One potential security model:
- Allow selecting user(s) or user group(s) that can create new policies (in addition to JIRA admins).
- Allow selecting user(s) or user group(s) for each policy who can update or delete that policy (in addition to JIRA admins).
5 Comments