Since your `properQuote` doesn't quote at all, it is neither correct nor safe. 
To prevent SQL injections, use the existing `db_*` modules from the stdlib.

Reply via email to