Security of .H5P files
The question has come up about uploading .H5P files into our LMS that could potentially have been tampered with - had JavaScript or similar injected into them. I understand the Library would block JavaScript in the Content part of the file but there are other parts of the .H5P package that requires JavaScript. This JavaScript runs on a student's computer and if altered could do a number of potetially damaging things. My question is twofold:
1. Are there precausions to ensure a .H5P file has not been tampered with and had code added to it?