at least they seem to escape quotes in user inputs at BBQ Chicken Pizza, although probably in some whacky way that doesn't catch all the SQL injections

