/** * DOM-backed HTML sanitizer backend. * * Parses with `DOMParser` into an inert document, walks the tree applying the * shared policy from `sanitize-policy.ts`, and re-serializes. Used wherever a * DOM exists; `sanitize-string.ts` covers the runtimes that have none (#229). * * @module bquery/security * @internal */ import type { SanitizeOptions } from './types.cjs'; /** * Plain-text extraction with a DOM. The counterpart of `stripTagsString`. * * Returns text, not markup, so it is deliberately *not* escaped — `stripTags()` * documents its return value as plain text. The HTML-sink path * (`sanitizeHtml(..., { stripAllTags: true })`) escapes instead; see * `sanitizeHtmlDom`. * @internal */ export declare const stripTagsDom: (html: string) => string; /** * Core sanitization logic (without Trusted Types wrapper). * @internal */ export declare const sanitizeHtmlDom: (html: string, options?: SanitizeOptions) => string; //# sourceMappingURL=sanitize-dom.d.ts.map