Skip to main content

Security & Permissions Overview for Jira Integration

This page explains which Jira permissions Teamline uses, why they are required, and how data is accessed securely when the app is installed

Vlad avatar
Written by Vlad
Updated over a week ago

App name: AI Scrum Master | Teamline
App type: Atlassian Connect (Cloud)
Hosting: Cloud (AWS, Atlassian Connect Framework)


Purpose of Permissions

Teamline AI integrates with Jira Cloud to enable time tracking, daily standups, and automated timesheet reporting.

To provide this functionality, the app requires limited access to Jira data in order to read, write, and update worklogs, issues, and user-related information.

Below is a transparent overview of all Jira API scopes requested by Teamline and how they are used.


Jira API Scopes

Scope

Description

Purpose in Teamline

READ

Read Jira data (projects, issues, sprints, users, worklogs)

Display task details, team members, time entries, and project context in reports

WRITE

Create and update Jira data

Log time, update worklogs, modify issue fields, sync standup responses

DELETE

Delete Jira data created by the app

Remove incorrect or duplicate worklogs created via Teamline

ACT_AS_USER

Perform actions on behalf of the logged-in user

Attribute worklogs, comments, and updates to the correct person

ACCESS_EMAIL_ADDRESSES (optional)

Access user email addresses

Match Jira users with Slack/Teams identities and resolve user profiles

Important:
Teamline AI does not request ADMIN or PROJECT_ADMIN scopes and cannot modify Jira global or project-level settings.


Data Access Summary

Data Type

Access

Purpose

Issues & Projects

Read / Write

Retrieve task data and synchronize worklog updates

Worklogs

Read / Write / Delete

Create, update, and clean up time entries

Users

Read

Identify Jira users for reports and attribution

Sprints & Boards

Read

Aggregate data by sprint or project

Custom Fields

Read / Write

Store internal references for reports and estimates

Comments (optional)

Write

Post automated summaries or reminders


Security and Compliance

  • All actions are performed within Jira Cloud using the Atlassian Connect framework

  • Authentication is handled via secure OAuth-based mechanisms

  • When acting on behalf of a user, Teamline respects that user’s Jira permissions

  • No administrative or configuration-level access is requested

  • Data is used exclusively to generate standups, time tracking, and reports

Teamline fully complies with Atlassian Cloud App Security and Privacy requirements.

Did this answer your question?