Hi, SQLite happens to be a nice piece of software, so it is about to be integrated into the Exim MTA. Exim provides a quoting function for every database it supports, so will be for SQLite. Is it correct that the only character that needs to be encoded is the single quote (')?
While testing I saw the double quote is somewhat equivalent to the single quote, which gives a little trouble. Exim's quoting function cannot know, which type of quotes surround, so it will possibly fail if someone uses double quotes. Is there probably a better way to do that? (like escaping with \ all possible quoting chars, i.e.)