Quote from: rossco at Mar 26, 2009, 11:09 AM
There’s a snippet out that already allows you to edit TVs from the from end... I don’t see an issue with having that as a feature to a trusted member or community such as a educational establishment to allow students to upload work for lecturers to view.
One piece of advice which was give to us by the great Fox Mulder and that is always true:
Trust No One
Hail ,hail, hail.
(Please ignore the following paragraph if you are battle seasoned programmer or site admin.)
No kidding, sh** happens all the time. A simple gif image with malicious php code inside can cause havoc on a server. Don’t know how MODx reacts to such threats (note to self: check this), but there is nothing like a trusted member for a site admin. Even when they try to be nice and polite, they might screw up without intention. So you have to check, check and double check whatever is send to you application. Never forget what Mulder told us. Amen.
I don’t want to tell you that it is unsafe. In fact I don’t believe that it would cause problems. I can also understand why it would be sexy to keep the majority completely away from the backend. It’s crammed with unneccessary stuff 95% of the time. This is why I’m working in between projects on a more customizable back end.
I just wanted to tell you it FEELS wrong, but this is most probably the result of me ignoring the front end editor module altogether. Even though I think its an extremly powerful and cool feature, I didn’t like it’s look and feel the first time I played around with it and therefore I switched it off. Backend experience is VERY important for me and therefore I don’t use it at all. For the same reason I never had a look at the code and this is the reason why I might be a bit too cautious.
You are welcomed to ignore my superstition and go ahead. Most probably more knowledgable people here than me will tell you to do so and when you are finished I would appreciate to have a look at the results (I’m a very nosy person and perhaps I’ll get a taste for the front-end editing module again...)
Regards,
pepebe