Quick Start Guide

Get up and running with A9 Sightglass in under 5 minutes.

Installation

  1. Go to the Atlassian Marketplace
  2. Click "Get it now" or "Try it free"
  3. Select your Jira site and confirm installation
  4. Wait for the app to install (typically 30-60 seconds)

First Launch

  1. Navigate to Jira Settings → Apps → A9 Sightglass for Jira
  2. The app will automatically scan your Jira instance on first load
  3. Wait for the initial analysis to complete (1-3 minutes depending on instance size)
Note: The first scan collects data about users, groups, permissions, projects, and issues from your Jira instance.

Understanding Your Dashboard

After the initial scan, you'll see several tabs:

Overview

High-level security metrics, compliance status, and critical issues.

Issues

Detailed list of security and compliance issues found in your instance.

Categories

Issues organized by category (Authentication, Authorization, Data Security, etc.).

Users & Permissions

Sankey diagrams showing user hierarchies and permission flows.

Reports

Generate executive summaries, detailed analysis, and custom reports.

Recommendations

Actionable security improvements prioritized by impact.

Quick Actions

Review Critical Issues

  1. Go to the Issues tab
  2. Filter by Critical or High severity
  3. Click on any issue to see detailed information and remediation steps

Generate Your First Report

  1. Navigate to the Reports tab
  2. Choose "Executive Summary PDF"
  3. Click "Generate Report"
  4. Download the PDF for sharing with stakeholders

Configure Compliance Rules

  1. Click the Settings icon in the top right
  2. Go to "Compliance Rules" tab
  3. Review enabled rules or customize them for your organization
  4. Save changes and trigger a new scan to see updated results

What Data Can I See?

Available from Jira APIs (Forge Mode)

  • ✓ Users and groups within your Jira instance
  • ✓ Project permissions and roles
  • ✓ Issue security schemes
  • ✓ Permission schemes
  • ✓ Workflow configurations
  • ✓ Application access settings

Enhanced with Org Enumerator

  • ✓ Organization-level user directory
  • ✓ Cross-product access (Jira, Confluence, Bitbucket, etc.)
  • ✓ Enterprise management policies
  • ✓ Org-wide security settings
  • ✓ Domain verification status
Why the difference? Forge apps run in a secure sandbox and cannot access Atlassian Organization APIs directly. The Org Enumerator tool runs separately with your API token to collect this additional data.

Next Steps

  • Read the complete User Guide for detailed information
  • Set up the Org Enumerator for enhanced analysis
  • Configure compliance rules for your organization
  • Schedule regular scans to monitor changes over time

Need Help?

For additional support: