--- Robert Cummings <[EMAIL PROTECTED]> wrote:
> I did mention database as one of the solutions. The question wasn't
> about security so I didn't elaborate.

I have done this same thing in the past, because I tend to answer the
question asked and nothing more.

However, recently I have begun trying to not give suggestions or examples
that will create a security vulnerability, as well as warning about them
in the examples provided.

This is based on my belief that people don't always know what questions
they should be asking, combined with my belief that they likely use the
examples or suggestions we provide exactly as stated. As such, I think it
is our responsibility to educate.

I'm not sure if anyone agrees with me, but this is my philosophy.

Chris

=====
My Blog
     http://shiflett.org/
HTTP Developer's Handbook
     http://httphandbook.org/
RAMP Training Courses
     http://www.nyphp.org/ramp

-- 
PHP General Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php

Reply via email to