Querying Data
After connecting as described in Connecting, you can use the open connection to execute SQL statements.
Executing Queries
To execute SQL statements that return data, use the execute() method. Once a query is executed, the result set is fetched from the cursor. This result set can then be iterated over to process the records individually.For example:
cur = conn.execute("SELECT InvoiceUniquifier, ApprovedLimit FROM OEInvoices") rs = cur.fetchall() for row in rs: print(row)
Parameterized Queries
Various Python collections, such as arrays and tuples, can act as additional arguments for the execute() method. This enables you to parameterize the queries executed and help to prevent SQL Injection.
For example:
cmd = "SELECT InvoiceUniquifier, ApprovedLimit FROM OEInvoices WHERE Allowpartialshipments = ?" params = ["Yes"] cur = conn.execute(cmd, params) rs = cur.fetchall() for row in rs: print(row)