PhpSecInfo provides an equivalent to the phpinfo() function that reports security information about the PHP environment, and offers suggestions for improvement. It is not a replacement for secure development techniques, and does not do any kind of code or app auditing, but can be a useful tool in a multilayered security approach.
PhpSecInfo is released under the “New BSD” license. View the LICENSE file for more details


Development of PhpSecInfo is being sponsored in part by CERIAS at Purdue University.




