When Giles is Right, He's Right
raganwald.posterous.com
raganwald.posterous.com
But Rails has often tried to add security by default (SQL injections, XSS attacks, etc). So perhaps this claim isn't that correct.
> Either rethink it from the ground up, or leave it alone.
Or, you know, fix the problem at hand.