php-file-upload-audit

Community

Audit PHP file uploads for safer apps.

Author0xShe
Version1.0.0
Installs0

System Documentation

What problem does it solve?

PHP Web applications often suffer from undetected file upload vulnerabilities that enable arbitrary uploads, path traversal, or remote code execution in web-accessible directories. This skill identifies upload entry points, save paths, filename handling, and validation logic, and outputs risk-based levels, PoC guidance, and remediation suggestions (no omissions).

Core Features & Use Cases

  • Identify upload entry points, save directories, and filename handling to reveal insecure patterns.
  • Detect arbitrary file upload, path traversal, and executable upload risks with clear evidence and actionable fixes.
  • Produce a structured report with risk levels, PoC guidance, and remediation recommendations to speed up fixes.

Quick Start

Run this skill on a PHP project to audit all file upload flows and generate a vulnerability report.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: php-file-upload-audit
Download link: https://github.com/0xShe/PHP-Code-Audit-Skill/archive/main.zip#php-file-upload-audit

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.