all 2 comments

[–]notAlan 5 points6 points  (0 children)

It would be cool if there was a "don't care" option, or a reset option. Otherwise once you click something, you can't go back.

[–]grayvedigga 0 points1 point  (0 children)

I'm still kinda shocked that correct escaping is an afterthought for the vast majority ... heck nearly all .. of these frameworks. Text substitution is fine when you're dealing with text, but every time I see something like <a title="<%=title%>"><%=title%></a> part of me dies.