I like the idea of adding a BB to a Wordpress website and BBPress offers good integration but, having had one website previously screwed with a Visitor's Book, I am a bit paranoid about PHP Injection.
Since there is actually an invitation to put code between backticks, how secure is it against injection?
Is there a simple hack to exclude backticks?