Logo Icon Logo
A Crowd-sourced Cookbook on Writing Great Android® Apps
GitHub logo Twitter logo OReilly Book Cover Art

Don't Allow JavaScript in WebView

In Chapter: Securing Your Application
Author: Ian Darwin ('idarwin')
Published? true
FormatLanguage: AsciiDoc


You don't want vast swathes of undisciplined code running in every WebView


Don't call setEnableJavaScript(true).


Of course this will break JS frameworks.