Provide warning on Site Status page when "Limit allowed HTML tags" filter is not used?

Created on 20 June 2025, 24 days ago

Problem/Motivation

Would it make sense to display a warning on the Status Report when one or more text formats are not using the "Limit allowed HTML tags" filter?

This was discussed as part of #3530329-3: Filter enforcement and raw HTML output β†’ as a way to be a little more proactive about helping site admins ensure the necessary text formats are secure.

Steps to reproduce

No such warning currently exists, so nothing to see here.

Proposed resolution

Add a warning to the Status Report page is one or more of the enabled text formats do not have the "Limit allowed HTML tags" filter enabled.

Remaining tasks

Decide if this is something we want. Add necessary code.

User interface changes

A potential new warning on the Status Report page.

Release notes snippet

A new warning will appear on the Status Report if one or more enabled text formats are configured without the "Limit allowed HTML tags" filter is enabled.

✨ Feature request
Status

Active

Version

11.2 πŸ”₯

Component

filter.module

Created by

πŸ‡ΊπŸ‡ΈUnited States ultimike Florida, USA

Live updates comments and jobs are added and updated live.
Sign in to follow issues

Comments & Activities

Production build 0.71.5 2024