diff options
author | Joey Hess <joey@kitenet.net> | 2011-12-29 12:08:48 -0400 |
---|---|---|
committer | Joey Hess <joey@kitenet.net> | 2011-12-29 12:08:48 -0400 |
commit | bcd863df2a65629c2ebd011a5c3fae5d93627265 (patch) | |
tree | 7fa4b58b520ddd1ad375e5f7c5523a243e5b7c18 | |
parent | 9244b47d005ad878178e087b2f679d57d81b30df (diff) | |
parent | caf453fc2a9f87b1c8a4b064c05d45f06bf8596a (diff) | |
download | ikiwiki-bcd863df2a65629c2ebd011a5c3fae5d93627265.tar ikiwiki-bcd863df2a65629c2ebd011a5c3fae5d93627265.tar.gz |
Merge branch 'master' of ssh://git.ikiwiki.info
-rw-r--r-- | doc/plugins/htmlscrubber.mdwn | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/doc/plugins/htmlscrubber.mdwn b/doc/plugins/htmlscrubber.mdwn index 98933d99e..08c81212b 100644 --- a/doc/plugins/htmlscrubber.mdwn +++ b/doc/plugins/htmlscrubber.mdwn @@ -10,9 +10,9 @@ Parser, documented at <http://web.archive.org/web/20110726052341/http://feedparser.org/docs/html-sanitization.html>. Notably it strips `style` and `link` tags, and the `style` attribute. -All attributes that can be used to specify an url are checked to make sure -that the url is in a known, safe scheme, and to block embedded javascript -in such urls. +Any attributes that could be used to specify a URL are checked to ensure +that they are known, safe schemes. It will also block embedded javascript +in such URLs. It uses the [[!cpan HTML::Scrubber]] perl module to perform its html sanitisation, and this perl module also deals with various entity encoding |