rspec/rules/S2043/php/rule.adoc
2022-02-04 16:28:24 +00:00

29 lines
591 B
Plaintext

Superglobal variables are predefined variables available in all scopes throughout a script. However, accessing them directly is considered bad practice. Instead, they should be accessed through an object or framework that handles sanitation and validation.
== Noncompliant Code Example
[source,php]
----
$name = $_POST['name'];
----
== Compliant Solution
[source,php]
----
$name = $this->params()->fromPost('name');
----
ifdef::env-github,rspecator-view[]
'''
== Implementation Specification
(visible only on this page)
include::message.adoc[]
endif::env-github,rspecator-view[]