That's not sanitisation, that's separating data from executable code. It's a better solution when possible, but the solution suggested above also works