Element: setHTML() method on MDN

60 points by freddyb


freddyb

This is ready for testing in Firefox Nightly.

The method provides an xss-safe alternative to innerHTML and I would love to hear what you think about the default list so far.

In particular, I am really interested in hearing what you think it should and shouldn’t filter and why.

Here or in https://github.com/WICG/sanitizer-api/issues