Hacker News new | ask | show | jobs
by cmdrfred 3726 days ago
Even better throw the sandbox[0] tag on it and then, allow scripts only if there is no other option.

[0]http://www.html5rocks.com/en/tutorials/security/sandboxed-if...