Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
ptx
on Feb 27, 2020
|
parent
|
context
|
favorite
| on:
Don’t try to sanitize input – escape output
No, that is escaping the input. The article recommendeds storing the text as-is and escaping (that is, converting it to HTML) when it's displayed.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: