sqlstring VS go-sql-driver/mysql

Compare sqlstring vs go-sql-driver/mysql and see what are their differences.

sqlstring

Simple SQL escape and format for MySQL (by mysqljs)

go-sql-driver/mysql

Go MySQL Driver is a MySQL driver for Go's (golang) database/sql package (by go-sql-driver)
SurveyJS - Open-Source JSON Form Builder to Create Dynamic Forms Right in Your App
With SurveyJS form UI libraries, you can build and style forms in a fully-integrated drag & drop form builder, render them in your JS app, and store form submission data in any backend, inc. PHP, ASP.NET Core, and Node.js.
surveyjs.io
featured
InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
sqlstring go-sql-driver/mysql
1 19
391 14,187
0.0% 0.5%
0.0 7.8
about 2 years ago 6 days ago
JavaScript Go
MIT License Mozilla Public License 2.0
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

sqlstring

Posts with mentions or reviews of sqlstring. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2022-03-05.
  • Finding an Authorization Bypass on My Own Website
    8 projects | news.ycombinator.com | 5 Mar 2022
    As a security professional, I was horrified to find out that the maintainers don't consider this a security issue, though they did promise to take this seriously and change the API when they were made aware of it in 2014 (https://github.com/mysqljs/mysql/issues/731).

    So I bumped an issue, noting this is all over HN, and offered to write a pull request for the API change proposed by the maintainers:

    https://github.com/mysqljs/sqlstring/issues/60

    Doug agreed to accept such a request, so I just sat down to figure out the code and a reasonable upgrade plan.

    Three hours later, I proudly wrote Doug this email (pasting it here because the issue and codebase are locked to non-contributors so I had to send it via email):

    OK, I have a draft pull request ready. Of course, it's a big change and I expect to get a lot of feedback and have a few rounds of back and forth and fixups before it is accepted.

    This is the plan as I envision it:

    * Release SqlString 3.0.0 that has a new allowObjectValues parameter defaulting to false. This is a new major, so it shouldn't break anybody's code.

go-sql-driver/mysql

Posts with mentions or reviews of go-sql-driver/mysql. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-03-26.
  • Tools besides Go for a newbie
    36 projects | /r/golang | 26 Mar 2023
    IDE: use whatever make you productive. I personally use vscode. VCS: git, as golang communities use github heavily as base for many libraries. AFAIK Linter: use staticcheck for linting as it looks like mostly used linting tool in go, supported by many also. In Vscode it will be recommended once you install go plugin. Libraries/Framework: actually the standard libraries already included many things you need, decent enough for your day-to-day development cycles(e.g. `net/http`). But here are things for extra: - Struct fields validator: validator - Http server lib: chi router , httprouter , fasthttp (for non standard http implementations, but fast) - Web Framework: echo , gin , fiber , beego , etc - Http client lib: most already covered by stdlib(net/http), so you rarely need extra lib for this, but if you really need some are: resty - CLI: cobra - Config: godotenv , viper - DB Drivers: sqlx , postgre , sqlite , mysql - nosql: redis , mongodb , elasticsearch - ORM: gorm , entgo , sqlc(codegen) - JS Transpiler: gopherjs - GUI: fyne - grpc: grpc - logging: zerolog - test: testify , gomock , dockertest - and many others you can find here
  • Questions regarding prepared statements in database/sql
    3 projects | /r/golang | 23 Feb 2023
    I understand that database/db is an abstraction. As to the driver, sorry, it completely went out of my head. The guide primarily focuses on https://github.com/go-sql-driver/mysql, which is also what I’m interested in.
  • Make Deno MySQL driver works better
    3 projects | dev.to | 1 Dec 2022
    Authentication method mismatch is not allowed to occur more than once. It is not a part of MySQL protocol. go-sql-driver also has the same rule.
  • Question about inserting date into MySQL?
    1 project | /r/golang | 15 Nov 2022
    If you are using https://github.com/go-sql-driver/mysql you need to add parseTime=true to the DSN to be able to use time.Time.
  • Build REST API with Go Fiber and PlanetScale - Part 2
    1 project | dev.to | 19 Oct 2022
    package models import ( "gorm.io/driver/mysql" "gorm.io/gorm" ) var DB *gorm.DB func ConnectDatabase() { // refer https://github.com/go-sql-driver/mysql#dsn-data-source-name for details dsn := "root:@tcp(127.0.0.1:3309)/fiber-pscale?charset=utf8mb4&parseTime=True&loc=Local" database, err := gorm.Open(mysql.Open(dsn), &gorm.Config{}) if err != nil { panic("failed to connect database") } // Migrate the users table database.AutoMigrate(&User{}) DB = database }
  • Stuck $GOPATH/go.mod exists but should not
    1 project | /r/golang | 26 Aug 2022
    I've seen this error on line but there is no resolution to this error even when i run go get github.com/go-sql-driver/mysql
  • I Could Not Run a Sample Code to Use MySQL with Go on Docker (Error 1064)
    1 project | dev.to | 1 Jul 2022
    I use github.com/go-sql-driver/mysql package to use MySQL. The references are the official README.md, a sample code, the article Masao wrote (in Japanese), and the MariaDB document.
  • Golang future web frameworks!
    13 projects | /r/golang | 24 Apr 2022
    go-sql-driver/mysql 12.1k Stars, Used by 72.4k
  • Finding an Authorization Bypass on My Own Website
    8 projects | news.ycombinator.com | 5 Mar 2022
    > mysql_real_escape_string is still vulnerable when being used with some exotic character sets

