plugin-icon

Auto SRI

제작자: zfir·
Automatically adds Subresource Integrity (SRI) to external scripts/styles and safely excludes Google reCAPTCHA and Google Fonts.
버전
2.1
활성화된 설치 항목
30
최근 업데이트일
Dec 10, 2025
Auto SRI

Auto SRI automatically adds Subresource Integrity (SRI) attributes to scripts and styles loaded from external sources.

This improves security, protects against tampering, and enables strict Content Security Policy (CSP) setups.

Features

  • ✔ Adds SRI to all external <script> and <link> tags
  • ✔ Supports WordPress-enqueued assets and raw HTML tags
  • ✔ Supports async, defer, crossorigin, and multiline script tags
  • ✔ Caches all hashes for performance
  • ✔ Excludes admin panel (wp-admin) to prevent conflicts
  • ✔ Automatically skips non-SRI-compatible providers:
    • Google reCAPTCHA
    • Google Fonts (fonts.googleapis.com / fonts.gstatic.com)
    • WordPress.com widgets (widgets.wp.com)
    • Dynamic concatenated resources
    • Dynamic script loaders and runtime-inserted scripts
  • ✔ Safe for Elementor, WooCommerce, CookieYes, Jetpack, GoDaddy hosting, etc.

Why some scripts are excluded

This plugin automatically excludes:

  • Google reCAPTCHA (google.com/recaptcha)
  • Google Fonts stylesheets (fonts.googleapis.com)
  • Google Fonts font files (fonts.gstatic.com)
  • WordPress.com widgets (widgets.wp.com)
  • Dynamic concatenated resources (/_static/??)
  • Other dynamic inline loaders (CookieYes, wsimg, ywxi, etc.)

Want to whitelist a dynamic provider? Contact us at izafirsk@gmail.com. * Other dynamic inline loaders (CookieYes, wsimg, ywxi, etc.)

Want to whitelist a dynamic provider? Contact us at izafirsk@gmail.com.

These exclusions prevent:

  • CORS failures
  • Integrity mismatch blocking
  • Google reCAPTCHA from breaking
  • Google Fonts from disappearing
  • Layout shifts caused by blocked assets
무료Business 요금제에서
설치하면 WordPress.com 서비스 약관서드파티 플러그인 약관에 동의하게 됩니다.
테스트된 버전
WordPress 6.8.3
이 플러그인은 다운로드할 수 있으며 에서 사용할 수 있습니다.