QA test-string library
Copy-paste strings that break input handling — each with a note on what it catches. Paste them into your fields, APIs and importers and confirm your app escapes, rejects or stores them safely. All strings are inert (they don't attack anything by being copied).