atlassian-mcp — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited atlassian-mcp (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
maxResults=1 before full executionLoad detailed guidance based on context:
| Topic | Reference | Load When |
|---|---|---|
| Server Setup | references/mcp-server-setup.md | Installation, choosing servers, configuration |
| Jira Operations | references/jira-queries.md | JQL syntax, issue CRUD, sprints, boards, issue linking |
| Confluence Ops | references/confluence-operations.md | CQL search, page creation, spaces, comments |
| Authentication | references/authentication-patterns.md | OAuth 2.0, API tokens, permission scopes |
| Common Workflows | references/common-workflows.md | Issue triage, doc sync, sprint automation |
# Open issues assigned to current user in a sprint
project = PROJ AND status = "In Progress" AND assignee = currentUser() ORDER BY priority DESC
# Unresolved bugs created in the last 7 days
project = PROJ AND issuetype = Bug AND status != Done AND created >= -7d ORDER BY created DESC
# Validate before bulk: test with maxResults=1 first
project = PROJ AND sprint in openSprints() AND status = Open ORDER BY created DESC# Find pages updated in a specific space recently
space = "ENG" AND type = page AND lastModified >= "2024-01-01" ORDER BY lastModified DESC
# Search page text for a keyword
space = "ENG" AND type = page AND text ~ "deployment runbook"{
"mcpServers": {
"atlassian": {
"command": "npx",
"args": ["-y", "@sooperset/mcp-atlassian"],
"env": {
"JIRA_URL": "https://your-domain.atlassian.net",
"JIRA_EMAIL": "[email protected]",
"JIRA_API_TOKEN": "${JIRA_API_TOKEN}",
"CONFLUENCE_URL": "https://your-domain.atlassian.net/wiki",
"CONFLUENCE_EMAIL": "[email protected]",
"CONFLUENCE_API_TOKEN": "${CONFLUENCE_API_TOKEN}"
}
}
}
}Note: Always loadJIRA_API_TOKENandCONFLUENCE_API_TOKENfrom environment variables or a secrets manager — never hardcode credentials.
maxResults=1 probe first)When implementing Atlassian MCP features, provide:
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.