{"id":18766778,"date":"2025-12-24T17:21:56","date_gmt":"2025-12-24T17:21:56","guid":{"rendered":"https:\/\/wordpress.org\/support\/topic\/sql-validation-limitations\/"},"modified":"2025-12-24T17:52:46","modified_gmt":"2025-12-24T17:52:46","slug":"sql-validation-limitations","status":"publish","type":"topic","link":"https:\/\/wordpress.org\/support\/topic\/sql-validation-limitations\/","title":{"rendered":"SQL validation limitations"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Hello,<br \/><br \/>I\u2019m using Automator for WordPress and I\u2019m running into a limitation related to the built-in SQL validation.<br \/><br \/>When using actions that execute custom SQL, any query containing standard keywords like INSERT, UPDATE or DELETE is blocked with the message \u201cDangerous SQL keywords detected\u201d. I fully understand the security rationale behind this, however in my case the SQL is fully controlled (no user input involved) and is used only for internal logging\/synchronization within my own plugin \/ WordPress environment.<br \/><br \/>I\u2019d like to ask:<br \/><br \/>Is there any official or supported way to relax or bypass this validation for trusted\/internal use cases?<br \/><br \/>Are there filters, hooks, or recommended patterns (other than rewriting everything to PHP + $wpdb) intended for advanced users?<br \/><br \/>If not, is there a roadmap consideration for allowing developers to explicitly opt in to trusted SQL execution?<br \/><br \/>At the moment, the only viable workaround seems to be executing all logic through custom PHP actions, which works but limits flexibility when designing Automator recipes.<br \/><br \/>I\u2019d really appreciate clarification on the intended approach for advanced \/ developer-level integrations.<br \/><br \/>Thank you for your time and for the great plugin.<br \/><br \/>Best regards,<br \/>Dawid<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-resized\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/media.discordapp.net\/attachments\/1101190270567063625\/1453436782933839913\/image.png?ssl=1\" alt=\"\" \/><\/figure>\n","protected":false},"template":"","class_list":["post-18766778","topic","type-topic","status-publish","hentry"],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic\/18766778","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic"}],"about":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/types\/topic"}],"version-history":[{"count":1,"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic\/18766778\/revisions"}],"predecessor-version":[{"id":18766788,"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic\/18766778\/revisions\/18766788"}],"wp:attachment":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/media?parent=18766778"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}