We are currently implementing OAuth 2.0 Authorization Code flow for authentication with Jira Cloud.
As part of our integration, users are redirected to the Atlassian authorization page, where they sign in and approve access. After approval, an authorization code is generated and returned to our application, which we then exchange for an access token.
We would like to clarify user support for this flow:
Can Jira Service Management users (portal/customers) use OAuth 2.0 Authorization Code flow for authentication and authorization in Jira Cloud? Or is this OAuth 2.0 flow supported only for Jira administrators and licensed Jira users?
We need to confirm whether non-admin service users are eligible to complete the full OAuth 2.0 authorization flow (login → consent → authorization code → token exchange) in our integration setup.