惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

有赞技术团队
有赞技术团队
Martin Fowler
Martin Fowler
N
Netflix TechBlog - Medium
WordPress大学
WordPress大学
罗磊的独立博客
H
Help Net Security
MongoDB | Blog
MongoDB | Blog
A
About on SuperTechFans
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
D
Docker
云风的 BLOG
云风的 BLOG
Microsoft Security Blog
Microsoft Security Blog
Blog — PlanetScale
Blog — PlanetScale
P
Proofpoint News Feed
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
I
InfoQ
J
Java Code Geeks
博客园 - 聂微东
大猫的无限游戏
大猫的无限游戏
Engineering at Meta
Engineering at Meta
美团技术团队
小众软件
小众软件
Stack Overflow Blog
Stack Overflow Blog
C
Check Point Blog

Socket

Fake Corepack Site Distributes Infostealer and Proxyware to ... Large-Scale GitHub Actions Abuse Powers a Distributed cPanel... New Study Identifies 53 Slopsquatting Targets Across 5 Front... White House Launches Gold Eagle Initiative to Manage Surge i... Suno Breached via Shai-Hulud Worm, Leaked Code Exposes AI Mu... Next.js moves to scheduled security releases - Socket 11 Malicious NuGet Tools Pose as Game Cheats to Drop a Windo... Compromised npm Packages in the AsyncAPI Namespace Deliver M... jscrambler npm Package Compromised in Supply Chain Attack - ... Fake Braintree NuGet Package Skims Credit Cards and Harvests... Compromised Injective SDK npm Package Exfiltrates Wallet Key... npm v12 Ships With Install Scripts Off by Default, Begins De... Malicious Go Module Exposes GitHub Malware Lure Network Span... pnpm 11.10 Hardens Registry Authentication to Block Token Re... Coordinated npm and PyPI Campaign Typosquats Popular Secure ... Node.js Considers Public Workflow for Security Reports Amid ... PolinRider: North Korea-Linked Supply Chain Campaign Expands... Risky Biz Podcast: AI Agents Are Raising the Stakes for Soft... Chrome and Firefox Extensions Posing as Free VPNs Add Clipbo... Miasma Mini Shai-Hulud Hits ImmobiliareLabs npm Packages - S... Rolldown Pulls Rust React Compiler Integration After Binary ... Miasma Mini Shai-Hulud Hits LeoPlatform npm Packages and Git... Frontier AI Is Now Critical Infrastructure - Socket The Code You Didn't Write Is Still Yours to Defend - Socket GitHub Actions Checkout Now Blocks Risky pull_request_target... Introducing Repository Access Permissions and Custom Roles -... Socket MCP Adds Org Alerts, Threat Feed Review, and Package ... Socket Firewall Now Blocks Malicious VS Code and Open VSX Ex... 140+ Mastra npm Packages Compromised in Coordinated Supply C... npm Package Uses Prompt Injection and Token Flooding to Disr...
Socket for Jira Is Now Available
Jeppe Hasser · 2026-04-21 · via Socket

Sidebar CTA Background

Secure your dependencies with us

Socket proactively blocks malicious open source packages in your code.

Install

Security findings only matter if organizations can act on them. That usually means getting the right issues into the systems where engineering and security teams already work.

Socket for Jira is now available, making it easy to turn Socket alerts into Jira issues and keep remediation work moving as alerts change over time. Teams can create tickets manually from individual alerts or set up automated ticketing rules to create, update, and resolve issues based on activity in Socket. The integration is available for Jira Cloud on Business and Enterprise plans.

Bring Socket Alerts Into Jira#

Once connected, Socket brings alert context directly into Jira so teams can track remediation in the workflow they already use.

Teams can create Jira tickets manually from alerts in the Socket dashboard, linking the issue back to the alert for easy navigation between systems.

Automate Ticketing Based on Alert Activity#

For teams that want a more scalable workflow, our Jira integration also supports automated ticketing rules. These rules let you define when Jira issues should be created, updated, or resolved based on alert events across your organization.

That includes the ability to choose which events trigger tickets, apply conditions such as category, priority, or repository scope, select a Jira project, and control how the issue should be created. You can configure issue type, priority, labels, assignee, and additional Jira fields as part of the workflow.

After defining which alerts should trigger tickets, teams choose the Jira site and project where those issues should land. This makes it possible to route different types of Socket alerts into the right team workflow instead of funneling everything into a single queue.

Socket also lets teams control how those Jira issues are created. In the issue configuration step, you can choose the issue type, set a priority or map it automatically from the alert, and optionally add labels, an assignee, or additional fields required by your Jira project.

Keep Alerts and Tickets in Sync#

Socket for Jira includes two-way sync, so Jira issues do not become stale copies of security work. When linked issues are updated, resolved, or deleted in Jira, Socket can respond accordingly and update the related alert state.

Automated rules can also update linked issues as alerts change, transition Jira issues when alerts are cleared, and optionally mark Socket alerts as ignored when the linked ticket is closed.

In Jira, tickets created by Socket appear alongside the rest of the team’s backlog, giving engineering and security teams a shared place to track remediation after alerts are created in Socket.

Flexible Enough for Real Team Workflows#

The integration is powered by the Socket for Jira Atlassian Forge app, which is installed in Jira Cloud and connected to a Socket organization. A single Jira site can also be connected to multiple Socket organizations when needed, which is useful for larger teams managing separate environments or business units.

Socket administrators can connect and configure the integration, while members can create tickets from alerts once the connection is in place.

Available Now#

Socket for Jira is now available to organizations on our Business and Enterprise plans. Teams can start using it today with Jira Cloud. Today, the Jira integration supports alert-based workflows, with additional event types such as Pull Requests and Threat Feed planned for the future.

To get started, head to Settings → Integrations → Jira in the Socket dashboard and connect your Jira Cloud instance. From there, you can create tickets manually from alerts or set up automated ticketing rules for your organization.

Check out the documentation to learn more and start configuring the integration.