laravel-sessions-middleware
1
总安装量
1
周安装量
#44597
全站排名
安装命令
npx skills add https://smithery.ai
Agent 安装分布
antigravity
1
Skill 文档
Laravel Sessions & Middleware
Priority: P1 (HIGH)
Structure
app/Http/
âââ Middleware/ # Custom logic layers
âââ Kernel.php # Global/Group registration
Implementation Guidelines
- Session Driver: Use
redisormemcachedfor production/high-density environments. - Middleware Chain: Keep logic granular; one middleware per responsibility.
- Global Middleware: Apply via
bootstrap/app.phponly for true globals (logging, headers). - Security Headers: Standardize headers (HSTS, CSP, X-Frame) via dedicated middleware.
- CSRF Protection: Ensure
VerifyCsrfTokenis active for all web routes. - Session Lifecycle: Use
$request->session()->regenerate()after login/privilege changes.
Anti-Patterns
- File Streams: No file session driver: Avoid in scaled apps due to I/O locks.
- Env direct: No env(‘SESSION_…’): Always use
config('session...'). - Heavy Bloat: No heavy logic in Middleware: Offload to Services if >10 lines.
- Trusting Client: No sensitive data in Cookies: Store in server sessions only.