From 9d6186e7f34449abf4842d4dc97980ce7e3a3576 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Micha=C5=82=20=27rysiek=27=20Wo=C5=BAniak?= Date: Thu, 13 Jan 2022 22:22:52 +0000 Subject: [PATCH] docs: CONTEINT_INTEGRITY.md updated and amended with signed-integrity plugin info --- docs/CONTENT_INTEGRITY.md | 21 +++++++++++++++++---- 1 file changed, 17 insertions(+), 4 deletions(-) diff --git a/docs/CONTENT_INTEGRITY.md b/docs/CONTENT_INTEGRITY.md index 999a5ff..55e928b 100644 --- a/docs/CONTENT_INTEGRITY.md +++ b/docs/CONTENT_INTEGRITY.md @@ -8,15 +8,15 @@ On the other hand, when using `alt-fetch` and fetching content from multiple end ## Subresource Integrity -To some extent, this is what [Subresource Integrity (SRI)](https://developer.mozilla.org/en-US/docs/Web/Security/Subresource_Integrity) can help fix. +[Subresource Integrity (SRI)](https://developer.mozilla.org/en-US/docs/Web/Security/Subresource_Integrity) can help fix it to some extent. It was introduced to provide assurances when including content hosted on third-party endpoints, like major CDNs. In the HTML code, not just an URL for a `