Search

704: Sanitizer API with Frederik Braun

Download MP3

We talk with Frederik Braun from Mozilla about the Sanitizer API, how it works with HTML tags and web components, what it does with malformed HTML, and where CSP fits in alongside the Sanitizer API.

Tags:

Guests

Frederik Braun

Web · Social

Security engineer and manager working on the Mozilla Firefox web browser

Time Jump Links

  • 00:00:52 Introducing Frederik Braun
  • 00:01:30 What is the Sanitizer API?
  • 00:11:09 Sponsor: Bluehost
  • 00:12:06 Does it santize server side?
  • 00:19:10 You can strip out specific HTML tags
  • 00:23:13 How does Sanitizer work with web components?
  • 00:32:02 How does it handle malformed HTML?
  • 00:33:16 How does CSP impact Sanitizer?
  • 00:37:38 Combining CSP features with Santize API
  • 00:43:13 Is there a fallback strategy?
  • 00:48:35 What are we messing up and should be paying attention to?
  • 00:54:43 What other use cases are there for this?

Episode Sponsors 🧡

Video