• Products
  • Documentation
  • Resources

Prevent anonymous access

Data classification is currently only available through the Atlassian Information Security Beta program. If you’re not part of the program, subscribe to our Cloud roadmap to be informed when this feature becomes generally available.

An anonymous user is anyone who has not logged in to your product. Product administrators can choose to grant anonymous users permission to view or even create content. This is known as public access in Jira and Jira Service Management. About public access

The anonymous access rule allows you to prevent people who are not logged from from viewing issues covered by a data security policy. What is a data security policy?

Who can do this?
Role: Organization admin
Plan: Atlassian Information Security Beta program

Add the anonymous access rule to your policy

If you haven’t created a data security policy yet, create one now. The anonymous access rule is available for policies that cover classification levels (Jira only).

To add the anonymous access rule to your policy:

  1. Go to admin.atlassian.com. Select your organization if you have more than one.

  2. Select Security > Data security policies.

  3. Select your policy from the list.

  4. Select the Anonymous access rule.

  5. Select Block anonymous access.

  6. Save your changes.

People will not be able to view issues covered by the policy without being logged in to Jira with the appropriate permissions.

Rule configuration showing radio button selections for allow and block anonymous access

What will my users experience?

When the anonymous access rule is set to Block anonymous access:

  • People must be logged in to see issues covered by this policy. They can’t view issues in filters, boards, search, or other places issues appear in Jira.

  • If a user attempts to access an issue covered by this policy via a direct URL they’ll see a prompt to log in.

  • If a user attempts to access an issue covered by this policy via the REST API, the issue won’t be returned.

When the anonymous access rule is set to Allow anonymous access:

  • Permission schemes control whether people must be logged in to see issues covered by this policy.

Additional Help