Editor & Markdown: Security #996
Replies: 2 comments
-
According to the TipTap documents, there is the ability to add a nonce, via: https://tiptap.dev/docs/editor/api/editor#injectnonce to help address the possibility of cross-site-scripting. I haven't looked into how to implement it, but it could be a place to start. |
Beta Was this translation helpful? Give feedback.
0 replies
-
@BubeDameKoenig this isn't a feature request and more of a question, so I'm going to close it. If you think something specific should be improved, then please submit that as a feature request or if you think this is a problem then please open an issue. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
In this Laravel video, Stephen Rees-Carter talks about how editors & markdowns are a major security risk. Is there a way to increase security by default?
https://youtu.be/q6z2gNlF54o?t=577
Beta Was this translation helpful? Give feedback.
All reactions