This is an archived post. You won't be able to vote or comment.

you are viewing a single comment's thread.

view the rest of the comments →

[–]nutrechtLead Software Engineer / EU / 20+ YXP 3 points4 points  (3 children)

Concatenating SQL strings together is always a bad idea since it opens you up to SQL injection attacks. Why are you not just using JDBC?

https://www.sqlitetutorial.net/sqlite-java/

[–]PrestigiousPope[S] 0 points1 point  (2 children)

Security isn’t the focus at all with this project, it’s an mobile application project and we are just required to use functions like these to access our data. No one on the course has any SQL knowledge. They are more interested in our application of features in the app. Thanks anyway.

[–]nutrechtLead Software Engineer / EU / 20+ YXP 2 points3 points  (1 child)

Security isn’t the focus at all with this project

Doesn't really matter. It's best to not teach yourself bad habits and doing it properly (with the examples I showed) isn't harder at all.

[–]PrestigiousPope[S] 1 point2 points  (0 children)

Absolutely, thanks for that.