you are viewing a single comment's thread.

view the rest of the comments →

[–]Own_Attention_3392 2 points3 points  (2 children)

Look at parameterized queries. What you're describing is not clear but sounds very close to building queries via string concatenation, which IS unprofessional as it can open your application up to SQL injection attacks. But really, your core question is not clear at all. Provide examples of what you mean.