Quote:
Originally posted by xiphoid
I can think off a few bulletin boards that allowed html, and had serious security issue's. I rethink this before applying it.
|
That's why I'd like to specify userid's

Just the guys&girls I trust with it (the 6 administrators

)
I used 'the hack I posted a link to in my first post' for that, but after a few days I found out that some other hacks didn't like that, so I uninstalled

(An example of what went wrong: the /me hack didn't work for the ones that were allowed to post html, and some other things but I can't seem to remember what they were

)
And that's why I thought of a system so that a user with privileges to post html can specify the part of his/her post where html should be enabled.
I think that, if you're carefull enough and only give privileges to the users which can be trusted with them, there shouldn't be a security issue in here.