Why Is This Okay?

I’m not a PHP developer, but I know enough to get around. Yet, looking into some of the most common open-source PHP web apps, shows a horrific state of affairs.

Why are we still using inline SQL in our PHP data access code? Sure, it’s using a parameterized query to sanitize things, but it still not very database-agnostic, despite this particular project supporting MySql and PostgreSql.