We’re renaming ‘products’ to ‘apps’

Atlassian 'products’ are now ‘apps’. You may see both terms used across our documentation as we roll out this terminology change. Here’s why we’re making this change

Remove app access for users

Which user management experience do you have?

Go to Atlassian Administration. Select your organization if you have more than one. You can identify which user management experience you have by checking where your Users page is located.

Centralized

Original

In Atlassian Administration, Users is located in Directory.

Centralized user management png

In Atlassian Administration, Users is located in Apps > {site}.

Original user management png

 

Jump to the


Centralized user management content

Remove app access from a user when they no longer need access to an app. If the user no longer needs access to your organization, you can remove them from your organization.

Users get access to apps through groups, usually default groups. Users can also get access to an app by being part of a group that isn’t the app’s default group, but has access to that app. Users need to be removed from all groups that give access to an app to remove their access to that app completely.

How app access works for Atlassian Government Cloud

Atlassian Government Cloud organizations should provision users from an identity provider. If you provisioned users from an identity provider and need to remove their app access, follow the steps on this page to remove access from a group.

Remove app access from a user

Who can do this?
Role: Organization admin, user access admin (only for the app they administer)
Atlassian Cloud: All plans
Atlassian Government Cloud: Manage from identity provider

To remove access from a user:

  1. Go to Atlassian Administration. Select your organization if you have more than one.

  2. Select Directory > Users.

  3. Select the user.

  4. Find the app you want to remove access to, then select more actions (•••).

  5. Select Remove app access. This removes the user from all groups that give access to that app.

You can automate this process with the Revoke user access API.

If the user is an organization admin, you need to remove their organization admin role before you can remove their access to a app. Remove admin permissions from users

Default groups that give access to more than one app

When you assign a role to a user, we add them to the default group for that role. If the default group for an app has been modified to also give access to other apps, a user access admin for that app only won’t be able to remove access to that app. This is so the user access admin doesn’t inadvertently remove access to other apps they don’t administer. Troubleshoot issues related to managing groups

Remove app access from a group

Who can do this?
Role: Organization admin, user access admin (only for the app they administer)
Atlassian Cloud: All plans
Atlassian Government Cloud: Available

To remove access from a group:

  1. Go to Atlassian Administration. Select your organization if you have more than one.

  2. Select Directory > Groups.

  3. Find the group you want to remove access from, then select Show details.

  4. Find the app you want to remove access to and select more actions (•••).

  5. Select Remove app from group.

  6. Select Remove from group.

You can automate this process with the Revoke roles from a group API.

Users in this group will continue to have access to the app if they’re in other groups that give access to that app. To remove access to the app completely for any user, follow the instructions to remove app access from a user.

You can also remove access from one or more groups in Apps. This can help you remove access to the same app for multiple groups quickly. To do this:

  1. Go to Atlassian Administration. Select your organization if you have more than one.

  2. Select Apps.

  3. Select Manage App for the app that you need to remove access to.

  4. Find the group you want to remove access from, then select more actions (•••).

  5. Select Remove group from app.

  6. Repeat steps 4 and 5 for additional groups if needed.

Default groups are required

Every app needs a default group for each role available in that app. You can’t remove a group from an app, or app access from a group, if it’s the only default group for a role. You need to make another group the default group for the same role first. Troubleshoot issues related to managing groups


Original user management content

Remove app access from a user when they no longer need access to an app. If the user no longer needs access to your organization, you can remove them from your organization.

Remove app access from a user

Who can do this?
Role: Organization admin, site admin
Atlassian Cloud: All plans

To remove access from a user:

  1. Go to your site's Admin at admin.atlassian.com. If you're an admin for multiple sites or an organization admin, select the site's name and URL to open the Admin for that site.

  2. Select the user.

  3. Turn off the toggle next to the app the user no longer needs access to. This removes the user from all groups that grant access to that app.

If the user is an organization admin or a site admin, you need to make them a basic user first before you can remove their access to an app. Remove admin permissions from users

Remove app access from a group

Who can do this?
Role: Organization admin, site admin
Atlassian Cloud: All plans

To remove access from a group:

  1. Go to your site's Admin at admin.atlassian.com. If you're a site administrator for multiple sites or an organization admin, select the site's name and URL.

  2. Select App access.

  3. Find the app that your group no longer needs access to and select more actions (•••).

  4. Select Remove group.

Users in this group will continue to have access to the app if they’re in other groups that give access to that app. To remove access to the app completely for any user, follow the instructions to remove app access from a user.

Still need help?

The Atlassian Community is here for you.