Production Guidlines
Written by Farjanul Nayem
Last updated
For production, you must update the .env file with the following configuration.
APP_ENV=production
APP_DEBUG=false
FILESYSTEM_DISK=publicFor issue on the file access:
php artisan storage:linkIf you need to clear the cache:
php artisan config:cache
php artisan route:cache
php artisan view:cacheSecurity Checklist
Serve your store over HTTPS — required for safe checkout and payment gateway callbacks.
Change or remove every demo account before accepting real orders (see First Login).
Set a strong, unique password for your Super Admin account.
Keep
APP_DEBUG=falsein your.envonce the store is live — debug mode exposes stack traces and configuration values to visitors.Restrict file permissions on
.envandstorage/to what your web server actually needs (typically775), not world-writable.Keep PHP and your database server patched with current security updates.