Re: PHP class files without <?php at the top

From: Date: Sat, 07 Apr 2012 20:07:07 +0000
Subject: Re: PHP class files without <?php at the top
References: 1 2 3 4 5 6 7 8 9  Groups: php.internals 
Request: Send a blank email to [email protected] to get a copy of this message
On 07/04/12 19:29, Rasmus Lerdorf wrote:
> On 04/07/2012 10:23 AM, Ángel González wrote:
>
>> And I like the idea of providing a function for auto escaping <?= echos.
> Turn on your default input filter and all data that comes from the user
> will automatically be escaped.
>
> -Rasmus
I'm not interested in filtering *input* but *output*. I'm of the opinion
that variables should hold their real values up to the last step before
being used in the context which needs escaping (hmtl,, sql...).


Thread (70 messages)

« previous php.internals (#59441) next »