Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Not really. Lots of template engines escape and/or sanitize interpolated expressions, according to the context, by default.


Well that goes far beyond what I think of as "string templates", now you're parsing the string into HTML.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: