Scanning
This tab gives you advices regarding what you should do to grant a certain permission to a user on a particular project or issue, or, if the user has that permission, it shows the permission sources. You can choose a filter criteria for the permission helper, either by project or by issue.
Note that scanning a permission by project only checks non-dynamic permission sources (direct, by group, by project role or by project lead).
The dynamic permissions (eg. assignee, reporter) are only relevant in an issue context, so you can switch to this criteria and choose a particular issue for scanning. You can select the user for which to check the permission either through autocomplete - you will get a list of possible matches after starting typing, or by using the user picker pop-up lunched from the right of the input.
After selecting your criteria (project or issue), the user and the permission to analyze you can click submit.If any of the project, issue or user are invalid, an error message will be displayed. If validation passes, you will be shown the analysis result. If the user has the given permission for the given project/issue context, the permission sources will be displayed. For the issue criteria, the issue security is also checked.
Results
If the user doesn't have the given permission for the given project / issue context, you will be shown all the failed permission sources. For project role or group permission sources, you can expand the result and see in what groups / project roles should the user be included to be granted the permission, as well as what other permissions he will be granted by joining that groups / roles.
You can also try the "Suggest Families" button, that will scan for all permission families that contain the searched permission on the given issue / project. Suggested families will be ordered by the number of users from the same email domain as the searched user. Clicking on the "Show Users" button will show all the family members. You can add the user to any of the suggested families by clicking the "Add User" button of the specific family. You can then do a rescan of the user permission and you will see the user was granted the permission.
Adding the user to a suggested permissions family will remove the user from ANY other permission groups he/she belongs to.