RSpec.shared_examples 'HasXssSanitizedNote' do |model_factory:| describe 'XSS prevention' do context 'with injected JS' do subject { create(model_factory, note: 'test 123 some text') } it 'strips out