To help secure your applications, tools for input validation, signed cookies, [form] and [HTML] generators are all included. The database layer provides protection against SQL injection. Of course, all official code is carefully written and reviewed for security.
TODO: General security concerns, like using the Security class, CSRF, and a brief intro to XSS, database security, etc. Also mention the security features that KO7 provides, like cleaning globals.