Skip to main content

Set the Mitigations field to read-only in Jira Server

Veracode recommends that you do not allow the Jira users in your organization to edit the Mitigations Status and Comments field of imported finding issues. To prevent users from changing this field, you can set it to read-only.

To complete this task:

  1. On your Jira system, download and install ScriptRunner for Jira from the Atlassian Marketplace.
  2. In Jira, select Administration > Manage apps > Behaviours.
  3. In the Add Behaviour section, in the Name field, enter Make Mitigation Status and Comments read-only.
  4. Select Add.
  5. Select Add Mapping next to the behaviour you added.
  6. In the Fields section, select Readonly.
  7. In the Add Field dropdown menu, select Mitigation Status and Comments and select Add.
  8. Select Save. In the Jira issues of imported findings, the Mitigation Status and Comments field is shaded to indicate that it is read-only.