I'm validating a POST request variables and I used to do like this:
$email = htmlentities($_POST['email']);
But now I searched and learned about filter_var and I'm doing the validation like this:
$email = filter_var(htmlentities($_POST['email']), FILTER_SANITIZE_EMAIL);
Which way is better? and for all types of input [phone - string - etc ..] What I have to use?
Sorry I'm a beginner and I've looked into the manual but I could't understand a lot.
Thanks for help.