397: User-Generated Content Saftey

CodePen Radio

Episode | Podcast

Date: Wed, 18 Jan 2023 22:48:29 +0000

<p><a href="https://elk.zone/front-end.social/@marvindanig@mastodon.social/109707315096268414">I was asked about</a> the paradoxical nature of CodePen itself recently. CodePen needs to be safe and secure, yet we accept and gleefully execute user-authored code, which is like don't-do-that 101 in web security. Marie and I hop on the show to talk this through as an update from <a href="https://blog.codepen.io/2018/02/13/161-community-safety/">quite a long time ago</a>. It's wonderfully-terribly complicated. Part of what complicates it is that there are many different kinds of worrisome code, from malicious, to distasteful, to spam, and they all need different treatment. This is a daily and never-ending war.</p> <h3 id="h-time-jumps">Time Jumps</h3> <h3 id="h-sponsor-notion">Sponsor: <a href="https://notion.com/codepen">Notion</a></h3> <p><a href="https://notion.com/codepen">Notion</a>&nbsp;is an amazing collaborative tool that not only helps organize your company’s information but helps with project management as well. We know that all too well here at CodePen, as we use Notion for countless business tasks. Learn more and get started for free at&nbsp;<a href="https://notion.com/">notion.com</a>. Take your first step toward an organized, happier team, today.</p>