Download the PHP package muradyanvano/laravel-react-spa-starter-kit without Composer

On this page you can find all versions of the php package muradyanvano/laravel-react-spa-starter-kit. It is possible to download/install these versions without Composer. Possible dependencies are resolved automatically.

FAQ

After the download, you have to make one include require_once('vendor/autoload.php');. After that you have to import the classes with use statements.

Example:
If you use only one package a project is not needed. But if you use more then one package, without a project it is not possible to import the classes with use statements.

In general, it is recommended to use always a project to download your libraries. In an application normally there is more than one library needed.
Some PHP packages are not free to download and because of that hosted in private repositories. In this case some credentials are needed to access such packages. Please use the auth.json textarea to insert credentials, if a package is coming from a private repository. You can look here for more information.

  • Some hosting areas are not accessible by a terminal or SSH. Then it is not possible to use Composer.
  • To use Composer is sometimes complicated. Especially for beginners.
  • Composer needs much resources. Sometimes they are not available on a simple webspace.
  • If you are using private repositories you don't need to share your credentials. You can set up everything on our site and then you provide a simple download link to your team member.
  • Simplify your Composer build process. Use our own command line tool to download the vendor folder as binary. This makes your build process faster and you don't need to expose your credentials for private repositories.
Please rate this library. Is it a good library?

Informations about the package laravel-react-spa-starter-kit

Laravel React SPA Starter Kit

A community Laravel starter kit for a first-party React SPA using React Router instead of Inertia.js.

CI Packagist Version Packagist Downloads PHP Version Laravel

This is not an official Laravel starter kit and is not endorsed by Laravel.

Why this starter kit

Stack: Laravel, React, TypeScript, React Router, Fortify, Sanctum, Wayfinder, and Vite.

Architecture choice: a traditional same-origin SPA instead of Inertia.js.

UI and developer experience are inspired by Laravel’s official React starter kit; the runtime is a conventional SPA with browser-owned routing.

Quick Start

Laravel Installer

Composer create-project

Install the latest stable release from Packagist:

Pin a specific version when you need a reproducible install:

Requirements

The generated project is a normal Laravel application you own and can customize freely.

Features

Authentication

Application

Passkeys

Passkeys provide passwordless sign-in through your browser or platform authenticator (Touch ID, Windows Hello, security keys, and similar).

Sign in: On the login page, use Sign in with a passkey when your browser supports WebAuthn. Password login remains available as a fallback.

Confirm sensitive actions: On the confirm-password page, you can confirm with a passkey instead of re-entering your password when supported.

Manage passkeys: In Settings → Security, you can:

Adding or deleting passkeys requires recent password or passkey confirmation when Fortify password confirmation is enabled.

Passkeys depend on browser and platform WebAuthn support. Unsupported browsers can still view and delete existing passkeys, but cannot register new ones from the UI.

This kit does not implement conditional WebAuthn autofill, passkey “remember me”, or custom credential synchronization.

Developer experience

Architecture

Concern This kit
Browser routing React Router
Auth capabilities Laravel Fortify
SPA session auth Sanctum stateful cookies + CSRF
HTTP client Axios
WebAuthn ceremonies @laravel/passkeys
Typed routes / actions Laravel Wayfinder
Page shell Blade SPA shell + React
Inertia Not used

Laravel owns the API/backend, Fortify endpoints, Sanctum session authentication, and the SPA shell/fallback.

React owns browser routing, layouts/pages, authentication state, and API interaction.

Laravel serves the Blade SPA shell for browser routes such as /dashboard and /settings/profile. The catch-all does not swallow /api/*, /sanctum/*, /up, /email/*, /storage/*, Fortify endpoints, or public assets.

Authentication and security

Default design: Laravel and the SPA share one origin (for example https://example.com).

Password login and 2FA: When two-factor authentication is enabled, password login continues through Fortify’s normal TOTP/recovery-code challenge.

Passkey login: Native Fortify passkey authentication completes the session directly and does not route through the password-login two-factor challenge.

Passkey metadata: The settings passkey list API returns display metadata only (name, authenticator label, human-readable timestamps). Credential material is never exposed to the frontend.

Split-origin deployments need correct SANCTUM_STATEFUL_DOMAINS, session cookie domain/SameSite, CORS, and CSRF configuration. That layout is out of scope for the default kit.

Useful variables: APP_URL, SESSION_DOMAIN, SESSION_SECURE_COOKIE, SANCTUM_STATEFUL_DOMAINS, MAIL_*.

Password reset and email verification use Laravel’s mailer. Configure MAIL_* (or a local driver such as log / Mailpit) before relying on those flows outside tests.

Appearance

Appearance is client-driven (light / dark / system) via localStorage and an appearance cookie, matching the official-kit style settings experience.

Development

From a generated app or a clone of this repository:

Frontend:

Or run php artisan serve and npm run dev in separate terminals.

Working on this repository

Testing and quality

CI runs on pushes and pull requests against main, including:

Exact test counts belong in release notes; they change over time.

Wayfinder

These directories are generated and gitignored:

Do not edit or commit them. npm run build / npm run dev generate them via @laravel/vite-plugin-wayfinder. npm run types:check also ensures they exist before TypeScript runs.

On a completely fresh tree, run composer setup (or at least npm run build / npm run types:check) before expecting TypeScript imports from @/routes to resolve.

Laravel Boost

laravel/boost is an optional development dependency for AI-assisted coding.

Boost setup is not mandatory. After creating an app, install Boost guidelines/skills only if you want them:

The Laravel installer may also offer Boost during laravel new. Generated Boost state (boost.json, agent guideline files such as AGENTS.md) is gitignored and is not shipped to Packagist consumers.

Attribution

UI and developer experience inspired by Laravel’s official React starter kit, including passkey UI patterns.

This community project is independent of Laravel and is not an official starter kit maintained by Laravel. See NOTICE.md for third-party notices.

Links

License

MIT — see NOTICE.md.


All versions of laravel-react-spa-starter-kit with dependencies

PHP Build Version
Package Version
Requires php Version ^8.3
laravel/fortify Version ^1.39
laravel/framework Version ^13.17
laravel/sanctum Version ^4.0
laravel/tinker Version ^3.0
laravel/wayfinder Version ^0.1.14
Composer command for our command line client (download client) This client runs in each environment. You don't need a specific PHP version etc. The first 20 API calls are free. Standard composer command

The package muradyanvano/laravel-react-spa-starter-kit contains the following files

Loading the files please wait ...