Padosoft Laravel Security Review

Use this skill before committing or reviewing a change to a Laravel application that touches a model's fillable or guarded, a Blade template printing unescaped, raw SQL, a file upload, a route exempted from CSRF, a shell call, a redirect built from input, an id coming from the request, an audit trail, or an AI/LLM call — and whenever the user asks for a security review or an audit, or says an endpoint returns somebody else's data or an error shows SQL to the user. It runs ten checks with ready pre-screens plus ownership, audit integrity and error-leak rules. Do not use it for API-side (padosoft-api-security-review) or mobile (padosoft-mobile-security-review) work, nor for infrastructure hardening.

padosoft Updated

File contents

padosoft/skills/tree/main/skills/padosoft-laravel-security-review commit 94bf00bba5

Frequently asked questions

npx skillmds@latest add padosoft/padosoft-laravel-security-review