We are on version 10.0.7.4 and off maintenance. We have the Epicor education module and the official Epicor training material that shipped with our version includes exercises where direct connections via visual studio in the form of SQL queries are actively promoted.
Version information below
Revision: March 14, 2013 2:07 a.m.
Total pages: 66
Epicor previously promoted this, is it purely the SAAS implication or some other reason that brought about the change of position by Epicor - we are off maintenance and as we have a strained relationship with Epicor so don’t get invited to anything so most likely missed any communication.
I get the security issues and the sql injection issues, but I think dropping tables, delete data, select * from erp.parttran etc could easily be prevented by having a list of allowable commands within a direct sql editor with a default limit on rows returned and execution time that you have to specifically override.