[Feature] Support SQL string composition
还没有人认领这个 Issue。
评估
调研方向
首先检查 connector 现有的参数化查询支持,然后比较 pg8000 和 psycopg 文档中介绍的标识符组合方法。完成的标准是用户能够安全地组合动态 Redshift 标识符(例如 schema 和表名),并能防止 SQL injection。
由索引模型根据 Issue 内容生成。
描述
The redshift connector currently supports parameterised queries (aka bind variables) which is great.
However some of our use cases require other parts of a Redshift SQL query to be dynamically created. These include components such as the table name, the schema... and are commonly referred to as Identifiers. For example f"SELECT * FROM {schema}.{table}"
Other libraries such as pg8000 and psycopg have developed modules to escape these variables via identifiers.
Beyond usability, the main advantage of this approach is that it helps with SQL injection attacks.
- 主要语言
- Python
- 星标
- 220
- 派生
- 88
- PR 合并指标
- 30 天内没有已合并 PR
环境准备
- 没有 Dockerfile 或 Docker Compose 文件
- 有 Pull Request 模板
- 阅读贡献指南
从这里开始
- 先读完整个 Issue,再读项目的贡献指南。
- 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
- Fork 仓库,在一个分支上完成修改。
- 提交 Pull Request,并在描述里引用这个 Issue 编号。
aws/amazon-redshift-python-driver 的其他 Issue
-
难度 1/5 1-3 小时 新手友好度 74/100
-
难度 4/5 3-5 天 新手友好度 30/100
aws/amazon-redshift-python-driver#268 · 2 个 reaction ·
-
难度 4/5 3-5 天 新手友好度 35/100
-
难度 5/5 一周以上 新手友好度 35/100
aws/amazon-redshift-python-driver#265 · 1 条评论 · 4 个 reaction ·
-
难度 3/5 1-2 天 新手友好度 45/100
查看 aws/amazon-redshift-python-driver 的全部 Issue
相似的 Issue
-
难度 2/5 1-3 小时 新手友好度 88/100
BasedHardware/omi#20271 ·
维护者通常 1 天内回复
-
难度 2/5 1-3 小时 新手友好度 92/100
openai/openai-cookbook#3153 ·
维护者通常 1 天内回复
-
cvss-severity:high devguard l3montree-cybersecurity/devguard/devguard pkg:golang/github.com/l3montree-dev/devguard risk:low state:open
难度 2/5 1-3 小时 新手友好度 65/100
l3montree-dev/devguard#3146 · 1 条评论 ·
维护者通常 1 天内回复
-
难度 2/5 1-3 小时 新手友好度 76/100
-
bug confirmed issue
难度 2/5 1-3 小时 新手友好度 76/100
open-webui/open-webui#31849 · 2 条评论 ·
维护者通常 1 天内回复