In my last post, Top 10 T-SQL Code Smells, I caught some flack got some feedback for including one (#3) about the use of Stored Procedures for Select statements. Several people expressed objections over the risk of SQL Injection, and how Stored Procs would prevent it, but some of the correspondence I've gotten made me worry that, perhaps, some of those folks might have a false sense of security around this issue. Disclaimer: the whole Stored Procs or not Stored Procs debate has already happened; I am no...
|
1
kudos |
|
||||
No comments yet, be the first one to post comment.