Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • SEARCH
  • Home
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 96617
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: May 10, 20262026-05-10T23:50:48+00:00 2026-05-10T23:50:48+00:00

For some reasons, I would like to do an explicit quoting of a string

  • 0

For some reasons, I would like to do an explicit quoting of a string value (becoming a part of constructed SQL query) instead of waiting for implicit quotation performed by cursor.execute method on contents of its second parameter.

By ‘implicit quotation’ I mean:

value = 'Unsafe string' query = 'SELECT * FROM some_table WHERE some_char_field = %s;' cursor.execute( query, (value,) ) # value will be correctly quoted 

I would prefer something like that:

value = 'Unsafe string' query = 'SELECT * FROM some_table WHERE some_char_field = %s;' % \     READY_TO_USE_QUOTING_FUNCTION(value) cursor.execute( query ) # value will be correctly quoted, too 

Is such low level READY_TO_USE_QUOTING_FUNCTION expected by Python DB API specification (I couldn’t find such functionality in PEP 249 document). If not, maybe Psycopg2 provides such function? If not, maybe Django provides such function? I would prefer not to write such function myself…

  • 1 1 Answer
  • 5 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. 2026-05-10T23:50:49+00:00Added an answer on May 10, 2026 at 11:50 pm

    Ok, so I was curious and went and looked at the source of psycopg2. Turns out I didn’t have to go further than the examples folder 🙂

    And yes, this is psycopg2-specific. Basically, if you just want to quote a string you’d do this:

    from psycopg2.extensions import adapt  print adapt('Hello World'; DROP DATABASE World;') 

    But what you probably want to do is to write and register your own adapter;

    In the examples folder of psycopg2 you find the file ‘myfirstrecipe.py’ there is an example of how to cast and quote a specific type in a special way.

    If you have objects for the stuff you want to do, you can just create an adapter that conforms to the ‘IPsycopgSQLQuote’ protocol (see pydocs for the myfirstrecipe.py-example…actually that’s the only reference I can find to that name) that quotes your object and then registering it like so:

    from psycopg2.extensions import register_adapter  register_adapter(mytype, myadapter) 

    Also, the other examples are interesting; esp. ‘dialtone.py’ and ‘simple.py’.

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

I would like to put some extra merged cells for grouping reasons on the
My question is fairly clear, and I really would like to hear some reasons
For some reasons, I would like to deploy my application as two separate artifacts:
I would like to create my logout view for many reasons but the main
I would like to save some user timezone in a Daylight saving proof format.
I'm designing some services and I would like to get some feedback about the
I have an excel file with some email links. I would like to have
What are some reasons why I wouldn't want to disable IIS logging completely for
The HttpModule works fine (hello is replaced with hello world) but for some reasons
I have trouble where, for some reason, SVN would only merge the newly generated

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.