定制 artisanpack-ui/security 二次开发

按需修改功能、优化性能、对接业务系统,提供一站式技术支持

邮箱:yvsm@zunyunkeji.com | QQ:316430983 | 微信:yvsm316

artisanpack-ui/security

最新稳定版本:1.0.3

Composer 安装命令:

composer require artisanpack-ui/security

包简介

Provides escaping and sanitation functions to provide security for Digital Shopfront CMS.

README 文档

README

Latest Version on Packagist Total Downloads

A comprehensive security package for Laravel applications, specifically designed for the Digital Shopfront CMS. This package provides essential data sanitization and output escaping functions to protect against common web vulnerabilities like XSS attacks, SQL injection, and data corruption.

Features

  • Comprehensive Sanitization: Clean user input with specialized functions for emails, URLs, text, dates, and more
  • Context-Aware Escaping: Safely escape output for HTML, attributes, URLs, JavaScript, and CSS contexts
  • HTML Filtering: WordPress-style HTML filtering with kses() function
  • Laravel Integration: Facade and global helper functions for easy usage
  • Battle-Tested: Built on proven libraries like Laminas Escaper
  • Full Test Coverage: Extensively tested for reliability

Quick Start

Installation

Install the package via Composer:

composer require ArtisanPackUI/security

Basic Usage

Use the Security facade:

use ArtisanPackUI\Security\Facades\Security;

// Sanitize input
$cleanEmail = Security::sanitizeEmail($userEmail);

// Escape output
echo Security::escHtml($userContent);

Or use global helper functions:

// Sanitize input
$cleanEmail = sanitizeEmail($userEmail);

// Escape output
echo escHtml($userContent);

Documentation

📚 Complete Documentation

Available Functions

Sanitization Functions

  • sanitizeEmail() - Clean email addresses
  • sanitizeUrl() - Sanitize URLs
  • sanitizeText() - Remove HTML and clean text
  • sanitizeInt() - Convert to safe integers
  • sanitizeArray() - Recursively clean arrays
  • And more...

Escaping Functions

  • escHtml() - HTML context escaping
  • escAttr() - HTML attribute escaping
  • escUrl() - URL escaping
  • escJs() - JavaScript context escaping
  • escCss() - CSS context escaping

HTML Filtering

  • kses() - WordPress-style HTML filtering

Security

If you discover any security vulnerabilities, please follow our security reporting guidelines. Do not open public issues for security vulnerabilities.

Contributing

We welcome contributions! Please see our Contributing Guide for details on how to contribute to this project.

About Digital Shopfront CMS

This package is part of the ArtisanPack UI ecosystem for Digital Shopfront CMS. Learn more about the full CMS in our main documentation.

License

This project is open-sourced software licensed under the MIT license.

统计信息

  • 总下载量: 498
  • 月度下载量: 0
  • 日度下载量: 0
  • 收藏数: 0
  • 点击次数: 1
  • 依赖项目数: 4
  • 推荐数: 0

GitHub 信息

  • Stars: 0
  • Watchers: 0
  • Forks: 0
  • 开发语言: PHP

其他信息

  • 授权协议: MIT
  • 更新时间: 2025-05-14