Return to v2.3 docs


View Helpers Sanitization Functions string controller

Removes all HTML tags from a string.

Name Type Required Default Description
html string Yes The HTML to remove tag markup from.
encode boolean No true Use this argument to decide whether the output of the function should be encoded in order to prevent Cross Site Scripting (XSS) attacks. Set it to true to encode all relevant output for the specific HTML element in question (e.g. tag content, attribute values, and URLs). For HTML elements that have both tag content and attribute values you can set this argument to attributes to only encode attribute values and not tag content.
<!--- Will output: CFWheels is a framework for ColdFusion. --->
#stripTags('<strong>Wheels</strong> is a framework for <a href="">ColdFusion</a>.')#

Related Functions

Sanitization Functions