Become a sponsor to Alies Lapatsin
I maintain https://github.com/psalm/psalm-plugin-laravel — the only free tool that combines deep Laravel type analysis with dataflow-based vulnerability detection.
It catches SQL injection, XSS, SSRF, shell injection, file traversal, and open redirects by tracking user input from $request->input() through your entire codebase to dangerous sinks like DB::statement() — even across function boundaries. No commercial tool does this with Laravel awareness at $0/year.
What your sponsorship supports
- Expanding taint coverage — every new stub protects thousands of Laravel apps
- Keeping up with Laravel releases — Laravel 12, 13, and beyond
- Psalm 7 compatibility fixes and improvements
- Staying free forever — MIT licensed, no "Pro tier" gatekeeping
Featured work
-
psalm/psalm-plugin-laravel
A Psalm plugin for Laravel
PHP 327 -
vimeo/psalm
A PHP static analysis tool for finding errors and security vulnerabilities in PHP applications
PHP 5,821 -
laravel/framework
Laravel is a web application framework with expressive, elegant syntax.
PHP 34,609 -
spatie/calendar-links
Generate add to calendar links for Google, iCal and other calendar systems
PHP 1,000