-
Suggestion
-
Resolution: Won't Fix
-
None
-
None
http://jira.atlassian.com/browse/CONF-14431:
Can I suggest we rename the #htmlSafe directive? It's the same as the annotation @htmlSafe but means the opposite.
The annotation means that the method should not be automatically encoded because its safe.
The directive means the velocity template should have the auto encoding enabled to make it html safe.
We'll go with Don's suggested name of #autoEncodeHtml().
- is related to
-
CONFSERVER-14431 Write Anti-XSS documentation for plugin developers
- Closed