We are considering utilizing the Forms feature to capture input/feedback from non-Jira users. There are only 2 level of access for forms. Jira users or completely public. i.e. anyone with the link can submit. Wondering if anyone has had any security related issues or concerns with the public access.
I would suggest only sharing the Public forms with the users that you are intending to share. Probability of someone guessing the URL of your form is low. I also believe that these forms are protected from the web app based attacks such as XXS, SQL injection and more. Only send the public forms to the trusted users.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.