Hi, I have a form on my page that lets a user enter a query to the database, how can I ensure that the user only enters 'SELECT' statements and therefore doesn't drop the whole database or do anything else malicious? Thanks for your help -- PHP Database Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php