Short answer
A prepared statement sends the query and the data to the database separately, so user input can never be interpreted as part of the query. It is the standard defence against SQL injection and PDO or MySQLi support it directly.
This is a general web-hosting explanation, not specific to Traxio.
Learn more
- Connecting a PHP application to your databaseThe connection details for Traxio databases and working examples with PDO and mysqli, including safe queries and keeping credentials private.
- Keeping your databases secureProtect your website’s databases: separate users, strong passwords, prepared statements, safe credential storage and backups.
New to Traxio? The PHP hosting page lists the PHP versions, database and tools every account gets, free for the first 30 days.