spring-security
https://github.com/spring-projects/spring-security
Java
Spring Security
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
Java not yet supported178 Subscribers
View all SubscribersAdd a CodeTriage badge to spring-security
Help out
- Issues
- Include license.txt in META-INF of released jars
- Improve OAuth2 docs landing page
- Make OIDC Back-Channel Logout API Public
- Use micrometer context-propagation to propagate auth between threadlocal and reactor ops
- Consider CSRF protection with a fixed custom header
- Enhance the observability of the authorization code flow when communicating with a third-party OAuth server
- Provide mechanism to map UserDetails to GrantedAuthority
- WebExpressionAuthorizationManager support for OAuth2WebSecurityExpressionHandler
- After-invocation ACL providers cannot be used with Hibernate proxies
- `EnableWebSocketSecurity` is not 1:1 replacement for `AbstractSecurityWebSocketMessageBrokerConfigurer`
- Docs
- Java not yet supported