Initial commit: PHP/Laravel Security Linter v1.0.0
A static security analysis tool for PHP and Laravel applications with recursive taint analysis capabilities. Features: - Comprehensive vulnerability detection (XSS, SQL Injection, Command Injection, Path Traversal, CSRF, Authentication issues) - Recursive taint analysis across function calls - Blade template analysis with context-aware XSS detection - Smart escape detection and escape bypass detection - Syntax highlighting in terminal output - Multi-language support (Japanese/English) - Docker support for easy deployment - Multiple output formats (text, JSON, HTML, SARIF, Markdown) - CI/CD integration ready (GitHub Actions, GitLab CI) Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
This commit is contained in:
23
.security-lint.json.example
Normal file
23
.security-lint.json.example
Normal file
@@ -0,0 +1,23 @@
|
||||
{
|
||||
"$schema": "https://raw.githubusercontent.com/security-linter/php-laravel/main/schema/config.json",
|
||||
"$comment": "Example configuration file for PHP/Laravel Security Linter",
|
||||
|
||||
"severity": "low",
|
||||
"format": "text",
|
||||
"lang": "ja",
|
||||
"recursiveDepth": 10,
|
||||
|
||||
"exclude": [
|
||||
"custom/legacy/*",
|
||||
"app/Console/Commands/*",
|
||||
"resources/views/emails/*"
|
||||
],
|
||||
|
||||
"include": [
|
||||
"vendor/my-company/*"
|
||||
],
|
||||
|
||||
"includeVendor": false,
|
||||
"includeTests": false,
|
||||
"noDefaultExcludes": false
|
||||
}
|
||||
Reference in New Issue
Block a user