See https://github.com/advanced-security/codeql-sap-js/blob/b1c726bc6bae78c800f435e6aee4f00a88ba8de9/.github/codeql/extensions/ui5-data-extensions.yml#L105C77-L105C77 The [documentation on `writeAttributeEscaped`](https://sapui5.hana.ondemand.com/sdk/#/api/sap.ui.core.RenderManager%23methods/writeAttributeEscaped) states that the value is encoded to avoid XSS attacks.