Package cloud.opencode.base.serialization.filter
package cloud.opencode.base.serialization.filter
Deserialization Class Filter - Security filtering for deserialization
反序列化类过滤器 - 反序列化安全过滤
Provides a unified class filtering mechanism to prevent deserialization of dangerous classes. Similar in purpose to Jackson's PolymorphicTypeValidator and Kryo's ClassResolver, but designed as a standalone, framework-agnostic security layer.
提供统一的类过滤机制,防止危险类的反序列化。 类似于 Jackson 的 PolymorphicTypeValidator 和 Kryo 的 ClassResolver, 但设计为独立的、框架无关的安全层。
Key Components | 核心组件:
ClassFilter- Functional interface for class filtering - 类过滤函数式接口ClassFilterBuilder- Builder for creating composite filters - 组合过滤器构建器DefaultClassFilter- Pre-built secure filters - 预置安全过滤器
- Since:
- JDK 25, opencode-base-serialization V1.0.3
- Author:
- Leon Soo www.LeonSoo.com
- See Also:
-
ClassDescriptionClassFilter - Deserialization Class Filter Interface 反序列化类过滤器接口ClassFilterBuilder - Builder for Composite Class Filters 组合类过滤器构建器DefaultClassFilter - Pre-built Secure Class Filters 预置安全类过滤器