Watching a tutorial on SQLite. It advises two ways to execute insert into and prevent SQL injection attack.
first example in video using "?" as placeholder