php-nosql-audit

Community

Detect PHP NoSQL injection risks in code.

Author0xShe
Version1.0.0
Installs0

System Documentation

What problem does it solve?

PHP NoSQL injection auditing tooling for PHP applications to identify how user input flows into NoSQL queries and detect operator injections (e.g., $gt, $ne, $where).

Core Features & Use Cases

  • Trace user input through PHP codepaths into MongoDB query builders and identify unsafe construction patterns.
  • Provide PoC-style examples and remediation guidance to fix query construction, input validation, and whitelisting.
  • Ideal for PHP projects using MongoDB/DocumentDB needing evidence-backed vulnerability reports and structured outputs.

Quick Start

Run the nosql-audit scanner against a PHP project to identify NoSQL injection risks.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: php-nosql-audit
Download link: https://github.com/0xShe/PHP-Code-Audit-Skill/archive/main.zip#php-nosql-audit

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.