You are creating a blog site by using HTML5 and JavaScript. An inline frame enables users to post
comments. It is possible for users to inject malicious scripts into their comments.
You need to minimize the ability for malicious scripts to execute on the site.
Which line of code should you use?
A.
<iframe sandbox src=”frame1.htmlnX/iframe>
B.
<iframe seamless=”allowscripts” src=”frame1.html”<>/iframe>
C.
<iframe seamless src=”frame1.html”></iframe>
D.
<iframe sandbox=”allowscripts” src”frame1.html”x/iframe>
why not D?
It’s not D because allowscripts needs to be allow-scripts. http://www.w3schools.com/tags/att_iframe_sandbox.asp
I think is A