String Subtypes for Safer Web Programming
Valid HTML markup involves several different contexts and escaping rules, yet many APIs give no precise indication of which context their string return values are escaped for, or how strings should be escaped before being passed in (let’s not even get into character encoding). Most programming languages only have a single String type, so there’s
[...read the post]
mrclay.
rg
song for a future generation