reactjs / reactjs/react.dev

Add SRI to React CDN links

Open
#1,862 2 comments 1 reaction 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
JavaScript
Stars
11.8k
Forks
7.9k
Avg merge
1d 11h
Merged PRs (30d)
11

Description

I noticed that the page listing react CDN links does not include SRI. I think that adding SRI attribute will encourage developers to use it and increase the awareness - especially for people who just do copy-paste from this website. SRI is the only way to ensure the integrity of the resource you're using - and it's recommend to use it when loading resources from a CDN.

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start with the React CDN links page named in the issue and review how its CDN examples are represented in the documentation source. Add SRI attributes to the listed CDN links, then verify that the examples remain valid and consistently show the integrity guidance described in the issue.

Written by the indexing model from the issue text.

Assessment

Tech stack
javascript, react
Domain
documentation, security
Issue type
Documentation
Difficulty
2/5
Estimated time
1-3 hours
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
48/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.