Skip to content

NaluzPHP Documentation

A modern, secure PHP framework for monoliths and REST APIs. Familiar to Laravel developers, small enough to read, strict by default.

Secure by default

Bound SQL parameters, validated identifiers, auto-escaping templates, CSRF protection, encrypted queue payloads and an SSRF-guarded HTTP client, all switched on out of the box.

Batteries included

Router, ORM, migrations, validation, sessions, auth, queues, mail, scheduler, storage, caching, logging, GraphQL and a CLI.

Built on standards

PSR-1, 3, 4, 6, 7, 11, 12, 13, 14, 15, 16, 17, 18 and 20. Any PSR-15 middleware or PSR-3 logger drops in.

Modern PHP

PHP 8.2+, strict types everywhere, a small codebase you can audit, tested on PHP 8.2 to 8.5.