Skip to main content
Idea

Sanitize exported SVG for use where security requires it

Related products:Lucidchart
  • February 5, 2024
  • 3 replies
  • 61 views

Forum|alt.badge.img

Azure sanitizes SVG files when added to a wiki, see this link:
https://developercommunity.visualstudio.com/t/referenced-svg-images-dont-work-in-azure-devops-wi/619280#T-N772627

SVG diagrams exported from Lucid do not pass the DOMPurify process because, among other things, they can contain the <use> tag, which is disallowed by DOMPurify for security purposes.

As a result I cannot use Lucid-generated SVG files in our Azure Wiki.

It would be nice to be able to export SVG so it passes DOMPurify without issues.

Comments

Micah
Forum|alt.badge.img+20
  • Lucid community team
  • February 5, 2024

Hi, thanks for this idea! We encourage anyone else who’s interested in this to upvote this post and share any additional details about your use case or what you’d like to see in this experience. For more information about how we manage feedback in this community, please take a look at this post:

 


Forum|alt.badge.img
  • November 23, 2024

I have exactly the same issue, and I was banging my head why text does not show in my SVGs.


Kelsey Gaag
Forum|alt.badge.img+16
  • Lucidite
  • November 26, 2024

Hi ​@zeko77

Thank you for the additional feedback! I apologize for the inconvenience this has caused you.