Hi all,
I would like to get some clarifications on the small security note mentioned in the "Enable Smart Commits" documentation.
A small security note
Elevated access rights in Jira products can result from the way that Git (and Mercurial) allow commits to be attributed to a user other than the user pushing a change to the repository.
If this seems like a risk for your situation, then you should consider disabling Smart Commits in your Jira site.
Can someone please elaborate a bit further on what might be impacted or a particular scenario where or how this might occur?