-
DOMPurify
DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:
-
SurveyJS
Open-Source JSON Form Builder to Create Dynamic Forms Right in Your App. With SurveyJS form UI libraries, you can build and style forms in a fully-integrated drag & drop form builder, render them in your JS app, and store form submission data in any backend, inc. PHP, ASP.NET Core, and Node.js.
Since we are dealing with user input sanitizing it is a good security practice, you can set up any user input sanitizing method you are familiar with, a good start can be DOMPurify.
To access environment keys on both the local and production environments install and use the dotenv NodeJs module.
Related posts
-
Launched my Social Media website for lonely people living abroad, all thanks to NextJS!
-
Mitigating DOM clobbering attacks in JavaScript
-
Is it harder to build and maintain web applications using vanilla js or react?
-
How to parse a string like below into valid HTML and add it as children to a react component?
-
Using 'innerHTML' in JavaScript