Concerning!

  • Buddahriffic@lemmy.world
    link
    fedilink
    arrow-up
    9
    ·
    10 months ago

    Check is done by querying the list of users and running a for loop to see if any user names match the user name of blocked users. This is all handled on the client side and optimised by exposing the SQL server. Security is maintained by banning anyone who uses the word “drop” in any query (after the query goes through).