Discussion
Loading...

#Tag

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Jeff Sikes 馃崕 boosted
Web Standards
@[email protected]  路  activity timestamp 2 days ago

setHTML(), Trusted Types and the Sanitizer API. Ollie Williams explains how the new setHTML() method and Sanitizer API help prevent XSS by safely inserting HTML into the DOM. Combined with the Trusted Types API, they provide a modern, configurable way to control what elements and attributes are allowed, eventually replacing libraries like DOMPurify. Supported in Firefox Nightly and Chrome Canary. #security #html

https://olliewilliams.xyz/blog/sanitizer/

setHTML(), Trusted Types and the Sanitizer API

Avoiding cross-site scripting (XSS) attacks with new web APIs
Oct 29, 2025. setHTML(), Trusted Types and the Sanitizer API. olliewilliams.xyz
Oct 29, 2025. setHTML(), Trusted Types and the Sanitizer API. olliewilliams.xyz
Oct 29, 2025. setHTML(), Trusted Types and the Sanitizer API. olliewilliams.xyz
  • Copy link
  • Flag this post
  • Block
Web Standards
@[email protected]  路  activity timestamp 2 days ago

setHTML(), Trusted Types and the Sanitizer API. Ollie Williams explains how the new setHTML() method and Sanitizer API help prevent XSS by safely inserting HTML into the DOM. Combined with the Trusted Types API, they provide a modern, configurable way to control what elements and attributes are allowed, eventually replacing libraries like DOMPurify. Supported in Firefox Nightly and Chrome Canary. #security #html

https://olliewilliams.xyz/blog/sanitizer/

setHTML(), Trusted Types and the Sanitizer API

Avoiding cross-site scripting (XSS) attacks with new web APIs
Oct 29, 2025. setHTML(), Trusted Types and the Sanitizer API. olliewilliams.xyz
Oct 29, 2025. setHTML(), Trusted Types and the Sanitizer API. olliewilliams.xyz
Oct 29, 2025. setHTML(), Trusted Types and the Sanitizer API. olliewilliams.xyz
  • Copy link
  • Flag this post
  • Block
Log in

Spark Social

An invite only Bonfire instance, testing out the latest and greatest features from the amazing dev team.

Spark Social: About 路 Code of conduct 路 Privacy 路 Users 路 Instances
Bonfire social 路 1.0.0-rc.3.26 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login