The function below is all good but it doesn\'t prevent such as XSS
EG:
I would like to prevent such &quo