Welcome Guest, Not a member yet? Register   Sign In
Active Records
#5

[eluser]stef25[/eluser]
You always have to sanitize user input - anyone could type anything in to the URL and have that value fed in to your query. Even though CI's default settings don't allow funny characters (quotes etc) in the URL's and Active Record queries automatically escape values, it's always good to realize this.

I think you should be ok, just make sure you understand this Smile


Messages In This Thread
Active Records - by El Forum - 03-04-2010, 08:13 PM
Active Records - by El Forum - 03-05-2010, 02:42 AM
Active Records - by El Forum - 03-05-2010, 02:56 AM
Active Records - by El Forum - 03-05-2010, 07:45 AM
Active Records - by El Forum - 03-05-2010, 09:07 AM
Active Records - by El Forum - 03-05-2010, 01:13 PM



Theme © iAndrew 2016 - Forum software by © MyBB