Gather telemetry about usage of optional permissions

This issue is archived. You can view it, but you can't modify it. Learn more

XMLWordPrintable

    • 2.375.1

      The Jenkins security team would like to collect telemetry regarding the usage of optional permissions (using the existing Telemetry API from JEP-214). We plan to use this telemetry to understand whether existing optional permissions are used frequently enough to justify their ongoing maintenance cost or are popular enough that we should consider enabling them by default.

      There are only a few permissions in Jenkins core and plugins hosted by the Jenkins community that are disabled by default. These are:

      • Agent/ExtendedRead
      • Job/ExtendedRead
      • Job/WipeOut
      • Overall/Manage
      • Overall/SystemRead
      • Run/Artifacts
      • Credentials/UseOwn (defined in credentials)
      • Credentials/UseItem (defined in credentials)

      There are also two plugins which enable some of these optional permissions by default, so we would like to include the default component information in the telemetry to understand whether these plugins are installed:

            Assignee:
            Devin Nusbaum
            Reporter:
            Devin Nusbaum
            Archiver:
            Jenkins Service Account

              Created:
              Updated:
              Resolved:
              Archived: