Download the PHP package imransaleem/security-suite without Composer

On this page you can find all versions of the php package imransaleem/security-suite. It is possible to download/install these versions without Composer. Possible dependencies are resolved automatically.

FAQ

After the download, you have to make one include require_once('vendor/autoload.php');. After that you have to import the classes with use statements.

Example:
If you use only one package a project is not needed. But if you use more then one package, without a project it is not possible to import the classes with use statements.

In general, it is recommended to use always a project to download your libraries. In an application normally there is more than one library needed.
Some PHP packages are not free to download and because of that hosted in private repositories. In this case some credentials are needed to access such packages. Please use the auth.json textarea to insert credentials, if a package is coming from a private repository. You can look here for more information.

  • Some hosting areas are not accessible by a terminal or SSH. Then it is not possible to use Composer.
  • To use Composer is sometimes complicated. Especially for beginners.
  • Composer needs much resources. Sometimes they are not available on a simple webspace.
  • If you are using private repositories you don't need to share your credentials. You can set up everything on our site and then you provide a simple download link to your team member.
  • Simplify your Composer build process. Use our own command line tool to download the vendor folder as binary. This makes your build process faster and you don't need to expose your credentials for private repositories.
Please rate this library. Is it a good library?

Informations about the package security-suite

Security Suite — Laravel Security Package

Latest Version on Packagist

A plug-and-play Laravel package for audit logging, password policy, login lockout, idle session timeout, password history UI, and optional HTTP request logging.


Features

Feature Description
Audit Logs Track create/update/delete actions with before/after diff
Password Policy Complexity rules, expiry, history (prevent reuse of last N passwords)
Login Block Auto-block after N failed attempts — temporary lock or admin unblock
Idle Timeout End session after inactivity (server middleware + optional client ping)
Password History UI Admin views for per-user and global password change history
HTTP Logger Optional request/response logging with admin viewer
Login Logs Failed login, login, and logout event tracking with admin UI
Logs Menu Bootstrap dropdown or sidebar menu, env-configurable
Login Flow Security Security headers + pre-login block checks via middleware

Requirements


Installation

Publish & migrate

See TESTING.md for local path-repository setup and the included demo app.

Middleware (app/Http/Kernel.php)

User model

Add to $fillable and $casts:

Host app layout

Admin views use config('security_suite.layout') (default layouts.app). The password-expired screen uses security_suite.password_expired_layout (default layouts.guest).

Logs menu (Bootstrap)

Add to your navbar or sidebar (mode is controlled by SECURITY_SUITE_MENU_MODE):

Or pick a template explicitly:

Idle timeout script

Publish the asset once, then include in your app layout:

Requires a #logout-form in the layout (standard Laravel Breeze/Jetstream pattern).

Login flow security

Apply to login/register/password routes in routes/web.php:

Or add \ImranSaleem\SecuritySuite\Middleware\SecureLoginFlow::class to those routes in your auth scaffold.

Login, logout, and failed attempts are logged automatically via Laravel auth events when LOGIN_LOGGING_ENABLED=true.


Routes

All package routes are prefixed (default /security):

Route name Path
idle.ping GET /security/idle-ping
idle.config GET /security/idle-config
password.expired GET /security/password-expired
audit.logs.index GET /security/audit-logs
password.change.logs GET /security/password-change-logs
login.logs.index GET /security/login-logs
login.failed.logs GET /security/failed-login-logs
http.logs.index GET /security/http-logs

Change the prefix with SECURITY_SUITE_ROUTE_PREFIX in .env.


Configuration

.env

Custom modules & actions

Publish config/audit.php and set:

Idle timeout (client-side)

Prefer the published script partial (see Idle timeout script above). Manual inline example:

Background polling (idle)

Add host route names to config/security_suite.php → idle_no_refresh_route_names so polling does not reset the idle timer.


Usage

Audit logging

Login block

Password policy


Package structure


License

MIT — see LICENSE.


All versions of security-suite with dependencies

PHP Build Version
Package Version
Requires php Version ^7.4|^8.0
ext-json Version *
illuminate/auth Version ^8.0|^9.0|^10.0
illuminate/database Version ^8.0|^9.0|^10.0
illuminate/events Version ^8.0|^9.0|^10.0
illuminate/http Version ^8.0|^9.0|^10.0
illuminate/routing Version ^8.0|^9.0|^10.0
illuminate/support Version ^8.0|^9.0|^10.0
illuminate/validation Version ^8.0|^9.0|^10.0
illuminate/view Version ^8.0|^9.0|^10.0
Composer command for our command line client (download client) This client runs in each environment. You don't need a specific PHP version etc. The first 20 API calls are free. Standard composer command

The package imransaleem/security-suite contains the following files

Loading the files please wait ...