Download the PHP package joshdonnell/radar without Composer

On this page you can find all versions of the php package joshdonnell/radar. It is possible to download/install these versions without Composer. Possible dependencies are resolved automatically.

FAQ

After the download, you have to make one include require_once('vendor/autoload.php');. After that you have to import the classes with use statements.

Example:
If you use only one package a project is not needed. But if you use more then one package, without a project it is not possible to import the classes with use statements.

In general, it is recommended to use always a project to download your libraries. In an application normally there is more than one library needed.
Some PHP packages are not free to download and because of that hosted in private repositories. In this case some credentials are needed to access such packages. Please use the auth.json textarea to insert credentials, if a package is coming from a private repository. You can look here for more information.

  • Some hosting areas are not accessible by a terminal or SSH. Then it is not possible to use Composer.
  • To use Composer is sometimes complicated. Especially for beginners.
  • Composer needs much resources. Sometimes they are not available on a simple webspace.
  • If you are using private repositories you don't need to share your credentials. You can set up everything on our site and then you provide a simple download link to your team member.
  • Simplify your Composer build process. Use our own command line tool to download the vendor folder as binary. This makes your build process faster and you don't need to expose your credentials for private repositories.
Please rate this library. Is it a good library?

Informations about the package radar

Laravel Radar

Laravel Compatibility Tests Formats License

Introduction

Laravel Radar is a lightweight dependency health dashboard and notifier for Laravel applications.

Radar scans Composer and NPM dependencies, stores a snapshot, and highlights:

Radar is intentionally read-only. It reports dependency health and suggests commands, but it does not update dependencies, edit lock files, commit changes, or deploy code for you.

Requirements

Installation

Install Radar with Composer:

Publish Radar's config file, migration, and dashboard assets:

Run the migration:

Usage

Run a dependency scan:

Open the dashboard at:

The dashboard path can be changed with:

Radar's dashboard is enabled outside production by default and disabled in production by default. Production applications can still run scans and send notifications. Only enable the dashboard in production when it is protected by trusted authentication and authorization.

Commands

Radar currently ships these Artisan commands:

radar:scan

Scans application dependencies and stores a Radar snapshot.

Scan a different project path:

Use CI mode in a pipeline after installing dependencies:

The --ci flag makes radar:scan return a failing status when vulnerabilities meet the configured severity threshold. Your CI provider does not need special handling. It only needs to run the command and respect the exit code.

Set --severity to low, medium, high, or critical. Radar returns 1 when a vulnerability is at or above that threshold, 0 when none are, and 2 when the CI options or scan path are invalid.

radar:notify

Sends deduplicated vulnerability notifications for the latest stored scan.

Run a fresh scan before notifying:

Notifications are only sent when vulnerabilities exist and at least one notification route is configured.

radar:clear

Clears stored Radar scan history.

Skip the confirmation prompt:

Dashboard

The dashboard shows the latest stored scan, including:

Notifications

Radar uses Laravel Notifications. Your application still owns the normal mail and Slack transport configuration; Radar only stores the on-demand notification routes it should target.

Configure mail recipients:

Configure Slack:

Send notifications manually:

Or scan first, then notify:

Repeated notifications for the same vulnerability finding set are deduplicated for the configured TTL:

Scheduling

Radar preconfigures a nightly scheduled radar:notify --scan run at 02:00, so each notification run starts with a fresh scan.

Your application still needs Laravel's scheduler running in production, usually via a cron entry that runs php artisan schedule:run every minute.

Customize or disable Radar's built-in schedule:

Authorization

Radar checks the configured gate outside local environments before serving the dashboard.

Define the gate in your application, for example:

If you publish the config, you can change the gate name by editing the authorization.gate value in config/radar.php.

Configuration

Publish the configuration file with:

Useful environment variables:

See the configuration documentation for the full config reference.

Dependency sources

Radar reads dependency information from package manager files and installed package metadata.

Composer support includes:

NPM support includes:

Supported Node runners

Radar detects the JavaScript package manager from the project lock file and uses that runner when suggesting safe NPM update commands.

Lock file Runner Example recommendation
package-lock.json npm npm update vite
npm-shrinkwrap.json npm npm update vite
yarn.lock Yarn yarn up vite
pnpm-lock.yaml pnpm pnpm update vite
bun.lock Bun bun update vite
bun.lockb Bun bun update vite

If no known lock file exists, Radar falls back to npm.

Testing

Run the PHP checks:

Run frontend checks while working on dashboard assets:

License

Laravel Radar is open-sourced software licensed under the MIT license.


All versions of radar with dependencies

PHP Build Version
Package Version
Requires php Version ^8.3
illuminate/contracts Version ^12.0||^13.0
illuminate/database Version ^12.0||^13.0
laravel/slack-notification-channel Version ^3.0
spatie/laravel-package-tools Version ^1.16
symfony/process Version ^7.0||^8.0
Composer command for our command line client (download client) This client runs in each environment. You don't need a specific PHP version etc. The first 20 API calls are free. Standard composer command

The package joshdonnell/radar contains the following files

Loading the files please wait ...