Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

But what can you do instead? It’s a really hard problem to validate generic JSON without accidentally parsing it.


Validation better be done by the parser. Otherwise, subtle differences between the validator and the parser can lead to security flaws. Your solution is to make sure you use a good parser.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: