fix: Remove escapeHTML()
function
Removes the `escapeHTML()` function because `markdown-it` has support for escaping HTML, so everything remains XSS safe
This commit is contained in:
parent
3aa8a9b165
commit
9fef19dbc3
@ -1,6 +1,5 @@
|
||||
<script lang="ts">
|
||||
import { type TypeMessage } from '$lib/types';
|
||||
import escapeHTML from '$lib/functions/escapeHTML';
|
||||
import Prose from '$lib/components/prose.svelte';
|
||||
import renderMarkdown from '$lib/functions/renderMarkdown';
|
||||
const { message, imageSrc, user }: TypeMessage = $props();
|
||||
|
@ -1,3 +0,0 @@
|
||||
export default function escapeHTML(text: string) {
|
||||
return text.replaceAll('&', '&').replaceAll('<', '<').replaceAll('>', '>').replaceAll('"', '"').replaceAll("'", ''');
|
||||
}
|
Loading…
Reference in New Issue
Block a user