I was just thinking .... if i have a ajax call, which calls a php file that gets some info from MySQL, wouldnt it be possible to edit the timeInterval with firebug or other editors, and make it spam the server with the call?
isnt that a security risk/flaw?