Looking to hire Laravel developers? Try LaraJobs
laravel-secret-scanner
Framework-agnostic secret and PII detection engine: rules, scanner, redactor, severity and confidence model. Shared core for the Laravel Security Audit guard packages.
64
laravel-captcha
Laravel 5/6/7/8/9/10/11/12 Captcha Package
4
laravel-mail-guard
Scan outgoing Laravel mail for leaked secrets, PII, and compliance issues. Preview, block unsafe sends, and fail CI before email leaks.
0
laravel-vpn-detector
VPN, proxy and Tor detection middleware for Laravel, powered by the IP2Proxy database.
72
laravel-security-headers
This Laravel package stamps a configurable set of baseline security headers (X-Content-Type-Options, X-Frame-Options, Referrer-Policy, Permissions-Policy, Content-Security-Policy, Cross-Origin-Opener-Policy, X-Permitted-Cross-Domain-Policies and HSTS) onto your HTTP responses via a single middleware. Every header value and the full CSP directive map are driven by config, so you can tune or disable each one without touching code.
87
laravel-monitoring
Laravel plugin of the mindtwo monitoring suite: framework-specific collectors, a scheduled push job and a signed pull endpoint on top of mindtwo/base-monitoring.
240
laravel-talkto
Reliable Laravel service-to-service messaging with signed outbox/inbox envelopes, idempotency, retries, callbacks, observability, and security audit tooling.
49
laravel-compliance
Map Laravel code evidence to security requirements and generate compliance reports.
9
laravel-auth
Headless Laravel authentication security with TOTP 2FA, passkeys, trusted devices, recovery codes, and Socialite-powered social login helpers.
0
laravel-encryption
Professional Laravel package for secure encryption with Strategy Pattern, SOLID principles, and modern PHP 8.2+ features
1
laravel-ai-monitor
Audit any Composer/Packagist package before you install it: a transparent 0-100 health score (maintenance, community, usage, stability, security), Laravel version compatibility, trustworthy alternatives, and an optional AI verdict — straight from your Artisan console.
3
unbotable-laravel
Laravel integration for Unbotable — privacy-respecting bot and spam protection
31
laravel-honeypotplus
Laravel package to detect malicious IPs, ban them via Cloudflare, and report to AbuseIPDB
90
laravel-doctor
High-signal health checks for Laravel apps. Run php artisan doctor to catch deploy blockers, security drift, and production footguns.
289
laravel-ai-security-guardian
A defensive AI-powered Laravel security guardian package.
0
laravel-secure-fields
Secure encrypted Eloquent model fields for sensitive data in Laravel applications.
8
laravel-rebel-channel-discord
Discord delivery channel for Laravel Rebel Channels: ship security/SOC alerts (anomaly cases, lockouts, high-risk events) and notifications to a Discord channel via webhook. Part of padosoft/laravel-rebel-*.
7
laravel-rebel-channel-telegram
Telegram bot delivery channel for Laravel Rebel Channels: deliver OTP codes and security alerts to a Telegram chat. Part of padosoft/laravel-rebel-*.
6
laravel-rebel-auth
Meta-package for the padosoft/laravel-rebel-* enterprise authentication control plane: passwordless email-OTP, passkey-first, risk-based step-up with PSD2/SCA, channels, sessions, recovery, anomaly detection and a web admin panel — installs and ties the whole suite together.
1
laravel-rebel-ai-guard
Anomaly detection + AI security copilot for Laravel Rebel: deterministic rules detect anomaly cases; the optional AI only explains/suggests (sanitized prompts, no PII/OTP, human review). Part of padosoft/laravel-rebel-*.
249
laravel-rebel-recovery
High-assurance account recovery for Laravel Rebel: single-use HMAC-hashed recovery (backup) codes, generated once at enrolment, with anti-ATO checks. Part of padosoft/laravel-rebel-*.
85
laravel-rebel-sessions
Device/session registry for Laravel Rebel: session/device tracking, logout-everywhere, refresh-token rotation with reuse detection, and device trust. Part of padosoft/laravel-rebel-*.
198
laravel-rebel-admin-api
Control-plane JSON API for Laravel Rebel: security metrics, audit-event explorer, OTP/step-up funnels, provider health, with permission-gated and tenant-scoped read models. Part of padosoft/laravel-rebel-*.
268
laravel-rebel-channels
Channel/provider abstraction (SMS/WhatsApp/voice) for Laravel Rebel: verification routing with fallback, cooldown, multi-dimensional rate limiting, and anti toll-fraud/IRSF defences. Part of padosoft/laravel-rebel-*.
