[Esapi-user] ESAPI development process

Jim Manico jim.manico at owasp.org
Fri Sep 10 10:53:16 EDT 2010


Thanks for all this, Ed.

> I may want exceptions to be thrown
for invalid characters in some of my code but not in my JSPs.

My instinct says that this is the role of validation, not encoding. Could you describe your encoding exception use case one more time?

-Jim Manico
http://manico.net

On Sep 10, 2010, at 7:33 AM, Ed Schaller <schallee at darkmist.net> wrote:

> I may want exceptions to be thrown
> for invalid characters in some of my code but not in my JSPs.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: https://lists.owasp.org/pipermail/esapi-user/attachments/20100910/ee83af48/attachment.html 


More information about the Esapi-user mailing list