PHP 8.5.10 Released!

is_tainted

(PECL taint >=0.1.0)

is_taintedCheck whether a string is tainted

Description

function is_tainted(string $string): bool

Checks whether the given value carries the taint mark. Only strings can ever be tainted; any other type returns false.

Parameters

string

The value to check.

Return Values

Returns true if the value is a tainted string, false otherwise. Always returns false when taint.enable is off.

Examples

Example #1 is_tainted() example

<?php
$name = $_GET['name'] ?? 'world';
var_dump(is_tainted($name));
?>

The above example will output something similar to:

bool(true)

See Also

  • taint() - Mark strings as tainted
  • untaint() - Remove the taint mark from strings

add a note

User Contributed Notes

There are no user contributed notes for this page.
To Top