HTML escaping converts special characters like <, >, & into their entity equivalents so they display correctly without being interpreted as HTML markup.
When do I need to escape HTML? +
Always escape user-generated content before inserting it into HTML to prevent XSS attacks. Also needed when displaying code samples, storing HTML in databases, or passing HTML through APIs.
Does this send my data to a server? +
No. Everything runs entirely in your browser. Nothing is sent to any server. Your text stays completely private.