Hacker News new | ask | show | jobs
by minitech 3793 days ago
Stripping tags before encoding is security theatre. Encoding is just replacing 2–4 characters; if it’s not implemented properly, there’s no way tag stripping is.