Blesta 3.0: Eliminating SQL Injection
How Blesta 3.0 stops SQL injection: parameter binding via PDO and the minPHP Record class database object, so escaping and query syntax are handled for you.
Blog · category
Every post filed under Developer Corner — newest first.
How Blesta 3.0 stops SQL injection: parameter binding via PDO and the minPHP Record class database object, so escaping and query syntax are handled for you.
Blesta 3.0 manual invoicing preview: draft invoices with autosave, voided invoices, fractional quantities, drag-and-drop line items, and custom invoice numbering.
Blesta 3.0 development update: a ground-up object-oriented rewrite with a redesigned Client Overview, drag-and-drop staff widgets, and hex-based color themes.
A first peek at the Blesta 3.0 admin design: the client Services box with a changeable color theme, status icons, and a layout that scales to your browser.
How Blesta 3.0 secures data for decades: RSA public-key encryption for stored credit cards, optional private-key passphrases, and AES for module data.
Blesta 3.0 adds two-factor authentication with TOTP and Mobile-OTP one-time passwords, backported to 2.5, protecting accounts even if a password is reused.
Blesta 3.0's API design: building on the minPHP MVC framework yields an automatic RESTful API exposing all public model methods, in JSON, XML, and more.
minPHP is released: a lightweight, open source MVC PHP framework under the MIT license from the makers of Blesta, and the foundation for Blesta 3.0.
30-day free trial · No credit card · Your server
Everything on this blog ships in the box. Full product, free for 30 days, on your own server.