incubator-empire-db-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From McKinley <mckinley1...@gmail.com>
Subject Re: Type checks in DBCommand in order to avoid SQL Injection
Date Fri, 29 Jan 2010 18:24:29 GMT
I use the Play! web framework and that has HTTP parameter type
checking. It will not be a problem for me personally, but I am
concerned for others.

I can see your point that this is really a matter that can be fixed
easily at the web or UI toolkit level.

Thanks,

McKinley

On Thu, Jan 28, 2010 at 8:40 PM, Rainer Döbele <doebele@esteam.de> wrote:
> Hi McKinley,
>
> to be honest: I don't think what you want makes sense and it's not what we're trying
to achieve.
> Empire-db should be lightweight plus easy and straightforward to use.
> Adding various options adds complexity and is not intuitive.
> And please understand that we cannot simply add features if someone has one very specific
problem.

Mime
View raw message