Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Please do not re-implement HTML sanitization. Just replace that escapeForHTML and innerHTML assignment with a later textContent assignment. Please. Pretty please.


That seems like a good improvement. Pull requests welcome!





Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: