUMExternal access

    External user can access a sensitive Jira project

  • MEDIUMPublic exposure

    Jira Service Management portal is public

  • MEDIUMMisconfig

    Security-labeled Jira workflow has no approval step

  • MEDIUMShadow it

    Unrecognized write-scoped app is connected to Jira

  • MEDIUMShadow it

    Jira automation rule posts to an external URL

  • MEDIUMOver permission

    Sensitive Jira issues are visible to all project members

  • MEDIUMMisconfig

    Vendor AI-training data-contribution posture

  • LOWStale access

    Stale (long-inactive) Jira user

  • LOWPublic exposure

    Attachments exposed on a public Jira project

Jiraを接続する方法

  1. ステップ1

    8200.devにサインアップまたはログインします

  2. ステップ2

    Connectors → Jiraに移動します

  3. ステップ3

    「Connect」をクリックし、Jiraの同意画面から承認します

  4. ステップ4

    8200.devが自動的にスキャンを実行します — 結果は数分以内に表示されます

最初のソースを数分で接続 — 無料・読み取り専用・営業担当への連絡不要。