Please take our Survey
logo       

Choosing A Webhost:
A web hosting service is a type of Internet hosting service that allows individuals and organizations to provide their own website accessible via the World Wide Web. Web hosts are companies that provide space on a server they own for use by their clients as well as providing Internet connectivity, typically in a data center. Web hosts can also provide data center space and connectivity to the Internet for servers they do not own to be located in their data center, called colocation. more...

Re: Name for "EscapeCage": msg#00044

lang.perl.modules.authors

Subject: Re: Name for "EscapeCage"

Definitely belongs under String. But I don't like Escape in the name,
how about String::Cage?

On 6/26/07, Mark P Sullivan <msulliva@xxxxxxxx> wrote:
I have written a (proof of concept of a) module which I think should be
shared through CPAN. Since I'm giving a lightning talk on it tomorrow
at YAPC::NA, now seems like an ideal time to actually share it.

Descriptive short blurb:

The String::EscapeCage module puts dangerous strings in a cage.
It eases escaping to various encodings, helps developers track
what data are dangerous, and prevents injection attacks.

Descriptive moderately-sized blurb:

After the "cage" function cages a string, the "uncage" method
releases it and "escapehtml", "escapecstring", etc methods safely
escape (transform) it. If an application cages all user-supplied
strings, then a run-time exception will prevent application code
from accidentally allowing an SQL, shell, cross-site scripting,
cat -v, etc injection attack. EscapeCage's paranoia can be
adjusted for development. The concept is similar to "tainted"
data, but is implemented by "overload"ing the '""' stringify
method on blessed scalar references.


I think the most appropriate name is "String::EscapeCage". Any
suggestions? "String::" is more appropriate than "Text::", right?
Once I have the blessing of the elders, I'll upload it to PAUSE. (My
first module for CPAN, my first YAPC, and my first lightning talk;
please be gentle.)


--mark



--
Help bring back the San Jose Earthquakes - http://www.soccersiliconvalley.com/



<Prev in Thread] Current Thread [Next in Thread>
Google Custom Search

Recently Viewed:
qnx.openqnx.dev...    gcc.libstdc++.c...    solaris.opensol...    information-ret...    misc.misterhous...    web.catalyst.ge...    apache.webservi...    redhat.release....    hardware.lirc/2...    kernel.autofs/2...    technology.sust...    linux.vdr/2003-...    editors.lyx.gen...    org.user-groups...    netbsd.devel.pk...    xdg.devel/2004-...    version-control...    jakarta.slide.d...    debian.packages...    creativecommons...    ports.ppc.embed...    bug-tracking.bu...   
Home | blog view | USPTO Patent Archive | advertise | OSDir is an inevitable website. super tiny logo

Free Magazines

Cisco News
Receive a free quarterly e-newsletter with exclusive articles on how Cisco IT uses its own products and solutions to enable the business.
subscribe

Systems Management News, the newspaper for IT systems administration and data center managers! Each issue of Systems Management News is chock-full of news and analysis to help you understand what's happening in your field.
subscribe

The Enterprise Newsweekly eWeek is the essential technology information source for builders of e-business.
subscribe

Oracle Magazine Oracle Magazine contains technology strategy articles, sample code, tips, Oracle and partner news, how to articles for developers and DBAs, and more. Oracle (NASDAQ: ORCL) is the world's largest enterprise software company.
subscribe

Total Telecom Total Telecom is "The Economist of the communications industry".
subscribe