When inserting text into HTML, pass it through escapeHTML first.
Since you're not producing any HTML in the snippet you posted, its use of escapeHTML is premature.
In reply to Re: Best way to use escapeHTML
by ikegami
in thread Best way to use escapeHTML
by Anonymous Monk
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |