spring-projects / spring-projects/spring-security
please make it easier to support PKCE oauth flows in, for example, a desktop app
Open
Nobody has claimed this yet.
status: waiting-for-triage
type: enhancement
- Dominant language
- Java
- Stars
- 9.6k
- Forks
- 6.3k
- Avg merge
- 2d 11h
- Merged PRs (30d)
- 52
Description
heres a working example but it's not pretty
https://github.com/coffee-software-show/2026-08-18-bootiful-native-javafx
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start by reviewing the linked JavaFX example and comparing its PKCE OAuth flow with Spring Security's current support. The issue names no repository files or tests, so first identify the desktop-app entry points and define the simpler integration and expected flow. Done means desktop applications can support PKCE OAuth flows more easily.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- java, spring
- Domain
- authentication, security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Quiet
- Clarity
- Needs clarification
- Newbie friendliness
- 35/100