tuatara Reply #1, 3 years, 8 months ago
I'm intending to allow HTML in my comments, but I'm wary of introducing XSS vulnerabilities. I was planning to use the HTML Purifier library to sanitise the HTML, but I can't see a MODx event that fires when a new comment is posted. Is there any event that will include posting comments? How difficult would it be to add an event into the Jot code?
Thanks for any help ...
Cheers
Matt
Thanks for any help ...
Cheers
Matt