Hacker News new | ask | show | jobs
by etler 290 days ago
I've been working on a similar project using MDX as the parser to enable runtime static JSX tags in markdown: https://www.timetler.com/2025/08/19/unlocking-rich-ui-compon...

I'm curious why you decided to go with a DSL instead of embedding an established language?

1 comments

MDX is not secure by default, you'd be executing arbitrary JS code potentially sent by untrustworthy sources, which is advised against in the MDX website.
> you'd be executing arbitrary JS code potentially sent by untrustworthy sources

On the other hand, this is true of every web site using a JS-world framework, and worse, even static sites if they use JS ad scripts.