From 518bc344ddbbfd0fe05a1b9fad81f097af0e4dc7 Mon Sep 17 00:00:00 2001 From: wonderlandpark Date: Thu, 13 May 2021 16:24:08 +0900 Subject: [PATCH] chore: prevent clickjacking --- components/Markdown.tsx | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/components/Markdown.tsx b/components/Markdown.tsx index f843476..019a3ca 100644 --- a/components/Markdown.tsx +++ b/components/Markdown.tsx @@ -100,6 +100,13 @@ const Markdown = ({ text, options={}, allowedTag=[], components={} }: MarkdownPr ...allowedTag ], allowedAttributes: false, + allowedClasses: { + '*': ['align-middle'], + a: ['anchor', 'mr-1'], + svg: ['octicon-link'], + img: ['emoji', 'special'] + }, + allowedStyles: {} }) } />