SectorOne wrote:beelsebob wrote:SectorOne wrote:thanks,
Would have been even nice if html was supported, then i could make all these graphs interactive.
But then, you could also crash someone's browser tab with some extra slow running JS, so I think it's probably worth the trade off

I have this on another site and it´s running very very light so i would not worry about that
If your computer can handle a youtube clip it can handle an interactive graph,
No, the point was that if you could upload arbitrary html and javascript, you could upload things that do all kinds of things that aren't drawing useful graphs. You can upload things that delete all the other contents of the page and replace them with adverts. You can upload things that run incredibly slowly and crash browser tabs. If you know an exploit in a browser, you can upload exploits to the site.
Allowing random users to upload arbitrary code that's going to be executed by other users' browser is not a feature that is a good idea
