Prevent Cross Site Scripting Javascript Snake