Welcome to OStack Knowledge Sharing Community for programmer and developer-Open, Learning and Share
Welcome To Ask or Share your Answers For Others

Categories

0 votes
941 views
in Technique[技术] by (71.8m points)

markdown - Hugo dynamic decide "unsafe" <!-- raw HTML omitted -->

I use goldmark as the format.

And I know I can edit the config.toml files to stop the behavior about raw HTML omitted with

[markup.goldmark.renderer]
    unsafe = true

My question is, can I use the setting above in the front matter (not the config.toml)?

For example, If I have many markdown files and I want one of them applying unsafe = true and others are not, does it is possible?

If not, can you explain why there is a need for a special distinction under the static site and is it possible to be attacked because of this? (This is actually what I really care about; otherwise, I am very willing to directly set the whole domain to turn on the insecure mode so that markdown is more comprehensive).


与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…
Welcome To Ask or Share your Answers For Others

1 Answer

0 votes
by (71.8m points)

To answer the question: "Can unsafe mode be applied partially, i.e. in the front matter in Hugo?"

No, it is not (and should not be) possible to define unsafeHTML in front matter. Allowing content creators to override the security model would be self-defeating.


与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…
Welcome to OStack Knowledge Sharing Community for programmer and developer-Open, Learning and Share
Click Here to Ask a Question

...