Communities

Writing
Writing
Codidact Meta
Codidact Meta
The Great Outdoors
The Great Outdoors
Photography & Video
Photography & Video
Scientific Speculation
Scientific Speculation
Cooking
Cooking
Electrical Engineering
Electrical Engineering
Judaism
Judaism
Languages & Linguistics
Languages & Linguistics
Software Development
Software Development
Mathematics
Mathematics
Christianity
Christianity
Code Golf
Code Golf
Music
Music
Physics
Physics
Linux Systems
Linux Systems
Power Users
Power Users
Tabletop RPGs
Tabletop RPGs
Community Proposals
Community Proposals
tag:snake search within a tag
answers:0 unanswered questions
user:xxxx search by author id
score:0.5 posts with 0.5+ score
"snake oil" exact phrase
votes:4 posts with 4+ votes
created:<1w created < 1 week ago
post_type:xxxx type of post
Search help
Notifications
Mark all as read See all your notifications »
Q&A

Welcome to Codidact Meta!

Codidact Meta is the meta-discussion site for the Codidact community network and the Codidact software. Whether you have bug reports or feature requests, support questions or rule discussions that touch the whole network – this is the site for you.

Post History

71%
+3 −0
Q&A `dir=rtl` and inline HTML CSS styling aren't working (quite urgent)

From what I can see, supporting the [dir] attribute can be safely done. However, we cannot support the [style] attribute for security reasons. CSS allows you to do a lot of things, many of those b...

posted 3y ago by luap42‭

Answer
#1: Initial revision by user avatar luap42‭ · 2021-03-28T10:57:20Z (about 3 years ago)
From what I can see, supporting the `[dir]` attribute can be safely done. However, we cannot support the `[style]` attribute for security reasons. 

CSS allows you to do a lot of things, many of those being a possible security or exploit risk. Even simple things like background images could be used to collect sensitive data without the knowledge of the users (tracking pixels).

I'll file an issue for the `[dir]` attribute, though, so that we can look into allowing it.