Don't do it?

You can create a pre-filter that strips those from the source
Hello :)

We've noticed you can just drop <?php php-code ?> in a tal template and it will 
drop it in the compiled template file and execute it. This is not something we 
want to happen so any suggestions on the best way to prevent it?

