project-management/skills/atlassian-admin/SKILL.md
Atlassian Administrator for managing and organizing Atlassian products (Jira, Confluence, Bitbucket, Trello), users, permissions, security, integrations, system configuration, and org-wide governance. Use when asked to add users to Jira, change Confluence permissions, configure access control, update admin settings, manage Atlassian groups, set up SSO, install marketplace apps, review security policies, or handle any org-wide Atlassian administration task.
npx skillsauth add alirezarezvani/claude-skills atlassian-adminInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
admin.atlassian.com > User management > Invite users
POST /rest/api/3/user with {"emailAddress": "...", "displayName": "...","products": [...]}admin.atlassian.com > User management > Groups > [group] > Add membersadmin.atlassian.com > Products > [product] > Accessadmin.atlassian.com/o/{orgId}/users and can log inGET /rest/api/3/search?jql=assignee={accountId} to find open issuesGET /wiki/rest/api/user/{accountId}/property to find owned spaces/pagesProject settings > People > Change leadSpace settings > Overview > Edit space detailsJira > Issues > Bulk changeUser management > [user] > Managed contentadmin.atlassian.com > User management > [user] > Groupsadmin.atlassian.com > User management > [user] > Deactivate
DELETE /rest/api/3/user?accountId={accountId}GET /rest/api/3/user?accountId={accountId} returns "active": falseadmin.atlassian.com > User management > Groups > Create group
POST /rest/api/3/group with {"name": "..."}GET /rest/api/3/group/member?groupName={name}Jira Permission Schemes (Jira Settings > Issues > Permission Schemes):
Confluence Permission Schemes (Confluence Admin > Space permissions):
Best Practices:
admin.atlassian.com > Security > SAML single sign-on > Add SAML configuration
admin.atlassian.com > Security > Authentication policies > Enforce SSOadmin.atlassian.com > User provisioning > [IdP] > Enable SCIMsaml.login.success eventsadmin.atlassian.com > Security > Audit log > filter: SSOmarketplace.atlassian.comadmin.atlassian.com > Billing > Manage subscriptionsadmin.atlassian.com > Products > [product] > Apps > Find new appsGET /rest/plugins/1.0/ and health check passesJira (Jira Settings > System):
Project settings > Archive projectJira Settings > System > Indexing > Full re-indexJira Settings > Issues > WorkflowsJira Settings > System > System infoConfluence (Confluence Admin > Configuration):
Space tools > Overview > Archive spaceConfluence Admin > Orphaned pagesConfluence Admin > Cache managementMonitoring Cadence:
admin.atlassian.com > Products > [product] > HealthCommon Integrations:
Jira Settings > Apps > Slack integration — notifications for Jira and ConfluenceJira Settings > Apps > DVCS accounts — link commits to issuesadmin.atlassian.com > Apps > Microsoft Teamszoom-for-jirasalesforce-connectorConfiguration Steps:
Jira Settings > System > WebHooks > [webhook] > TestJira Settings > Issues)Issue Types: Create and manage org-wide issue types; define issue type schemes; standardize across projects
Workflows: Create global workflow templates via Workflows > Add workflow; manage workflow schemes
Custom Fields: Create org-wide custom fields at Custom fields > Add custom field; manage field configurations and context
Notification Schemes: Configure default notification rules; create custom notification schemes; manage email templates
Confluence Admin)Blueprints & Templates: Create org-wide templates at Configuration > Global Templates and Blueprints; manage blueprint availability
Themes & Appearance: Configure org branding at Configuration > Themes; customize logos and colors
Macros: Enable/disable macros at Configuration > Macro usage; configure macro permissions
admin.atlassian.com > Security)Authentication:
Security > Authentication policies > EditSecurity > Session durationSecurity > API token controlsData Residency: Configure data location at admin.atlassian.com > Data residency > Pin products
Audit Logs: admin.atlassian.com > Security > Audit log
GET /admin/v1/orgs/{orgId}/audit-logadmin.atlassian.com > User management > Export usersSecurity > Authentication policies > Require 2FAJira: Project keys 3–4 uppercase letters (PROJ, WEB); issue types Title Case; custom fields prefixed (CF: Story Points) Confluence: Spaces use Team/Project prefix (TEAM: Engineering); pages descriptive and consistent; labels lowercase, hyphen-separated
Major Changes: Announce 2 weeks in advance; test in sandbox; create rollback plan; execute during off-peak; post-implementation review Minor Changes: Announce 48 hours in advance; document in change log; monitor for issues
