| 123456789101112131415161718192021222324252627282930313233343536373839 | xss_whitelist: [admin.super] # Whitelist of user access that should 'skip' XSS checkingxss_enabled:    on_events: true    invalid_protocols: true    moz_binding: true    html_inline_styles: true    dangerous_tags: truexss_invalid_protocols:    - javascript    - livescript    - vbscript    - mocha    - feed    - dataxss_dangerous_tags:    - applet    - meta    - xml    - blink    - link    - style    - script    - embed    - object    - iframe    - frame    - frameset    - ilayer    - layer    - bgsound    - title    - baseuploads_dangerous_extensions:    - php    - html    - htm    - js    - exesanitize_svg: true
 |