Wordpress validating forms

There is a distinction between how input and output are managed, and this document will walk you through that.

wp_kses() can be used on everything that is expected to contain HTML.

111111111 is not a valid zip code but would be saved fine with the function above).

This style of validation most closely follows Word Press’ whitelist philosophy: only allow the user to input what you’re expecting.

There are several variants of the main function, each featuring a different list of built-in defaults.

A popular example is wp_kses_post(), which allows all markup normally permitted in posts.

since by definition it would strip the scripts that are being generated.