Libraries tagged by owasp
owasp/phprbac
991836 Downloads
PHP-RBAC is the de-facto authorization library for PHP. It provides developers with NIST Level 2 Standard Role Based Access Control and more, in the fastest implementation yet.
owasp/csrf-protector-php
381015 Downloads
CSRF protector php, a standalone php library for csrf mitigation in web applications. Easy to integrate in any php web app.
cyclonedx/cyclonedx-library
2145767 Downloads
Work with CycloneDX documents.
zaproxy/php-owasp-zap-v2
136131 Downloads
PHP client API for OWASP ZAP
vinceamstoutz/symfony-security-auditor
2211 Downloads
AI-powered multi-agent security auditor for Symfony applications — provider-agnostic via symfony/ai
dgtlss/owaspadvisor
8457 Downloads
A Laravel package to help developers implement OWASP Top 10 security guidelines
olivier127/rbac-bundle
9644 Downloads
Symfony PhpRabcBundle allow to use RBAC control access for symfony project
jaydeep/laravel-guarddog
1858 Downloads
Laravel GuardDog — Scan your Laravel project for common security vulnerabilities and generate beautiful HTML reports.
yousha/php-security-linter
462 Downloads
A PHP tool to lint PHP files for security issues based on CIS and OWASP best practices.
spiriitlabs/auth-log-bundle
1178 Downloads
Symfony authentication audit log with geolocation, device detection and security notifications
laramint/php-security-scanner
1615 Downloads
Framework-agnostic static security scanner for PHP. Detects SQLi, XSS, command injection, path traversal, insecure deserialization, weak crypto, hardcoded secrets, and more.
laramint/laravel-security-scanner
1573 Downloads
Laravel-aware security rules for php-security-scanner. Detects Laravel SQL injection (DB::raw, whereRaw), mass assignment, debug/dd leaks, unsafe validators, CSRF bypass, insecure cookies, env exposure, Blade raw echo, open redirect, Http SSRF, Storage/File path traversal, file-upload validation gaps, Auth/Crypt/Artisan/Process/Config injection, view-name injection, session fixation, and Mail header injection.
baspa/larascan
592 Downloads
A security-focused static analysis package for Laravel applications
kanopi/crs-engine
2317 Downloads
Standalone PHP engine that parses the OWASP Core Rule Set (CRS) and evaluates HTTP requests against it.
flowd/phirewall-preset-owasp-crs
268 Downloads
OWASP Core Rule Set (CRS) for the Phirewall PHP firewall - the SecRule engine plus blocklist and fail2ban presets per paranoia level