Investigate usage of contenteditable="plaintext-only" attribute for main input & editable tags to prevent HTML injection. (currently not supported by FF)
Need to make sure HTML-input is sanitized to plain-text so users won't be confused when copying text into Tagify thinking the clipboard value is plain-text when in fact it is HTML