How to Set Up Jira API Tokens and Back Up Jira Cloud
Jira API tokens and a tested backup routine give your team integrations that authenticate with only the access they need and a Jira Cloud site you can restore on demand. Configuring both from day one puts every script, sync, and restore on a documented path instead of a personal login. This guide covers four tasks:
- Create a personal API token with scopes
- Create a service account token for integrations
- Create a Jira Cloud backup
- Restore a backup and rebuild what it leaves out
Before You Start
- Jira admin access for Backup manager and imports
- Organization admin access in Atlassian Administration for service accounts
- A password manager vault, because a token cannot be viewed again after you copy it
Create a Personal API Token With Scopes
- Sign in at id.atlassian.com/manage-profile/security/api-tokens.
- Select Create API token with scopes.
- Name the token after the script or tool that will use it.
- Select an expiration date. Tokens last between 1 and 365 days, and the default is one year.
- Select the app the token will access, such as Jira.
- Select only the scopes the token needs.
- Select Create, then Copy to clipboard.
- Save the token in your password manager.
Scripts authenticate with basic auth, using your Atlassian account email as the username and the token in place of a password. To revoke a token, return to the same page and select Revoke next to it, or Revoke all API tokens.
A personal token acts as you and stops working when your account is deactivated, so keep it for your own scripts and short-lived tasks.
Create a Service Account Token for Integrations
Service accounts are not tied to a person, so integrations built on them keep running through staffing changes.
- Go to Atlassian Administration and select your organization.
- Select Directory → Service accounts.
- Select the service account, then Create credentials.
- Select API token, then Next.
- Name the token and select an expiration date.
- Select the scopes it needs in Jira or Confluence.
- Review the token, select Create, then Copy to clipboard.
Service account tokens must be scoped, and scopes cannot be changed after creation, so create a new token when an integration needs different access. Requests must use the api.atlassian.com gateway URLs rather than your site URL. Service accounts can also use OAuth 2.0 credentials for integrations built on OAuth flows.
Create a Jira Cloud Backup
Backup manager exports the whole site, so one backup covers every project at once.
- Select Settings → System.
- Under Import and Export, select Backup manager.
- Under Backup for cloud, choose whether to include attachments, avatars, and logos.
- Select Create backup for cloud.
- When the backup completes, select Download backup file and store it with restricted access.
Backups that include attachments, avatars, or logos need 48 hours between runs. Backup manager restores only from backups that are 30 days old or less, so a regular schedule keeps a usable file on hand.
Restore a Backup
Run a restore into a sandbox or an empty site before you ever need one in production.
- Select Settings → System.
- Under Import and Export, select Import Jira Cloud.
- Upload the backup file and follow the prompts.
A restore overwrites the target site's database, and importing attachments, avatars, or logos overwrites those files as well. Users in the backup merge with existing cloud users, which can grant additional app access, and the import does not apply default app access settings. Review group membership after every restore.
What a Restore Brings Back
The backup restores:
- Projects, work items, workflows, fields, and schemes from the database export
- Attachments, avatars, and logos when they were included
These are not in the backup and need their own record:
- Automation rules
- Marketplace apps and their data
- Assets for Jira Service Management
- Jira Service Management features powered by Opsgenie
- App access settings, so users need to be added to groups for permissions to apply
- Jira Product Discovery views, insights, and vote fields
Keep a copy of your automation rules and a list of installed apps alongside each backup file. On Premium or Enterprise plans, Atlassian Backup and Restore is available as an add-on that runs scheduled backups in Atlassian storage and restores to an empty site or sandbox.
What You Gain
- Integrations that keep running through staffing changes
- Tokens scoped to what each tool needs, with an expiry date that prompts a review
- A current backup file and a restore path you have already tested
- A known list of what to rebuild after a restore
- The same setup at five people and at a hundred and twenty
Who Should Own It
Outsourcing Jira administration is the default recommendation for most SMBs. A managed IT partner runs token rotation, backup downloads, and test restores as routine work, and keeps the credentials on service accounts from the start. Companies that already have an IT partner get the most from this by adding token expiry and backup checks to the work that partner already covers.
ScaleIt administers Jira and Jira Service Management for startups and SMBs as part of managed IT support, including service accounts, token rotation, and backup schedules. Book a free call and we will map a token and backup setup for your site.
Verified against Jira Cloud and Atlassian Administration on 2026-09-29. Vendor docs: https://support.atlassian.com/atlassian-account/docs/manage-api-tokens-for-your-atlassian-account/, https://support.atlassian.com/user-management/docs/manage-api-tokens-for-service-accounts/, https://support.atlassian.com/jira-cloud-administration/docs/export-issues/, https://support.atlassian.com/jira-cloud-administration/docs/import-issues/, https://support.atlassian.com/organization-administration/docs/manage-backup-and-restore-for-atlassian-products/.