Your example has nothing to do with the code I presented. Sure I can give you a number of different ways someone could compromise your code. But we are talking about a specific line. And you are saying in the offchance that a room is named a malicious command. Seriously? How about I prefix the join event with @ so its the ops own fault.

Sorry it just seems you are really going out of your way to try and find a reason why the writeini line is exploitable.