Files
dillard 31290517ba Add a lightweight schema migration runner, fix missing PHPMailer in prod image
docker-entrypoint-initdb.d only applies db/init.sql, and only on a brand new
volume - existing installs never got db/migrations/*.sql applied unless
someone ran them by hand. This bit twice this session (qr-oss's own init.sql
was missing a migration, and qr-vip's live DB was two migrations behind after
a code deploy). scripts/migrate.php now runs automatically on every container
start via a new entrypoint wrapper, applying any not-yet-recorded migration -
safe to run repeatedly since every migration file already checks
information_schema before altering.

Also caught in the process: Dockerfile.fpm (the production image) never
installed phpmailer/phpmailer, unlike the dev Dockerfile - meaning
self-registration's password email has been silently fatal-erroring in
production since the nginx+php-fpm switch.
2026-07-15 01:19:47 +02:00

3.5 KiB

QRForge

Self-hosted, open-source QR code generator.

QRForge creates and manages static and dynamic QR codes from a clean, responsive control panel. It's a security-hardened, actively maintained fork of the original PHP Dynamic Qr code project by Giandonato Inverso, built on AdminLTE.

  • Try it free: qr.ensembia.com - fully functional OSS test instance. Register your own free account (email + a self-hosted CAPTCHA, no third-party service) - no shared demo login needed.
  • Commercial VIP edition: the ability to give sub-users the ability to create QR codes as well, from their own (sub)account. If you have a bigger organisation, having more users being able to create new QR codes delegates your workload. To fund our open-source project, a small fee (€49/year subscription per organisation ("tenant")) is requested for this. www.qrforge.eu.
  • Self-host it yourself: this repository, MIT-licensed.

Features

  • Dynamic QR codes with a database-backed URL shortener
    • Create, edit, delete, enable/disable the redirect
    • Download any time, bulk download/delete
    • Batch-generate from a CSV file
  • 16 static QR code types: Text, Email, Phone, SMS, WhatsApp, Skype, Location, vCard, Event/calendar, Bookmark, WiFi (incl. WPA3), PayPal, Bitcoin, 2FA, App Link (Android intent / universal links), Bluetooth
  • QR code styling: 6 export formats, foreground/background color, 4 precision levels, 10 sizes, optional label text below the code (custom font + size), optional icon shown above the code, save/load your own style presets
  • Address search (OpenStreetMap Nominatim) for Location QR codes
  • Built-in QR scanner (camera or image upload, decodes entirely client-side)
  • Installable as a PWA
  • Role-based access: super (full access + user management), admin (scoped to their own codes and sub-users), user (read-only, with optional view toggles set by an admin; per-account create rights are a VIP-edition feature, not available in this OSS version)
  • Dashboard with QR/scan statistics and a 7-day activity chart
  • CSRF protection, login rate limiting, session hardening, audit log
  • Docker Compose setup, both a dev image and a production Nginx + PHP-FPM image

What is included

  • PHP 8.4 application source
  • Database schema + migrations (applied automatically on every container start, so git pull + restart is enough to bring an existing install up to date)
  • Docker Compose files (dev and production)
  • CSS/JS assets

Setup with Docker Compose

  1. Clone this repository.
  2. Copy .env.example to .env and set a real DATABASE_PASSWORD / MYSQL_ROOT_PASSWORD.
  3. Start the stack:
    docker compose up -d --build
    
  4. Open http://localhost and log in with superadmin / superadmin. You'll be required to set a new password on first login.

For a production deployment behind a reverse proxy, use docker-compose.prod.yml (Nginx + PHP-FPM) instead of the dev stack.

Credits

License

MIT - see LICENSE.