r/webdev 🛠 Dev 👁 0

My tool renders LLM output contain code as markdown which increase risk of XSS. How do I secure the app?

I am building a site in Next.js with BYOK feature. The users can connect to their LLM provider directly. I don't store their API keys at all, the keys are stored locally in localstorage. I don't want to be responsible to

📄

This source provides headlines only. Use the button below to read the complete article on the original site.

📰 Read the original article on r/webdev

Originally published by r/webdev. Aggregated on AIWithGhost for educational purposes — full credit and traffic to the original publisher.