Monitor Atlassian Rovo MCP server activity

As an administrator of Atlassian apps, you may be concerned about MCP (Model Context Protocol) servers gaining access to your data. Atlassian provides some tools that can help you control which AI tools can access your site’s data.

この操作を実行できるユーザー
ロール: 組織管理者, Guard Detect 管理者
Atlassian Cloud: Atlassian Guard Premium
Atlassian Government Cloud: 利用できません

Options to monitor and manage MCP activity

The following table contains details of what’s currently covered.

機能

場所

説明

詳細

For visibility

MCP tool invocation logging

Atlassian Administration > Insights > Audit log

Filter for Rovo MCP User Actions or search MCP

Every time a tool is used through the Atlassian Rovo MCP server, an event is recorded in your organization’s audit log.

Each entry includes the tool name, action, and user who performed it. Currently, only tool invocations using OAuth are logged.

For visibility

An OAuth app is installed for the first time

(Requires Guard Standard)

Atlassian Administration > Insights > Audit log

Type MCP in the search field.

Audit logs show when and which user used OAuth to authorize using the Atlassian Remote MCP server (which will automatically install the Atlassian MCP app).

Note: If additional users authorize the app, they do not appear in the audit log.

For control

Block/allow user-based OAuth connections

Atlassian Administration > Apps > Sites (select a site) > Site settings > Connected apps > Settings tab

Prevent users from installing any OAuth apps completely. This is a blanket setting.

For control

Data security policy to prevent app access via spaces and projects

(Requires Guard Standard)

Atlassian Administration > Security > Data protection > Data security policies

You can restrict the installation of the Atlassian Rovo MCP app from spaces and projects.


免責事項

MCP clients can perform actions in Jira, Confluence, and Compass with your existing permissions. Use least privilege, review high‑impact changes before confirming, and monitor audit logs for unusual activity.

Learn more: MCP Clients - Understanding the potential security risks

さらにヘルプが必要ですか?

アトラシアン コミュニティをご利用ください。