🏷️
🌐

Encode User Content for Web Display

Prevent XSS attacks by encoding user-generated content before rendering it in HTML pages.

Ingen pålogging kreves
Output:
Examples:
Plain text / HTML
Encoded HTML
Output will appear here…
Common HTML entities reference
&&
<&lt;
>&gt;
"&quot;
'&#39;
·&nbsp;
©&copy;
®&reg;
&trade;
&euro;
&mdash;
&hellip;

Web tips

🛡️

Never render user-provided text directly in HTML without encoding. A user could inject <script> tags causing XSS attacks.

🔒

Encoding < as &lt; and > as &gt; turns any HTML tags in user input into plain visible text, not executable markup.

💡

Most server-side frameworks (Django, Rails, Laravel) auto-encode template variables. This tool is for manual encoding or debugging.

🔍

Paste suspicious user input here to inspect what HTML entities it contains before adding it to your codebase or database.

Hvordan det fungerer

1
Gå inn
Enter your data into the tool above. Everything stays local to your browser.
2
Prosess
The tool processes your data instantly in your browser using JavaScript. No server, no waiting.
3
Last ned
Get your result instantly. Nothing is stored after you leave the page — complete privacy.

Hvorfor bruke vår?

Helt gratis – aldri noen skjulte kostnader
Ingen konto, e-post eller pålogging kreves
Filer forlater aldri enheten din
Ingen filstørrelsesbegrensninger overhodet
Ingen vannmerker på noen utgang

Also check out…

Ofte stilte spørsmål