Shared hosting or VPS?
| Shared hosting (cPanel) | VPS | |
|---|---|---|
| Typical price | A few dollars a month | From about $5–10 a month, plus your time |
| Setup | Control panel, point and click | You install the web server, PHP and database |
| Security updates | Done by the host | Done by you |
| Good for | One business app, a few hundred users | Heavy traffic, many apps, special software |
Rule of thumb: if you are one business running one or two apps, start with good shared hosting. Move to a VPS only when you have a reason — and someone to look after it.
The checklist
1. The right PHP version
Check the app's requirements (for example "PHP 8.3 or newer") and make sure the host lets you choose it. In cPanel this is MultiPHP Manager. Avoid hosts stuck on old versions.
2. PHP extensions
Laravel apps typically need pdo, mbstring, openssl, ctype, tokenizer, dom and fileinfo. On most hosts these are on by default; a good installer checks them for you on its first screen.
3. A database
MySQL or MariaDB comes with almost every plan. Some apps can also use SQLite, which needs no database setup at all — handy for small teams.
4. Control over the document root
Laravel apps serve only their public folder; the rest (including your settings file) must stay outside the web root. Make sure you can point your domain at that folder — in cPanel: Domains → Document Root. Never move the other folders into public_html to "make it work".
5. Cron jobs
Many apps run scheduled tasks (sending emails or webhooks, cleaning up). You need a cron job that runs every minute. Almost every cPanel host allows it; check the minimum interval.
6. Free SSL
Your site should open with https://. Look for free AutoSSL or Let's Encrypt — never pay extra for a basic certificate.
7. Backups you can restore
Your business data lives in the database. Choose a host with automatic daily backups, and learn how to download one. Keep your own copy of the database and the app's .env file somewhere safe.
8. Special devices or connections
Some apps receive data from devices — for example attendance machines that push punches over plain HTTP on port 80. Almost every host allows this, but if the app needs it, ask the host before you buy.
What to avoid
- "Unlimited" plans that hide strict limits on processes or memory.
- Hosts that do not let you choose your PHP version.
- Website builders (Wix, Squarespace style) — they cannot run PHP apps at all.
- Free hosting — no cron, no backups, and often no custom domain.