Re: Adding validate_var_array()/validate_input_array() to which version?
| From: | Rowan Collins | Date: | Thu, 04 Aug 2016 21:38:32 +0000 |
| Subject: | Re: Adding validate_var_array()/validate_input_array() to which version? | ||
| References: | 1 2 3 4 5 6 7 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-94839@lists.php.net to get a copy of this message | ||
On 04/08/2016 22:25, Yasuo Ohgaki wrote:
My preference is to raise exception to encourage users to handle validation error correctly, i.e. terminate script execution, but my intention may not be interpreted correctly with or without exception.I know naming things is hard, but I really do think "validation" is not the correct name for what you are talking about. Search online for "form validation", and you will see what I mean. The correct response to a form validation error is to show a message to the user with as much detail as possible, not to simply terminate the script and assume they are trying to attack your application. Regards, -- Rowan Collins [IMSoP]