Jonathan N. Little said:
If the PO (I'm assuming means Purchase Order here) calculates the total
for the order solely by JavaScript without any verification and
recalculation server-side then it is a *seriously* flawed deployment!
Man, a hacker could have a field day with that form!
You are so keen to prove I am an idiot that you invent scanarios which never
took place
We were selling to corporate customers. The purchasing managers usually had
a certain sum to spend and they liked to play with the pricelist to increase
number of one item, decrease the other but be within the budget. That was
pretty handy on the client side. Their final submition was verified on the
server, of course.
Also there are such things as corporate networks where all the browsers are
known and little point to spend company's money to counteact an event which
is not going to happen.
You people are putting forward right reasons (and very well known to those
in the trade) but you overidolize them and are busy blowing things up like
insurance agents who get horrified when learning that you have not have
insurance against this, that and that, and readily produce stories what
might happen if you don't.
It might indeed, but much more often it does not and people somehow
misteriously survive.
Again, you advices are reasonable but they are not absolute and not all are
the best in every circumstance. No point getting insulted is someone did nit
immediatelly used some of your directives