|
|
|
|
|
by Cloven
5126 days ago
|
|
95% of even good developers wouldn't be able to tell when a sql sanitization function is poorly coded or has a hidden gotcha. Having the source is not nearly as important as trusting the upstream to be smart and to promptly resolve security issues when discovered. |
|
But really, security without reading sources is blind more or less calculated risk, not security.