Service

Laravel Code Audit

Two days of a Laravel developer reading your app, then a written report on what to fix first. The fee is credited if you book a fixed-price project with us within 30 days.

Fixed price
€900
Report in
3 working days
Credited
On a follow-on

Excl. VAT · about $1,050 · Terms

Book an audit Starts on any Monday, after a 30-minute call.

What you get

A clear picture of where your Laravel app stands, from a team that writes and maintains Laravel and Filament packages of its own. You get a report you can act on: what's risky, what's slow, what's out of date, and what to do first.

It's a good fit before a launch, before raising money or selling the business, when you take over an app from another team, or when the app has grown and nobody is sure what's inside any more.

What we look at

Security. Authentication and password resets, authorization with policies and gates, validation and mass assignment, file uploads, secrets in the repository or logs, and your Composer dependencies checked against known vulnerabilities with composer audit.

Performance. N+1 queries, missing indexes, work that could move to a queue, caching, and the slow pages and jobs you point us to or we find on staging.

Upgrades. Your Laravel, PHP and Filament versions, how far they are from the current releases, and what an upgrade would involve, package by package.

Code health. How the app is structured, how much of it is tested, how it's deployed, and how backups, queues, scheduled tasks and logs are set up, as far as the code and your answers on the call show.

How it runs

Before day one: a 30-minute call about your app and what worries you, then repository access.

Days 1–2: the review. We read the code, run automated checks such as composer audit, and confirm the findings that matter most by hand.

Day 3: the report. You get the written report, and we walk you and your team through it in a 60-minute call.

After the audit

Some findings will be small fixes your team can make the same week. For the bigger ones, we can quote a fixed price, whether that's an upgrade or a new feature like an AI assistant in your Filament panel.

What you get

  • A written report, every finding ranked by risk
  • Security: auth, policies, validation, secrets
  • Dependencies checked against known vulnerabilities
  • Performance: queries, indexes, queues and caching
  • Upgrade path for Laravel, PHP and Filament
  • Code health: structure, tests and deployment
  • A short list of what to fix first, with effort estimates
  • A 60-minute call to walk through the report

Not in this package

The audit tells you what to fix. If you want our help with the fixing or with deeper testing, we quote it after the walkthrough.

  • Fixing the issues we find
  • Penetration testing of your live servers
  • Load testing
  • Compliance certification (SOC 2, ISO 27001)

How we work together

  • Payment: in full when you book. If you book a fixed-price project with us within 30 days of the report, the full €900 comes off its price.
  • Prices exclude VAT and are invoiced in EUR by XLITE TOWER SRL.
  • Days in the timeline are working days, Monday to Friday.
  • Day one starts once we have what we asked for before it, such as the brief and access to your accounts. Days spent waiting on answers move the delivery date by the same number of days.
  • Changes to the agreed scope are welcome. We quote them separately, at a fixed price.

Technology stack

Laravel Filament Livewire PHP MySQL PostgreSQL Redis Composer

Frequently asked questions

Read access to the repository and a 30-minute call about how the app is used and what worries you. Access to a staging environment helps but isn't required. We don't need production data.
A document you can share with your team or investors: a one-page summary, then each finding with where it is in the code, why it matters, how to fix it and roughly how long that takes. Findings are ranked so you know where to start.
A typical Laravel or Filament app, focused on the areas you care about most. If yours is very large, or several apps share one codebase, we'll say so on the call and quote a longer audit before you pay anything.
No review can promise that. It finds the issues that matter most in the time given and ranks them, so your biggest risks go down first.
Yes, if you'd like us to. After the walkthrough we can quote the fixes, and the €900 counts toward that project if you book it within 30 days. Your own team can also work straight from the report, which is yours either way.
Yes, happily, before we get repository access.

Get a second pair of eyes on your app

Tell us what the app does and which parts of it you'd most like checked. You'll hear back within 48 hours.

Book an audit