Go: Add `html/template` functions as sanitisers for XSS queries
queries.xml
html-template-escaping-passthrough