psalm/plugin-laravel
Psalm plugin for Laravel that adds deep framework-aware static analysis plus taint-based security scanning. Detects SQL injection, XSS, SSRF, shell injection, file traversal, and open redirects by tracking user input flows across functions and services.
The plugin emits custom issues that Psalm does not have built-in. Each issue page explains what it detects, why it matters, and how to fix it.
How can I help you explore Laravel packages today?