Trying chDB, an embeddable ClickHouse engine
antonz.org
antonz.org
I figure running "standard" SQL is safe, because it's just some functions implemented in the database (SPJ). It's not malware (maybe only slow ;-)). But UDFs that could be python or worse risk a binary are more of an open ended danger.
In stabdalone ClickHouse users can't define UDFs themselves, they need to be installed on the server.
users need to setup that binary on servers somehow? I think some wasm UDFs would be much more seamless, like ScyllaDb recently implemented.
@chdb_udf()
def split_part(s, sep, idx):
idx = int(idx)-1
return s.split(sep)[idx]
second = chdb.query("select split_part('a;b;c', ';', 2)")
Is there some reason that registration of a UDF deserves to be global?