Skip to content

Validate HTML before saving #5

@lockworld

Description

@lockworld

Consider validating HTML prior to saving and stripping out scripts to improve security.

But...is this really necessary? If these pages are all being published to the author's website, isn't security their problem?

Maybe we can have an "advanced" configuration option that disables script removal if the user has selected this. Or maybe we skip this feature and let the user do what they want. I'm a little torn on this one.

Metadata

Metadata

Assignees

No one assigned

    Labels

    questionFurther information is requested

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions