Security Scanner View
Security Scanner View (PII & DLP) helps teams detect sensitive data in Jira work items and their change history. It scans current content and past changes to highlight potential risks in one clear view.
.webp?inst-v=706de9a7-3a0a-4e32-bdda-bcf9df5c99d7)
This makes it easier for companies to reduce data exposure, stay compliant, and keep control over sensitive information stored in Jira.
Note: Security Scanner View is available during the trial period and included in the Advanced plan of Issue History for Jira app. After the trial ends, it is available only in the Advanced plan.
You can try the Advanced plan for 30 days free or upgrade at any time.
Sensitive Data Types and Severity Levels
Security Scanner View (PII & DLP) automatically scans Jira work items to find sensitive data, including:
Data type | Severity | Score |
|---|---|---|
Password | π΄π΄π΄π΄π΄ | 5 (Critical) |
Credentials | π΄π΄π΄π΄π΄ | 5 (Critical) |
Credit Card | π΄π΄π΄π΄π΄ | 5 (Critical) |
Social Security Number | π΄π΄π΄π΄π΄ | 5 (Critical) |
Document ID | π΄π΄π΄π΄π΄ | 5 (Critical) |
AWS Client ID | π΄π΄π΄π΄π΄ | 5 (Critical) |
AWS MWS Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
AWS Secret Access Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
Google API Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
Google OAuth Client ID | π΄π΄π΄π΄π΄ | 5 (Critical) |
Google OAuth Access Token | π΄π΄π΄π΄π΄ | 5 (Critical) |
GitHub Token | π΄π΄π΄π΄π΄ | 5 (Critical) |
Generic API Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
Generic Secret | π΄π΄π΄π΄π΄ | 5 (Critical) |
Stripe API Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
SendGrid API Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
Slack Token | π΄π΄π΄π΄π΄ | 5 (Critical) |
Slack Webhook URL | π΄π΄π΄π΄π΄ | 5 (Critical) |
Azure Storage Access Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
Mailgun API Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
Mailchimp API Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
Shopify Secrets | π΄π΄π΄π΄π΄ | 5 (Critical) |
Shopify Partner API Access Token | π΄π΄π΄π΄π΄ | 5 (Critical) |
Square Access Token | π΄π΄π΄π΄π΄ | 5 (Critical) |
Square OAuth Secret | π΄π΄π΄π΄π΄ | 5 (Critical) |
SSH Private Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
SSH Public Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
RSA Private Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
PKCS8 Private Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
PGP Private Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
EC Private Key | π΄π΄π΄π΄π΄ | 5 (Critical) |
Password in URL | π΄π΄π΄π΄π΄ | 5 (Critical) |
Phone Number | π π π π | 4 (High) |
Email Address | π π π | 3 (Medium) |
IP Address | π π π | 3 (Medium) |
Physical Address | π π π | 3 (Medium) |
Username / Login | π‘π‘ | 2 (Low) |
ZIP Code | π‘ | 1 (Minimal) |
Detected findings are displayed in a structured table, making it easy to review and prioritize work items that need attention.
How does it work?
Open the app in Jira and go to Security Scanner View.
Select what to scan using filters. You can filter work items by space, sprint, JQL, and more.
Set the date range to specify the time period to scan (current content and history within that range).
Review the generated report. It shows work items (Jira work items where sensitive data was detected), type of finding (category of detected sensitive data (for example, password or API key), security finding (detected sensitive data), score (indicates how much attention the finding may need).

Security Scanner View helps users quickly see where sensitive data appears in Jira work items and their history. Instead of manually checking work items one by one, you can get a clear list of findings in one place.
Historical finding (not present in the current state of work item)
Historical mark in the Field column indicates that the security finding is no longer present in the current content. It means sensitive data (such as a password, API key, or card number) appeared in a past change, for example, in an earlier comment or description, and was later removed or updated.
.png?inst-v=706de9a7-3a0a-4e32-bdda-bcf9df5c99d7)
Why this matters:
Sensitive data may still exist in the work item history.
Historical exposure can be relevant for audits and compliance.
Teams can identify and address past data risks, not just current ones.
Questions & Answers
Haven't used Issue History for Jira app yet? π Then youβre welcome to try it π
.png?inst-v=706de9a7-3a0a-4e32-bdda-bcf9df5c99d7)