diff --git a/src/messageprocessor.ts b/src/messageprocessor.ts
index 578823643ced24d35ab8c56ce0f0892f2d3a0efe..fb236c0625adfbf8c119e363b02b444f1cb2fe3c 100644
--- a/src/messageprocessor.ts
+++ b/src/messageprocessor.ts
@@ -10,6 +10,10 @@ const EMOJI_SIZE = "1em";
 const EMOJI_REGEX = /<:\w+:?([0-9]*)>/g;
 const MATRIX_TO_LINK = "https://matrix.to/#/";
 
+marked.setOptions({
+    sanitize: true,
+});
+
 export class MessageProcessorOpts {
     public domain: string;
     constructor (domain: string) {