if you have highly sensitive data, then I would do what I could to avoid using that model. However, it looks like it could be for some kind of shopping site, then I don't think it's a huge deal. For better security, always sanitize your data from form postings and/or query string variables, that way you have complete control over those public pieces of data.