We are planing to give an external company access to our JIRA cloud REST API so that they can integrate our issues in their own ticket system.
How I understand it, the permissions of the API will be the same as the token's owner.
So I created a Service Desk User, created a API token and made some project related permissions.
BUT: The extarnal company should NOT be able to see internal comments via the API.
Any way how I can manage this?
Thanks!!
Joe