Hacker News new | ask | show | jobs
by basil-rash 2825 days ago
In this case the sql function can not escape the id. If you were to use a tagged template, it could.