Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
iLoveOncall
4 months ago
|
parent
|
context
|
favorite
| on:
Goodbye InnerHTML, Hello SetHTML: Stronger XSS Pro...
You'd never want to store the processed HTML anyway, this is website building 101.
efilife
4 months ago
[–]
I store both, to serve processed HTML faster, and to be able to rebuild it just in case. Is this ok?
joquarky
4 months ago
|
parent
[–]
I wouldn't trust myself to always remember to sanitize it, and in a company with more than one person, it becomes impossible to ensure it is properly handled.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: