max-mapper / monocles

[NOT MAINTAINED] diaspora... as a couchapp! in pure javascript and fully OStatus compliant (almost)
http://monocl.es
180 stars 15 forks source link

User-generated content should be sanitized #7

Closed hallettj closed 14 years ago

hallettj commented 14 years ago

Apparently people really care about XSS vulnerabilities, even in apps that are in early production like Diaspora.

hallettj commented 14 years ago

It turns out that this is already handled by mustache.js.