Reflecting on Eric's comment re. my desire for a dialect of SPARQL  
that's safe to be deployed inside DMZs and the like, I think he's  
probably right in that it's necessary to explicitly defang FROM as well.

So, I would like to propose a subset of SPARQL/Query that is mandated  
not to do any network requests in direct response to user input.

I don't care if that bans the FROM keyword, or just redefines it to  
act as a restriction on the (internal) dataset being queried, as I  
believe some SPARQL systems do now.

SPARQL/Immutable is not a serious suggestion for a name, but SPARQL/ 
Safe or similar seems like it's asking for trouble. SPARQL/Local maybe?


- Steve

Steve Harris
Garlik Limited, 2 Sheen Road, Richmond, TW9 1AE, UK
+44(0)20 8973 2465
Registered in England and Wales 535 7233 VAT # 849 0517 11
Registered office: Thames House, Portsmouth Road, Esher, Surrey, KT10  

Received on Friday, 8 May 2009 10:18:29 UTC