# frozen_string_literal: true require "better_html/test_helper/safety_error" require "better_html/ast/iterator" require "better_html/tree/tag" require "better_html/parser" module BetterHtml module TestHelper module SafeLodashTester SAFETY_TIPS = <<~EOF ----------- The javascript snippets listed above do not appear to be escaped properly in their context. Here are some tips: Always use lodash's escape syntax inside a html tag: ^^^^ Always use JSON.stringify() for html attributes which contain javascript, like 'onclick', or twine attributes like 'data-define', 'data-context', 'data-eval', 'data-bind', etc:
^^^^^^^^^^^^^^ Never use