Display form data correctly (without slashes being added!) and then ensure you keep this properly displayed data secure with the htmlentities function.
Comments are nice.