Security
Best Practices
To systematically block XSS bugs, Angular treats all values as untrusted by default.
Values inserted into the DOM are sanitized and escaped.
You can manually sanitize untrusted values with
DomDanitizer.sanitize
.
Always use
AOT
Ahead-of-Time template compiler in production deployments.
Bypass Security
To mark values as truted, inject
DomSanitizer
Last updated