Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

html special chars with xss_foliate_all_models #8

Open
sneakyweasel opened this issue May 22, 2017 · 2 comments
Open

html special chars with xss_foliate_all_models #8

sneakyweasel opened this issue May 22, 2017 · 2 comments

Comments

@sneakyweasel
Copy link

Hi thanks a lot for this great gem.
I'd like to use the convenient Loofah::XssFoliate.xss_foliate_all_models but it doesn't seem to allow me to specify that I don't want special characters converted and I would prefer to keep an opt out way for scrubbing. How should I output my scrubbed content or disallow special character converting using the opt-out scrubbing option. (Using RoR 5)

Debugging & great fun => Debugging & great fun

@magicmarkker
Copy link

👍 also looking for this

@flavorjones
Copy link
Owner

Hi, apologies for not replying in such an embarrassingly long time. Currently loofah-activerecord doesn't allow you to globally specify to opt out of HTML entities. If you wanted to craft a PR to add this feature, I'd be happy to collaborate with you and review it.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants