-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1
Am 14.09.2011 00:08, schrieb Platonides:
Heh, you could have added - and _ to the list of allowed characters (that's why I pointed out *what* I wanted to protect from).
Because you mentioned alphanumeric I thought of using "str.isalnum()" but there no additional chars can be added (as far as I know). Thus I would have to consider regex - but then I was so lazy to use my first idea... ;) But of course you are right! :)
Spelling out the list of allowed values is always safer, but it is bothersome (I see you listed the folder instead).
"is always safer" is good news to me and because "it is bothersome" I chosed a way somewhere in between... :) (or may be because - as mentioned - it was my first idea... ;))
Greetings and thanks for the feedback - was very helpful!