Instead of trying to do some smart (and unsecure) stuff, just display the raw note contents as is
1022 B
1022 B
Instead of trying to do some smart (and unsecure) stuff, just display the raw note contents as is