spring-security
https://github.com/spring-projects/spring-security
Java
Spring Security
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
Java not yet supported180 Subscribers
View all SubscribersAdd a CodeTriage badge to spring-security
Help out
- Issues
- AnonymousConfigurer.authorities only accepts GrantedAuthorities but no subtypes of GrantedAuthorities
- Documentation on Authentication and JPA
- Add claim delimiter configuration example in OAuth2 Resource Server JWT documentation
- WebSessionServerOAuth2AuthorizedClientRepository should not store entire ClientRegistration in every session
- Fix Customizer.withDefaults() for authorizeHttpRequests
- Improve Single-Sign-On Redirect for SameSite=Lax and SameSite=Strict
- Consider removing com.nimbusds:oauth2-oidc-sdk dependency
- Endpoint filters should be reachable when using `spring.mvc.servlet.path`
- Simplify CSRF Configuration for SPAs
- Remove deprecated methods from CookieServerCsrfTokenRepository
- Docs
- Java not yet supported