LJ have just tweaked their HTML/CSS cleaner, according to the support page. In the process, they drove cart and horses through my carefully hand-crafted S1 style here. It may take come time to sort it out. If anyone can point me at a list of what exactly this new beastie is twitchy about, it could make my life a lot easier; otherwise I'm going to have to reverse-engineer things to work out what is and isn't allowed.
While they have some legitimate concerns* I think they're currently stripping stuff that's pretty harmless. For example, how the hell can
Well, at least it proves that my "graceful degradation" works as intended...
*there are some downright terrifying browser-specific features out there, from the perspective of defending against cross-site scripting attacks.
[edit: there was a post on the subject on
lj_maintenance shortly after a wrote this. I think I'll wait a day or two for things to settle down before I attempt to clean up. I mean, it's not like many people read this journal in the native style, rather than via their own LJ-friends view or some other aggregator]
While they have some legitimate concerns* I think they're currently stripping stuff that's pretty harmless. For example, how the hell can
<style type="text/css"> be malicious?Well, at least it proves that my "graceful degradation" works as intended...
*there are some downright terrifying browser-specific features out there, from the perspective of defending against cross-site scripting attacks.
[edit: there was a post on the subject on
no subject
Date: 2006-02-08 11:22 (UTC)FWIW, it doesn't seem to be objecting to <style type="text/css">, it just "cleans" what's inside them. Where you may be going wrong is using an @import (which is, apparently, suspect) instead of <link rel="stylesheet" href="[address]" type="text/css">...
no subject
Date: 2006-02-08 12:16 (UTC)no subject
Date: 2006-02-08 12:32 (UTC)My main criteria for viewing style is that it should display user icons on my individual posts, and collapse down to view on a PDA reasonably well (ie as little side-scrolling as possible). I've not viewed my current ("Magazine") on PDA yet but it looks like it should be reasonable...
no subject
Date: 2006-02-08 14:32 (UTC)What the PDA you couldn't justify paying for but only occasionally use on the semi-permanent loan? :-P
no subject
Date: 2006-02-08 14:37 (UTC)And no, I couldn't justify it, what with having no money and no income at the time. I sort of thought you'd prefer rent that month...
no subject
Date: 2006-02-08 17:15 (UTC)*Yes, you just became a Potential Usability Tester!
no subject
Date: 2006-02-08 17:21 (UTC)no subject
Date: 2006-02-08 17:34 (UTC)<gratuitous browser pimpage>
I hear lots of good things about Opera's PDA browsers, though I've never had a chance to try it myself.
</gratuitous browser pimpage>
no subject
Date: 2006-02-08 18:29 (UTC)