Hello, All.
I have an idea for spring security.
We can all agree that there are many confusing options in Spring Security.
I think we can use appscan. appscan is Web Application Vulnerability Tool. https://opensource.hcltechsw.com/appscan.html shall we connect spring security to appscan like in form of a plugin ?
Comment From: jzheaux
@okwow123, thanks for reaching out, I think it's a good idea for automation to confirm correct usage and find problematic usage.
That said, I'm not clear on what changes you'd want to see in Spring Security proper. Would things like this be better contributed to SemGrep, Sonar, and the like?
Comment From: spring-projects-issues
If you would like us to look at this issue, please provide the requested information. If the information is not provided within the next 7 days this issue will be closed.
Comment From: spring-projects-issues
Closing due to lack of requested feedback. If you would like us to look at this issue, please provide the requested information and we will re-open the issue.