package com.stktrk.auth.application; import jakarta.annotation.Nonnull; import org.springframework.security.access.prepost.PreAuthorize; import org.springframework.web.bind.annotation.GetMapping; import org.springframework.web.bind.annotation.RequestMapping; import org.springframework.web.bind.annotation.RestController; @RestController @RequestMapping("/bearer") public class TestController { @PreAuthorize("hasRole('USER')") @Nonnull @GetMapping ("/user") public String isUser () { return "OK"; } }