I've noticed a lot of people avoid Diesel because they don't think it's useful if they don't like query builders. We spent a lot of time coming up with a raw SQL API which felt good, and I find far more ergonomic than the alternatives. Let's show it off.https://github.com/sgrif/diesel.rs-website/pull/62 …
-
Show this thread
-
How does raw SQL in Diesel handle SQL injection protection ? I didn’t encounter documentation on best practices concerning that. That surprised me and made me feel “ok maybe raw SQL is hard to get right using Diesel”
1 reply 0 retweets 0 likes
Everything uses prepared statements. There isn't any specific thing you need to do to be protected (other than the obvious don't use `format!` with user input)
5:55 AM - 24 May 2018
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.