[pmwiki-users] Permissions, edits and comments

Crisses crisses at kinhost.org
Sun Oct 1 05:22:28 CDT 2006


On Sep 30, 2006, at 1:58 PM, Mike wrote:

> while I'm sure that having BlockList incorporated into the core, I  
> don't
> feel that blocking all possibly undesired markups is the best way  
> to go.
> Wouldn't it be simpler and more transparent to somehow "escape" the
> stuff a user enters? Which means, that if the user enters (:title  
> foo:),
> well, then it shows up as a comment saying "(:title foo:)".
> I've used this approach with the PHP function htmlspecialchars,  
> which is
> a similar logic to what I'm trying to describe....

Do you think you want to block ALL markup using (:xxx:)?

What about custom markup or markup users may legitimately want to use  
such as:

(:comment This is a comment:)
(:div:)
(:table:)
(:nl:)
(:linebreaks:)
(:pagelist:)
...

or more importantly:

(:markup:)(:markupend:)

Crisses
-------------- next part --------------
An HTML attachment was scrubbed...
URL: /pipermail/pmwiki-users/attachments/20061001/308d14cf/attachment.html 


More information about the pmwiki-users mailing list