I am interested to know your experience about using Widgets.
I understand you have to open the portal to anonymous login and just clarifying are there any security issues reported or becoming a problem ?
How does it work with multiple issue types?
No, there are no security issues.
On server, there is a "text gadget" which is usually turned off by default, which would allow people to serve malicious code in a gadget if they tried hard, but it needs an admin to enable it, and a logged in (and hence known and identifiable) person to write and inject the bad code. Cloud does not allow this.
The important security thing you probably do want to know about widgets is that they will only display data from your Jira that the user can see. If, for example, you have many projects, but only one of them allows "anonymous access", then anonymous users will see widgets reporting only on the issues in that one project. Even if the widget is configured to show all projects, the data seen by anonymous will only be based on the single anonymous project.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.