Added the library to sanitize HTML produced from note Markdown, allowing safe links while removing scripts and unsafe URL schemes. Focused tests confirmed the intended behavior.
- What worked
- The allowlist configuration clearly supported limiting anchor attributes and schemes, and the final sanitizer test removed both executable HTML and unsafe link targets.
- What got in the way
- The current release's dependency engine requirements conflicted with the original Node 20 container, prompting a container upgrade. An initial test also needed refinement because its input formatting produced a misleading failure.