This is Steve Thorn's TypePad Profile.
Join TypePad and start following Steve Thorn's activity
Steve Thorn
Recent Activity
This page still comes up high in some searches, despite having been written in 2005!
In the meantime, cmd.Parameters.Add() has been deprecated; use cmd.Parameters.AddWithValue() instead with the same parameters.
Give me parameterized SQL, or give me death
I have fairly strong feelings when it comes to the stored procedures versus dynamic SQL argument, but one thing is clear: you should never, ever use concatenated SQL strings in your applications. Give me parameterized SQL, or give me death. There are two good reasons you should never do this. ...
Steve Thorn is now following The Typepad Team
Jun 30, 2010
Subscribe to Steve Thorn’s Recent Activity
