works in chat message too, just got redirected to example.com and someone's embedding an audio file using their username so I'm guessing there's just no sanitization anywhere
You criticized about the random code generation function. Could you explain why it is bad? Though I code, I am no expert and would really like to know.
Reminds me of a little encrypted chat app I made with a friend a few weeks ago. Ours is intended for two-way communication: http://cifrachat.herokuapp.com/
This is misleading - it uses Firebase for the server! How can the OP claim that the server is not storing messages if the OP doesn't control the server?
I have no reason to trust that Firebase isn't storing the messages. Why should I?
https://ephchat.com/?room=%3C/title%3E%3Cimg%20src=%22http:/...