Laravel Tutorials

Laravel Strict Validation for Type Checking

Published
Laravel Strict Validation for Type Checking image

PHP's type juggling allows "1" to pass as boolean and numeric strings to pass as integers. Laravel's strict validation parameters enforce exact type matching for numeric, boolean, and integer rules.

Without strict mode, these validations accept type‑coerced values:

Validator::make(['count' => '42'], ['count' => 'numeric']); // passes
Validator::make(['active' => '1'], ['active' => 'boolean']); // passes

Both pass validation despite being strings rather than proper types.

Strict parameters require exact type matches:

use Illuminate\Support\Facades\Validator;
 
Validator::make(['count' => '42'], ['count' => 'numeric:strict']); // fails
Validator::make(['count' => 42], ['count' => 'numeric:strict']); // passes
 
Validator::make(['active' => '1'], ['active' => 'boolean:strict']); // fails
Validator::make(['active' => true], ['active' => 'boolean:strict']); // passes
 
Validator::make(['age' => '25'], ['age' => 'integer:strict']); // fails
Validator::make(['age' => 25], ['age' => 'integer:strict']); // passes

API endpoints handling configuration data benefit from strict type validation:

public function updateSettings(Request $request)
{
$validator = Validator::make($request->all(), [
'notifications_enabled' => 'boolean:strict',
'items_per_page' => 'integer:strict',
'refresh_rate' => 'numeric:strict',
]);
 
if ($validator->fails()) {
return response()->json(['errors' => $validator->errors()], 422);
}
 
$settings = $validator->validated();
 
if ($settings['notifications_enabled'] === true) {
$this->enableNotifications();
}
}

Without strict validation, JSON payloads with string values like {"notifications_enabled": "1", "items_per_page": "25"} pass validation but cause type issues in application logic.

Type validation behavior differs between modes:

Validator::make(['foo' => '1'], ['foo' => 'numeric:strict']); // fails
Validator::make(['foo' => 1], ['foo' => 'numeric:strict']); // passes
Validator::make(['foo' => 1.5], ['foo' => 'numeric:strict']); // passes
 
Validator::make(['active' => true], ['active' => 'boolean:strict']); // passes
Validator::make(['active' => false], ['active' => 'boolean:strict']); // passes
Validator::make(['active' => 1], ['active' => 'boolean:strict']); // fails
 
Validator::make(['count' => 42], ['count' => 'integer:strict']); // passes
Validator::make(['count' => '42'], ['count' => 'integer:strict']); // fails

Strict mode validation prevents type coercion issues by requiring values match the expected PHP type exactly, not just be castable to that type.

Harris Raftopoulos photo

Senior Software Engineer • Staff & Educator @ Laravel News • Co-organizer @ Laravel Greece Meetup

Sponsored

masteringlaravel logo
Laravel Code Review

Get expert guidance in a few days with a Laravel code review

Visit Laravel Code Review

The latest

View all →
Securing Filament plugins with Plumb image

Securing Filament plugins with Plumb

Read article
LayaPHP: Self-Hosted Text Classification for PHP and Laravel image

LayaPHP: Self-Hosted Text Classification for PHP and Laravel

Read article
WhenMounted and BigInt Props in Inertia.js v3.8 image

WhenMounted and BigInt Props in Inertia.js v3.8

Read article
Postcodes for Laravel: GB Postcode Lookup and Geography Data image

Postcodes for Laravel: GB Postcode Lookup and Geography Data

Read article
Laravel 14 Adds a defaults() Method to Eloquent Models image

Laravel 14 Adds a defaults() Method to Eloquent Models

Read article
Laravel AI SDK and Laravel MCP Security Fixes: Update Now image

Laravel AI SDK and Laravel MCP Security Fixes: Update Now

Read article