Newsgroups: php.internals Path: news.php.net Xref: news.php.net php.internals:27375 Return-Path: Mailing-List: contact internals-help@lists.php.net; run by ezmlm Delivered-To: mailing list internals@lists.php.net Received: (qmail 47773 invoked by uid 1010); 11 Jan 2007 17:53:18 -0000 Delivered-To: ezmlm-scan-internals@lists.php.net Delivered-To: ezmlm-internals@lists.php.net Received: (qmail 47758 invoked from network); 11 Jan 2007 17:53:18 -0000 Received: from unknown (HELO lists.php.net) (127.0.0.1) by localhost with SMTP; 11 Jan 2007 17:53:18 -0000 Authentication-Results: pb1.pair.com header.from=addw@phcomp.co.uk; sender-id=pass Authentication-Results: pb1.pair.com smtp.mail=addw@phcomp.co.uk; spf=pass; sender-id=pass Received-SPF: pass (pb1.pair.com: domain phcomp.co.uk designates 213.152.38.186 as permitted sender) X-PHP-List-Original-Sender: addw@phcomp.co.uk X-Host-Fingerprint: 213.152.38.186 freshmint.phcomp.co.uk Linux 2.5 (sometimes 2.4) (4) Received: from [213.152.38.186] ([213.152.38.186:62851] helo=mint.phcomp.co.uk) by pb1.pair.com (ecelerity 2.1.1.9-wez r(12769M)) with ESMTP id 0C/15-15642-E8976A54 for ; Thu, 11 Jan 2007 12:53:18 -0500 Received: from addw by mint.phcomp.co.uk with local (Exim 4.66) (envelope-from ) id 1H5473-0000Dc-Fv for internals@lists.php.net; Thu, 11 Jan 2007 17:53:17 +0000 Date: Thu, 11 Jan 2007 17:53:17 +0000 To: PHP Developers Mailing List Message-ID: <20070111175317.GJ15998@mint.phcomp.co.uk> References: <20070111144144.GV15998@mint.phcomp.co.uk> <80C94C6E-4646-459E-B695-B072F14378F0@prohost.org> <20070111171152.GH15998@mint.phcomp.co.uk> <20070111172942.GI15998@mint.phcomp.co.uk> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.4.1i Organization: Parliament Hill Computers Ltd Subject: Re: [PHP-DEV] Comments on PHP security From: addw@phcomp.co.uk (Alain Williams) On Thu, Jan 11, 2007 at 06:44:35PM +0100, Derick Rethans wrote: > That is why there is a concept called "testing" [1] and code coverage > [2]. > > [1]. http://phpunit.de/ > [2]. http://sebastian-bergmann.de/archives/578-Code-Coverage-Reports-with-PHPUnit-3.html You are an experienced and careful programmer, that is why you understand the value of doing this sort of thing. The trouble is that most PHP programers are not experienced and/or careful ... that is *why* many PHP scripts have nasty bugs in them. As I said: we are looking at ways of helping the sort of person who would not come near this mail list. -- Alain Williams Linux Consultant - Mail systems, Web sites, Networking, Programmer, IT Lecturer. +44 (0) 787 668 0256 http://www.phcomp.co.uk/ Parliament Hill Computers Ltd. Registration Information: http://www.phcomp.co.uk/contact.php #include