in src/main/java/org/apache/sling/xss/impl/PolicyHandler.java [43:53]
public PolicyHandler(InputStream policyStream) throws Exception {
try (ByteArrayOutputStream baos = new ByteArrayOutputStream()) {
IOUtils.copy(policyStream, baos);
ByteArrayInputStream bais = new ByteArrayInputStream(baos.toByteArray());
this.policy = new AntiSamyPolicy(bais);
bais.reset();
this.htmlSanitizer = new HtmlSanitizer(this.policy);
this.fallbackPolicy = new FallbackSlingPolicy(bais);
this.fallbackHtmlSanitizer = new HtmlSanitizer(this.fallbackPolicy);
}
}