Quantcast
Channel: Issues for Drupal core
Viewing all articles
Browse latest Browse all 302749

[meta] Refactor and remove as many SafeMarkup::set() calls as possible

$
0
0

Follow-up to #1825952: Turn on twig autoescape by default

Problem/Motivation

SafeMarkup::set() is mostly for internal use only. For the most part, existing APIs like t(), String::checkPlain(), XSS::filter(), drupal_render(), etc. should be marking the things they sanitize, and markup in general should be moved into templates wherever possible so the themer has control of it.

#2280965: [meta] Document or remove every SafeMarkup::set() call is postponed on this issue's progress.

Proposed resolution

Remove as many SafeMarkup::set() calls from core as possible.

Remaining tasks

TBD

Contributor tasks needed
TaskNovice task?Contributor instructionsComplete?
when this is fixed, unpostpone #2280965: [meta] Document or remove every SafeMarkup::set() call

Viewing all articles
Browse latest Browse all 302749

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>