Secure-by-default reactive OAuth2 resource server: JWT (and opaque) validation, claim-to-authority mapping, default-deny chain and hardened security headers. Delivered to applications via the application starter.
VersionVulnerabilitiesRepositoryUsagesDate
26.7.x
26.07.01CentralJul 03, 2026
26.6.x
26.06.03CentralJun 27, 2026
26.06.02CentralJun 20, 2026