An exploration of a poorly designed web application reveals how it evolved over a decade from a standard report page to a dangerously open SQL interface, allowing users to execute arbitrary queries. This transformation was driven by continuous feature requests and inadequate security measures, ultimately leading to chaos and data loss. The author's experience highlights the risks of neglecting security in software development and the consequences of poor design decisions.