Prepended constants with C_ to avoid reserved words as per https://www.php.net/manual...
[htmlpurifier/darkodev.git] / library / HTMLPurifier / ConfigSchema / schema / URI.DisableExternalResources.txt
blobabcc1efd61328375ffdb5f233b265b69b612a0c9
1 URI.DisableExternalResources
2 TYPE: bool
3 VERSION: 1.3.0
4 DEFAULT: false
5 --DESCRIPTION--
6 Disables the embedding of external resources, preventing users from
7 embedding things like images from other hosts. This prevents access
8 tracking (good for email viewers), bandwidth leeching, cross-site request
9 forging, goatse.cx posting, and other nasties, but also results in a loss
10 of end-user functionality (they can't directly post a pic they posted from
11 Flickr anymore). Use it if you don't have a robust user-content moderation
12 team.
13 --# vim: et sw=4 sts=4