Scanning
This tab enables you to grant a certain permission to a user on a particular project or issue, or, if the user has that permission, it shows the permission sources. You can choose a filter criteria for the permission helper, either by project or by issue.
Note that scanning a permission by project only checks non-dynamic permission sources (direct, by group, by project role or by project lead).
The dynamic permissions (eg. assignee, reporter) are only relevant in an issue context, so you can switch to this criteria and choose a particular issue for scanning. You can select the user for which to check the permission either through autocomplete - you will get a list of possible matches after starting typing, or by using the user picker pop-up lunched from the right of the input.
After selecting your criteria (project or issue), the user and the permission to analyze you can click Submit. If any of the project, issue or user are invalid, an error message is displayed. If validation passes, the analysis result appears. If the user has the given permission for the given project/issue context, the permission sources are displayed. For the issue criteria, the issue security is also checked.
Results
If the user doesn't have the given permission for the given project / issue context, all the failed permission sources are displayed. For project role or group permission sources, you can expand the result and see in what groups / project roles should the user be included to be granted the permission, as well as what other permissions he will be granted by joining that groups / roles.
You can also try the Suggest Families button, that scans for all permission families that contain the searched permission on the given issue / project. Suggested families are ordered by the number of users from the same email domain as the searched user. Clicking Show Users button shows all the family members. You can add the user to any of the suggested families by clicking Add User button of the specific family. You can then do a rescan of the user permission and you will see the user was granted the permission.
Adding the user to a suggested permissions family will remove the user from ANY other permission groups he/she belongs to.