    Indeed -- mysql_real_escape_string "mostly" fixes this problem by requiring a connection as one of its args, and since it's usually aware of the connection state, it can check that to see if one of those exotic charsets is in-use. But the problem is that there are multiple ways to change the connection charset, some of which the driver is aware of (e.g. in PHP mysqli set_charset) but some it is not (running textual statements like SET NAMES or SET CHARACTER SET).

    But generally an attacker won't ever have the ability to set an arbitrary exotic character set for the connection, unless they already have some other sql injection mechanism, in which case it's a moot point :)

    Driver documentation also typically mentions this problem. For example, here's the doc for doing client-side param interpolation in the most popular MySQL driver for Golang: https://github.com/go-sql-driver/mysql#interpolateparams

    It also explicitly detects if your initial connection settings attempt to use one of those charsets along with param interpolation, and throws an error if so: https://github.com/go-sql-driver/mysql/blob/21f789cd/dsn.go#...

    > Couldn't one just save the extra round-trip with length-prefixed strings by sending the query together with the parameters in a single message?

    AFAIK, no, not with the traditional MySQL binary protocol. The newer "X protocol" introduced in MySQL 5.7 does allow this, but it is not widely implemented in drivers.

  • [Question] Working with databases/storing data in Go applications.
    4 projects | /r/golang | 29 Jan 2022
    However, you can use something like this https://github.com/go-reform/reform to help you with, I will call it automating the code writing. But I have always opted to one of the supported drivers and written a queries myself using for example this https://github.com/go-sql-driver/mysql.

What are some alternatives?

When comparing sqlstring and go-sql-driver/mysql you can also consider the following projects:

Strapi - 🚀 Strapi is the leading open-source headless CMS. It’s 100% JavaScript/TypeScript, fully customizable and developer-first.

sqlx - general purpose extensions to golang's database/sql

MySQL - A pure node.js JavaScript Client implementing the MySQL protocol.

pgx - PostgreSQL driver and toolkit for Go

MySqlConnector - MySQL Connector for .NET

pq - Pure Go Postgres driver for database/sql

go-sqlite3 - sqlite3 driver for go using database/sql

opentelemetry-collector - OpenTelemetry Collector

vertica-sql-go - Official native Go client for the Vertica Analytics Database.

go-mssqldb - Microsoft SQL server driver written in go language

go-adodb - Microsoft ActiveX Object DataBase driver for go that using exp/sql

go-oci8 - Oracle driver for Go using database/sql