luci: Index | Files

package sanitizehtml

import ""

Package sanitizehtml implements a sanitizer of a very limited HTML. See Sanitize comment.


Package Files


func Sanitize Uses

func Sanitize(w io.Writer, r io.Reader) (err error)

Sanitize strips all HTML nodes except allowed ones.

Unless explicitly specified, attributes are stripped. Allowed elements:

- p, br
- strong, em
- a
  - if href attribute is not a valid absolute HTTP(s) link, it is replaced
    with an innocuous one.
  - alt attribute is allowed
- ul, ol, li

Elements <script> and <style> are ignored entirely. For all other HTML nodes, Sanitize ignores the node, but visits its children.

Package sanitizehtml imports 6 packages (graph). Updated 2018-12-14. Refresh now. Tools for package owners.