HTML headers that do not escape their text
version 1.0.1
license MIT
native-modules False
elm-version 0.18.0 <= v < 0.19.0
Tag 1.0.1
Committed At 2018-05-18 12:49:28 UTC
elm-lang/html 2.0.0 <= v < 3.0.0 2.0.0
elm-lang/core 5.0.0 <= v < 6.0.0 5.1.1



A library that defines HTML headers with unescaped text.

Whereas the standard headers escape the text (Html.h1 [] [Html.text "this & that"] renders as <h1>this &amp; that</h1>), these headers do not (Html.UnsafeHeaders.h1 [] "this & that" renders as <h1>this & that</h1>). The latter is unsafe because if the text is user-generated, then a malicious user can insert any HTML or even JavaScript into a page, so use with care.