[Catalyst] untainting utf8 text for db

Daniel McBrearty danielmcbrearty at gmail.com
Thu Jun 5 19:05:35 BST 2008


database contains text fields which can be in any language and contain
any text and punctuation

1. I am getting params back via a web form to create new records. What
do I do to validate input (apart from length check)?

2. I want to take a param and do a "like(%$param%)" search returning
matching records. How do I protect this?

thanks! I really ought to know this by now but for some reason it is
never quite clear to me.

-- 
Daniel McBrearty
email : danielmcbrearty at gmail.com
http://www.engoi.com
http://danmcb.vox.com
http://danmcb.blogger.com
find me on linkedin and facebook
BTW : 0873928131



More information about the Catalyst mailing list