This has been asked before but I need 100% clarity on this issue as it\'s very important for me to get it right.
The situation: A message system on a website. The
Use htmlspecialchars when outputting on an HTML page. It will display the data the same way the user entered it (so users can use something like <3 in their messages without stripping the rest of it)
<3