๐Ÿท๏ธ
๐ŸŒ

Encode User Content for Web Display

Prevent XSS attacks by encoding user-generated content before rendering it in HTML pages.

Nid oes angen mewngofnodi
Output:
Examples:
Plain text / HTML
Encoded HTML
Output will appear hereโ€ฆ
Common HTML entities reference
&&
<&lt;
>&gt;
"&quot;
'&#39;
ยท&nbsp;
ยฉ&copy;
ยฎ&reg;
โ„ข&trade;
โ‚ฌ&euro;
โ€”&mdash;
โ€ฆ&hellip;

Web tips

๐Ÿ›ก๏ธ

Never render user-provided text directly in HTML without encoding. A user could inject <script> tags causing XSS attacks.

๐Ÿ”’

Encoding < as &lt; and > as &gt; turns any HTML tags in user input into plain visible text, not executable markup.

๐Ÿ’ก

Most server-side frameworks (Django, Rails, Laravel) auto-encode template variables. This tool is for manual encoding or debugging.

๐Ÿ”

Paste suspicious user input here to inspect what HTML entities it contains before adding it to your codebase or database.

Sut Mae'n Gweithio

1
Ewch i mewn
Enter your data into the tool above. Everything stays local to your browser.
2
Proses
The tool processes your data instantly in your browser using JavaScript. No server, no waiting.
3
Lawrlwythwch
Get your result instantly. Nothing is stored after you leave the page โ€” complete privacy.

Pam defnyddio ein un ni?

โœ“Hollol rhad ac am ddim - dim costau cudd, byth
โœ“Nid oes angen cyfrif, e-bost na mewngofnodi
โœ“Nid yw ffeiliau byth yn gadael eich dyfais
โœ“Dim cyfyngiadau maint ffeil o gwbl
โœ“Dim dyfrnodau ar unrhyw allbwn

Also check outโ€ฆ

Cwestiynau Cyffredin