spring-security
https://github.com/spring-projects/spring-security
Java
Spring Security
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
Java not yet supported199 Subscribers
View all SubscribersAdd a CodeTriage badge to spring-security
Help out
- Issues
- WebAuthnAuthentication Jackson config is missing and breaks oauth2 authorization server
- Consolidate logic for merging authorities
- When possible use SmartHttpMessageConverter over GenericHttpMessageConverter
- Use `SmartHttpMessageConverter` over `GenericHttpMessageConverter` where possible
- Consider adding DPoP specific OAuth2ProtectedResourceMetadata parameters
- Add Kotlin DSL for OAuth Authorization Server configuration
- Allow AbstractRestClientOAuth2AccessTokenResponseClient to be extended
- Session Control does not work properly when race condition happens
- DefaultPermissionGrantingStrategy.isGranted(...) optimization
- IOException in AbstractAuthorizeTag with DefaultHttpSecurityExpressionHandler
- Docs
- Java not yet supported