229
laravel-rebel-admin
Web Admin Panel (Blade + AJAX + vanilla JS) for Laravel Rebel: a security operations dashboard over the Rebel Admin API. Part of padosoft/laravel-rebel-*.
96
laravel-rebel-core
Core primitives, value objects and contracts for Laravel Rebel: the enterprise authentication control plane (AAL/AMR assurance, security context, audit, Sanctum tokens, rate-limiting). The entry point of the padosoft/laravel-rebel-* ecosystem.
680
laravel-doctor
Auditor determinista para codebases Laravel: seguridad, performance, Eloquent y arquitectura.
1
laravel-secure-bridge
Signed, timestamped, replay-protected and optionally AES-256-GCM-encrypted request/response bridge between a JavaScript front-end (SPA or Blade + AJAX) and a Laravel API. Framework-agnostic JS client. Works on Laravel 5.5 through 12 and PHP 7.1+.
0
laravel-device-sessions
Device-bound login sessions for Laravel: per-device remember-me tokens, a "where am I signed in" device list, and revoke/rename — privacy-respecting and Fortify-agnostic.
14
rhino-laravel
Automatic REST API generation for Laravel Eloquent models with built-in security, validation, and advanced querying
96
laravel-scalpel
Filesystem intrusion evidence scanner for Laravel applications
1 492
laravel-log-sentinel
by osit
A Laravel admin package for monitoring application, server, database, and security logs through a Blade dashboard.
1
laravel-package-doctor
Audit a Laravel project's Composer dependencies for upgrade safety, security, and Laravel compatibility.
5
laravel-rabbit
RabbitMQ client library for Laravel with publishing, consuming, topology, TLS, confirms, failover, and security guards.
135
laravel-encrypted-route-params
Encrypt sensitive Laravel route parameters with Crypt and decrypt them before implicit binding.
12
laravel-security-scanner
Laravel-aware security rules for php-security-scanner. Detects Laravel SQL injection (DB::raw, whereRaw), mass assignment, debug/dd leaks, unsafe validators, CSRF bypass, insecure cookies, env exposure, Blade raw echo, open redirect, Http SSRF, Storage/File path traversal, file-upload validation gaps, Auth/Crypt/Artisan/Process/Config injection, view-name injection, session fixation, and Mail header injection.
1 576
laravel-alias-manager
A professional, project-aware DAM-style alias manager for Laravel, Sail, Composer, Git, frontend, quality, Docker, security, and daily workflows.
4
laravel-sdk
SOCWarden security observability SDK for Laravel — detect brute force, impossible travel, credential spray, and more from one API call.
1
laravel-superadmin
Protected super admin account for Laravel. Zero-config authorization via Gate::before, defense-in-depth Eloquent observer, optional Filament v4 plugin, vendor-only CLI commands with friction controls. Designed for vendor-deployed applications where customer admins must not accidentally delete the vendor's support account.
205
laravel-agl
Agentic Governance Layer for Laravel 13
47
laravel-shield
A Laravel package for website health monitoring, IP threat detection, traffic analysis and auto-banning.
0
laravel-security-monitor
Laravel file integrity and suspicious upload monitor.
32
health-laravel
Kanbino Health endpoint for Laravel — emits stack profile + extensible probes for uptime + security advisory matching
722
laravel-anti-xss
Laravel wrapper for voku/anti-xss — Facade, service, validation rule, middleware and Blade directive to sanitize XSS in strings.
416
laravel-vite-apple-container
Build Laravel Vite assets inside a hardened Apple Container.
3
laravel-security
Modern security headers for Laravel — turn-key. Strict CSP with per-request nonces and 'strict-dynamic', Subresource Integrity with smart noise filtering, HSTS, Permissions-Policy. An interactive setup wizard asks which third parties you use (GTM, HubSpot, Stripe, reCAPTCHA, and a dozen more) and wires the right directives automatically. First-party violation reporting endpoints, Filament + Livewire + Vite friendly, Vapor-ready. Laravel 11, 12, 13 on PHP 8.2+.
67
laravel-security-agent
AI-powered security agent for Laravel — monitors logs and responds to threats via Claude.
0
pentest-scanner
Penetration testing & OWASP vulnerability scanner for Laravel projects
3
laravel-npm-health-checks
A Laravel Health check for npm audit advisories.
1 048