HTML escape. Escape text for safe embedding in HTML: & < > " ' become entities. XSS-safe output encoding.