Jira & Confluence: Daily automated backups; weekly manual verification; 30-day retention; offsite storage
Jira Settings > System > Backup system / Confluence Admin > Backup and RestoreRecovery Testing: Quarterly recovery drills; document procedures; measure RTO and RPO
Severity Levels:
Response Steps:
admin.atlassian.com > Products > [product] > Health and Atlassian Status Page)System Health: Active users (daily/weekly/monthly), storage utilization, API rate limits, integration health, response times
GET /admin/v1/orgs/{orgId}/users for user counts; product-specific analytics dashboardsUsage Analytics: Most active projects/spaces, content creation trends, user engagement, search patterns Compliance Metrics: User access review completion, security audit findings, failed login attempts, API token usage
Escalate to Atlassian Support: System outage, performance degradation org-wide, data loss/corruption, license/billing issues, complex migrations
Delegate to Product Experts:
Involve Security Team: Security incidents, unusual access patterns, compliance audit preparation, new integration security review
TO Jira Expert: New global workflows, custom fields, permission schemes, or automation capabilities available TO Confluence Expert: New global templates, space permission schemes, blueprints, or macros configured TO Senior PM: Usage analytics, capacity planning insights, cost optimization, security compliance status TO Scrum Master: Team access provisioned, board configuration options, automation rules, integrations enabled FROM All Roles: User access requests, permission changes, app installation requests, configuration support, incident reports
Admin operations are NOT available via the Atlassian Remote MCP server (bundled .mcp.json, server key atlassian). The canonical tool list (project-management/references/atlassian-mcp-tools.md) contains no tools for user/group management, permission schemes, field/workflow configuration, SSO, app management, or org settings. Never invent tool names — every admin workflow in this skill runs through admin.atlassian.com or the REST APIs cited inline above.
What MCP CAN contribute to admin work (read-mostly support):
mcp__atlassian__lookupJiraAccountId — resolve users to accountId before deprovisioning auditsmcp__atlassian__searchJiraIssuesUsingJql — find a leaver's open issues (assignee = <accountId>) for reassignmentmcp__atlassian__getVisibleJiraProjects / mcp__atlassian__getConfluenceSpaces — inventory inputs for access reviewsmcp__atlassian__atlassianUserInfo / mcp__atlassian__getAccessibleAtlassianResources — verify the acting identity and accessible sitesIntegration Points:
development
Use when someone wants to run a weekly review, close open loops, audit stalled projects and commitments, get their system back to trusted, restart a lapsed review habit, or says "/cs:weekly-review". Walks David Allen's three-phase loop — GET CLEAR, GET CURRENT, GET CREATIVE — with deterministic scripts that inventory open loops, gate the checklist with named gaps, and score commitment health 0-100.
development
Use when someone wants to decide whether a meeting is worth calling, price a meeting in dollars, build a timeboxed agenda with desired outcomes, or turn messy meeting notes into owned action items — or says "should this be a meeting", "/cs:meeting-prep", or "/cs:meeting-actions". Runs a cost gate (ASYNC / NOT-READY / MEET), builds a decision-first agenda, and extracts an owner + due-date checklist that flags every orphan.
development
Convert a rambling description of a desired outcome into one polished, autonomous /goal prompt ready to paste into a fresh session. Use when the user says "/fable-goal", "turn this into a goal prompt", "write me a fable prompt", "write the prompt that builds X", or rambles about something they want made and asks for the prompt that makes it happen. The output is a single copy-paste prompt, never the build itself. Do NOT use when the user wants the thing built right now in this session — only when they want the PROMPT that will make it happen in a fresh session.
development
Use when someone wants to plan a deep work day, time-block their calendar or task list, budget or cut shallow work, protect focus hours, track deep-work sessions and streaks, run an end-of-day shutdown ritual, or says "/deep-work" or "/time-block". Classifies tasks deep vs shallow, builds an energy-first time-blocked schedule that refuses deep demand past the 4-hour ceiling, batches shallow work into at most two windows, and logs focus sessions against a weekly target.