1
0
mirror of https://github.com/danog/psalm.git synced 2024-12-05 13:10:49 +01:00
psalm/docs/running_psalm/issues/ForbiddenCode.md
2023-01-13 11:21:34 +01:00

24 lines
446 B
Markdown

# ForbiddenCode
Emitted when Psalm encounters a var_dump, exec or similar expression that may make your code more vulnerable
```php
<?php
var_dump("bah");
```
This functions list can be extended by configuring `forbiddenFunctions` in `psalm.xml`
```xml
<?xml version="1.0"?>
<psalm>
<!-- other configs -->
<forbiddenFunctions>
<function name="dd"/>
<function name="var_dump"/>
</forbiddenFunctions>
</psalm>
```