public
Description: A Markup White Lister
Homepage:
Clone URL: git://github.com/hassox/whistler.git
hassox (author)
Wed Mar 19 06:12:24 -0700 2008
commit  23b575740ef007cc48883b5c4e9f427156a46f9a
tree    acb59dacf7827f5bb20a3369a24fec91d05c937b
parent  f01e16aa37d59480f4efa739a55ea68877695634
name age message
file LICENSE Loading commit data...
file README
file Rakefile
file TODO
directory lib/
directory spec/
README
Whistler 
==============

Whistler is a white listing markup filter based on the specifications of the rails plugin by Rick Olson, aka 
technoweenie.
http://techno-weenie.net/
Whistler relies on the Hpricot library http://code.whytheluckystiff.net/hpricot

This is very alpha at the moment.  Please help make it great.
 
Whistler strips, and or sanitizes arbitrary XML/HTML style markup of any tags not explicitly
included in the white list.  It doesn't try to play catch-up with possible exploites such as black-listing systems do.

Usage is very simple.

=== Example
# Applies the normal white list defaults

Whistler.white_list( dodgy_markup ) 


# Adds custom tags to allow
Whistler.white_list(dodgy_markup, :add_tags => %w(news_tag my_tag other_tag))

If Whistler is unable to read tags as "tags" it will instead sanitize potential XSS attempts in the text.
Normal, non-malicious text should still appear correctly.