Glossary Development

HTML entity

An HTML entity is a code such as `&` or `©` that stands for a character that is reserved in HTML or hard to type.

Last reviewed:

AdSense Placeholder
Slot: header_reference_page

In more detail

&, < and > must be written as &amp;, &lt; and &gt; in text. Escaping user input this way is the main defence against cross-site scripting. See the HTML Entities Cheat Sheet.

Try these tools

See also

  • Glossary Cross-site scripting (XSS)
    Cross-site scripting (XSS) is a vulnerability in which an attacker gets a website to deliver malicious script to other users' browsers.
  • Glossary Unicode
    Unicode is the universal standard that gives every character in the world's writing systems, plus symbols and emoji.
AdSense Placeholder
Slot: footer_leaderboard