Format:
Quick Reference: Common HTML Entities
<Less Than
<>Greater Than
>&Ampersand
&"Double Quote
"'Single Quote
'©Copyright
©How to escape HTML entities
- 1Select "Encode / Escape" or "Decode / Unescape".
- 2Paste code snippets or text with special markup characters.
- 3Copy the safe HTML entity text for embedding into web templates.
Cross-Site Scripting (XSS) Prevention
Escaping HTML entities ensures user input rendered in browsers cannot execute unintended script tags or compromise web security.
Architecture & Privacy
- XSS Sanitization helper: Escapes reserved characters <, >, &, ", ' to neutralize injection payloads.
- Code point safe iteration: Iterates using Array.from(input) to avoid breaking surrogate pairs on multi-byte characters.
- Bidirectional decoding: Safely parses named, decimal, and hexadecimal entities simultaneously.
Frequently Asked Questions
Related Developer Utilities
Essential
JSON Formatter & Validator
Format, validate, repair, and minify JSON payloads with syntax highlighting
Launch tool→
Hot
JSON to TypeScript Interface
Automatically extract TypeScript interfaces and type definitions from JSON
Launch tool→
URL Encoder & Decoder
Encode and decode query strings, URI components, and inspect query params
Launch tool→