I think a big one is passing numeric form or url vars to the db without screening them. If they know cf, try not to use evaluate and try to use cfscript. Also, any form of seperation of contentcreation from business rules is a good thing to talk about.
-----Original Message----- From: Candace Cottrell [mailto:CottrellC@;childrensdayton.org] Sent: Thursday, October 17, 2002 10:49 AM To: CF-Community Subject: Big "dummy" flags As you all probably know, I am fairly new to CF. So, I have a client who wants to see a code sample. Are there any "what a big dummy" flags in cf code that would cause the person to cringe? TIA Candace K. Cottrell, Web Developer The Children's Medical Center One Children's Plaza Dayton, OH 45404 937-641-4293 http://www.childrensdayton.org [EMAIL PROTECTED] ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~| Archives: http://www.houseoffusion.com/cf_lists/index.cfm?forumid=5 Subscription: http://www.houseoffusion.com/index.cfm?sidebar=lists&body=lists/cf_community This list and all House of Fusion resources hosted by CFHosting.com. The place for dependable ColdFusion Hosting.
