Hi, I want to know if there is a way for phalcon to automatically parse the data inputs I'm sending to the model with the purpose to avoid possible SQL injections, for example if I use:
Model::findFirst("column = '$value'"); //This is very similar to the examples given in the Phalcon documentation
And $value has a single quote then Phalcon will show an SQL error because the quotes are not correctly closed and I think it will give problems with SQL injections.
Is there other way to set the query parameters using the example above? or do I need to do it manually?