Laravel Tutorials

Laravel Strict Validation for Type Checking

Published
Laravel Strict Validation for Type Checking image

PHP's type juggling allows "1" to pass as boolean and numeric strings to pass as integers. Laravel's strict validation parameters enforce exact type matching for numeric, boolean, and integer rules.

Without strict mode, these validations accept type‑coerced values:

Validator::make(['count' => '42'], ['count' => 'numeric']); // passes
Validator::make(['active' => '1'], ['active' => 'boolean']); // passes

Both pass validation despite being strings rather than proper types.

Strict parameters require exact type matches:

use Illuminate\Support\Facades\Validator;
 
Validator::make(['count' => '42'], ['count' => 'numeric:strict']); // fails
Validator::make(['count' => 42], ['count' => 'numeric:strict']); // passes
 
Validator::make(['active' => '1'], ['active' => 'boolean:strict']); // fails
Validator::make(['active' => true], ['active' => 'boolean:strict']); // passes
 
Validator::make(['age' => '25'], ['age' => 'integer:strict']); // fails
Validator::make(['age' => 25], ['age' => 'integer:strict']); // passes

API endpoints handling configuration data benefit from strict type validation:

public function updateSettings(Request $request)
{
$validator = Validator::make($request->all(), [
'notifications_enabled' => 'boolean:strict',
'items_per_page' => 'integer:strict',
'refresh_rate' => 'numeric:strict',
]);
 
if ($validator->fails()) {
return response()->json(['errors' => $validator->errors()], 422);
}
 
$settings = $validator->validated();
 
if ($settings['notifications_enabled'] === true) {
$this->enableNotifications();
}
}

Without strict validation, JSON payloads with string values like {"notifications_enabled": "1", "items_per_page": "25"} pass validation but cause type issues in application logic.

Type validation behavior differs between modes:

Validator::make(['foo' => '1'], ['foo' => 'numeric:strict']); // fails
Validator::make(['foo' => 1], ['foo' => 'numeric:strict']); // passes
Validator::make(['foo' => 1.5], ['foo' => 'numeric:strict']); // passes
 
Validator::make(['active' => true], ['active' => 'boolean:strict']); // passes
Validator::make(['active' => false], ['active' => 'boolean:strict']); // passes
Validator::make(['active' => 1], ['active' => 'boolean:strict']); // fails
 
Validator::make(['count' => 42], ['count' => 'integer:strict']); // passes
Validator::make(['count' => '42'], ['count' => 'integer:strict']); // fails

Strict mode validation prevents type coercion issues by requiring values match the expected PHP type exactly, not just be castable to that type.

Harris Raftopoulos photo

Senior Software Engineer • Staff & Educator @ Laravel News • Co-organizer @ Laravel Greece Meetup

Sponsored

masteringlaravel logo
Laravel Code Review

Get expert guidance in a few days with a Laravel code review

Visit Laravel Code Review

The latest

View all →
Laravel Auditor Audits Your App With Your Own AI Agent image

Laravel Auditor Audits Your App With Your Own AI Agent

Read article
A simple form builder that stays out of your way image

A simple form builder that stays out of your way

Read article
Laravel AI: Trace Agent Runs With Lifecycle Events image

Laravel AI: Trace Agent Runs With Lifecycle Events

Read article
Laravel AI: Get Raw HTTP Responses and Rate Limits image

Laravel AI: Get Raw HTTP Responses and Rate Limits

Read article
Agent Run Observability in Laravel AI SDK 0.11 image

Agent Run Observability in Laravel AI SDK 0.11

Read article
Debounced Queued Event Listeners in Laravel image

Debounced Queued Event Listeners in Laravel

Read article