GitHub user dosubot[bot] added a comment to the discussion: Handlebars graphic
<!-- Answer --> Superset's Handlebars chart plugin sanitizes HTML output by default, which can block base64 images in `<img>` tags. To allow base64 images to render, you need to extend the HTML sanitization schema in your Superset backend config using the `HTML_SANITIZATION_SCHEMA_EXTENSIONS` setting. This lets you permit the `data:` URI scheme for `<img>` tags. Superset's Content Security Policy already allows `data:` URIs for images, so the main requirement is updating the sanitization config. More details on how the chart and sanitization work are in the [HandlebarsViewer component](https://github.com/apache/superset/blob/829e4d92d91ceae4b43b1ed3b063ffe45377799c/superset-frontend/plugins/plugin-chart-handlebars/src/components/Handlebars/HandlebarsViewer.tsx) and [SafeMarkdown](https://github.com/apache/superset/blob/829e4d92d91ceae4b43b1ed3b063ffe45377799c/superset-frontend/packages/superset-ui-core/src/components/SafeMarkdown/SafeMarkdown.tsx). If you have access to your Superset deployment's configuration, ask your administrator to update `HTML_SANITIZATION_SCHEMA_EXTENSIONS` to allow `<img>` tags with `src="data:"` attributes. This should resolve the issue and let your base64 images render in Handlebars charts. <!-- Dosu Comment Footer --> *To reply, just mention [@dosu](https://go.dosu.dev/dosubot).* --- <sup>How did I do? [Good](https://app.dosu.dev/response-feedback/5cafc570-f690-43bb-89f0-eff0bddee34f?feedback_type=great_response) | [Irrelevant](https://app.dosu.dev/response-feedback/5cafc570-f690-43bb-89f0-eff0bddee34f?feedback_type=irrelevant_answer) | [Incorrect](https://app.dosu.dev/response-feedback/5cafc570-f690-43bb-89f0-eff0bddee34f?feedback_type=incorrect_sources) | [Verbose](https://app.dosu.dev/response-feedback/5cafc570-f690-43bb-89f0-eff0bddee34f?feedback_type=too_verbose) | [Hallucination](https://app.dosu.dev/response-feedback/5cafc570-f690-43bb-89f0-eff0bddee34f?feedback_type=hallucination) | [Report 🐛](https://app.dosu.dev/response-feedback/5cafc570-f690-43bb-89f0-eff0bddee34f?feedback_type=bug_report) | [Other](https://app.dosu.dev/response-feedback/5cafc570-f690-43bb-89f0-eff0bddee34f?feedback_type=other)</sup> [](https://app.dosu.dev/a28d3c7e-a9d3-459e-9fb6-3a6f9ff4f357/ask?utm_source=github)& nbsp;[](https://go.dosu.dev/discord-bot) [](https://twitter.com/intent/tweet?text=%40dosu_ai%20helped%20me%20solve%20this%20issue!&url=https%3A//github.com/apache/superset/discussions/35689) GitHub link: https://github.com/apache/superset/discussions/35689#discussioncomment-14701565 ---- This is an automatically sent email for [email protected]. To unsubscribe, please send an email to: [email protected] --------------------------------------------------------------------- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
