Libraries tagged by owasp

owasp/phprbac

445 Favers
991836 Downloads

PHP-RBAC is the de-facto authorization library for PHP. It provides developers with NIST Level 2 Standard Role Based Access Control and more, in the fastest implementation yet.

Go to Download


owasp/csrf-protector-php

223 Favers
381015 Downloads

CSRF protector php, a standalone php library for csrf mitigation in web applications. Easy to integrate in any php web app.

Go to Download


cyclonedx/cyclonedx-library

14 Favers
2145767 Downloads

Work with CycloneDX documents.

Go to Download


zaproxy/php-owasp-zap-v2

21 Favers
136131 Downloads

PHP client API for OWASP ZAP

Go to Download


vinceamstoutz/symfony-security-auditor

85 Favers
2211 Downloads

AI-powered multi-agent security auditor for Symfony applications — provider-agnostic via symfony/ai

Go to Download


dgtlss/owaspadvisor

31 Favers
8457 Downloads

A Laravel package to help developers implement OWASP Top 10 security guidelines

Go to Download


olivier127/rbac-bundle

32 Favers
9644 Downloads

Symfony PhpRabcBundle allow to use RBAC control access for symfony project

Go to Download


jaydeep/laravel-guarddog

7 Favers
1858 Downloads

Laravel GuardDog — Scan your Laravel project for common security vulnerabilities and generate beautiful HTML reports.

Go to Download


yousha/php-security-linter

11 Favers
462 Downloads

A PHP tool to lint PHP files for security issues based on CIS and OWASP best practices.

Go to Download


spiriitlabs/auth-log-bundle

10 Favers
1178 Downloads

Symfony authentication audit log with geolocation, device detection and security notifications

Go to Download


laramint/php-security-scanner

1 Favers
1615 Downloads

Framework-agnostic static security scanner for PHP. Detects SQLi, XSS, command injection, path traversal, insecure deserialization, weak crypto, hardcoded secrets, and more.

Go to Download


laramint/laravel-security-scanner

3 Favers
1573 Downloads

Laravel-aware security rules for php-security-scanner. Detects Laravel SQL injection (DB::raw, whereRaw), mass assignment, debug/dd leaks, unsafe validators, CSRF bypass, insecure cookies, env exposure, Blade raw echo, open redirect, Http SSRF, Storage/File path traversal, file-upload validation gaps, Auth/Crypt/Artisan/Process/Config injection, view-name injection, session fixation, and Mail header injection.

Go to Download


baspa/larascan

3 Favers
592 Downloads

A security-focused static analysis package for Laravel applications

Go to Download


kanopi/crs-engine

0 Favers
2317 Downloads

Standalone PHP engine that parses the OWASP Core Rule Set (CRS) and evaluates HTTP requests against it.

Go to Download


flowd/phirewall-preset-owasp-crs

0 Favers
268 Downloads

OWASP Core Rule Set (CRS) for the Phirewall PHP firewall - the SecRule engine plus blocklist and fail2ban presets per paranoia level

Go to Download


Next >>