Permissions
Storage Saver has no permission settings of its own. Each time someone opens one of its pages or presses a button, it asks Jira, as that person, whether the action is allowed.
Who can do what
| Action | Who can do it |
|---|---|
| Open the admin page, change settings, start or stop a bulk move | Jira administrators |
| Open the project page | Project administrators and Jira administrators |
| Move files from the project page | Project administrators and Jira administrators who can see the work item and delete its attachments |
| See the panel and download moved files | Anyone who can see the work item |
| Add the panel to a work item | Anyone who can edit the work item (Jira's rule) |
| Move files from the panel, delete a stored copy, remove a failed move | Anyone who can see the work item and delete its attachments |
| Restore a moved file | Anyone who can see the work item and create attachments on it |
"Delete its attachments" means Delete all attachments, or Delete own attachments for files the person uploaded. Storage Saver remembers who uploaded each moved file, so the same rule holds after the move.
Every action checks Jira at that moment
- A change you make in Jira, such as a project role or a permission scheme, applies to the person's next action, even on a page they already have open.
- Being a Jira administrator gives no extra rights on a work item. To download, restore or delete a file, a Jira administrator needs the same permissions as anyone else.
- When an action is not allowed, the page says why.
The bulk move is the one exception: once a Jira administrator starts it, Storage Saver moves the project's files itself, including files on work items that administrator cannot see. Each file still passes the usual checks (not used in the work item's text, old enough for the minimum age, no larger than 500 MB).
Who can see a moved file
A moved file stays as private as its work item: only people who can see the work item see its panel and can download or restore the file.
Two places show file names more widely, to administrators only:
- The project page lists every file Storage Saver holds for the project, to its project administrators and Jira administrators, including files on work items they cannot see. They cannot download those files.
- The recovery manifest, which only Jira administrators can export, lists every moved file with its work item.
Where the files are kept, and what happens to them if you uninstall the app, is covered in Data & Security.