Graff, thanks for the detailed reply, very much appreciated.

I will fix the ../ possibility in my regex. In fact, the application checks a configuration hash for allowed files, as you suggested. I had suspected that was a security feature, now I know for sure.

The base template and page templates are generally hashrefs which specify HTML::Template templates and other data, but may also run perl code.

It does look like the main executable is called by eval. My desire to run in taint mode is motivated more by my desire to catch newbie mistakes on my part, than by a distrust in the base application (though I do try to cultivate a healthy distrust by default).

Again, thanks for your help, learning opportunities like this help me build a mental framework upon which I can develop with reading on my own.

