🏷️
🌐

Encode User Content for Web Display

Prevent XSS attacks by encoding user-generated content before rendering it in HTML pages.

No cal iniciar sessió
Output:
Examples:
Plain text / HTML
Encoded HTML
Output will appear here…
Common HTML entities reference
&&
<&lt;
>&gt;
"&quot;
'&#39;
·&nbsp;
©&copy;
®&reg;
&trade;
&euro;
&mdash;
&hellip;

Web tips

🛡️

Never render user-provided text directly in HTML without encoding. A user could inject <script> tags causing XSS attacks.

🔒

Encoding < as &lt; and > as &gt; turns any HTML tags in user input into plain visible text, not executable markup.

💡

Most server-side frameworks (Django, Rails, Laravel) auto-encode template variables. This tool is for manual encoding or debugging.

🔍

Paste suspicious user input here to inspect what HTML entities it contains before adding it to your codebase or database.

Com funciona

1
Introdueix
Enter your data into the tool above. Everything stays local to your browser.
2
Processa
The tool processes your data instantly in your browser using JavaScript. No server, no waiting.
3
Descarrega
Get your result instantly. Nothing is stored after you leave the page — complete privacy.

Per què usar la nostra?

Completament gratuït — sense costos ocults, mai
No cal compte, correu electrònic ni inici de sessió
Els fitxers no surten mai del teu dispositiu
Sense cap límit de mida de fitxer
Sense marques d'aigua en cap sortida

Also check out…

Preguntes freqüents