Jira · Access Snapshot & Drift
Daily snapshots of who can access every project, retained long-term, diffed for drift, and revertable when access creeps.
Runs entirely on Atlassian Forge inside your own tenant. No external servers, no data egress.
An auditor asks "show me everyone who could access the Payments project on March 3rd." Jira shows access as it is right now; the audit log retains roughly 180 days and records change events, not point-in-time rosters. Past that window, the question is unanswerable.
Built on Atlassian Forge: the app runs on Atlassian's own serverless platform inside your tenant, stores its data in Forge storage, and makes no external network calls. Every scope it requests, and why:
| read:jira-work | projects, roles, and role actors |
| read:jira-user | account details surfaced in the matrix |
| manage:jira-configuration | the opt-in drift revert only; never used by the reporting path |
| storage:app | the retained snapshot series, in your tenant |
No. The app runs on Atlassian Forge inside your own tenant with zero external egress, which makes it eligible for Atlassian's "Runs on Atlassian" trust marker.
Through the Atlassian Marketplace, on your existing Atlassian bill, priced per user like any Cloud app. The listing has a free evaluation and the exact calculator for your tier.
Email support@llmgraph.ai or open an issue from the documentation page. You talk directly to the people who build the app.
Free evaluation from the Marketplace listing. If it does not fit your workflow, tell us what would and we will build it.