====== Configuration Setting: htmlok ====== Defines if embedding HTML using the ''%%%%'' tags is allowed. This may break the layout and XHTML compliance if wrong HTML is inserted. ---- :!: **This option and mechanism has been removed from the 2023 "[[:changes#release_2023-04-04a_jack_jackrum|Jack Jackrum]]" release. Replacement possible via the [[plugin:htmlok|HTMLok plugin]].** ---- **The following is only applicable until release "Igor":** :!: You should **never enable this option**, unless: * you are the only user with write permissions * you know exactly what you're doing :!: This is a big security risk when used on a freely accessible site because it enables anyone to embed arbitrary JavaScript in your wiki pages. This can be used to steal cookie and gain unauthorized privileged access to your wiki, leading to possibly escalated privileges which may allow to take over your server, steal personal information etc. * Type: Boolean * Default: ''0'' {{:config:security.png }} **Security Warning**: Changing this option could present a security risk. ===== See also ===== * [[phpok|Configuration Setting: phpok]] * [[:config:|Configuring DokuWiki]] * [[faq:html|FAQ: HTML does not work]]