Layout – Webdesign

0,00 / maand excl. BTW

Layout kiezen / webdesign aanpassen

Ander webdesign / layout? Dat kan hier heel gemakkelijk!

  1. Gratis: Kies één van de voor geprogrammeerde layouts.
  2. Gratis: Pas je gekozen webdesign naar wens aan.
  3. Kies hier een andere gratis layout: Gratis implementatie.
  4. Kies een andere gratis layout: Vergoeding voor implementatie.
  5. Kies een betaald thema: Vergoeding voor implementatie.
  6. Laat een layout voor je maken.

Andere Layout

Ander Webdesign

Eénmalige betaling

1. Om welk webdesign gaat het (naam)
2. Waar kunnen wij het vinden
3. Als het in een account staat, mogen wij dan inlog-gegevens opdat wij het kunnen uploaden

Het verwijderen van webdesigns bespaart webruimte. Als er een webdesign extra op je website / webshop wordt gezet, dan kost dat webruimte.

Prijs per maand

Categorie:

Beschrijving

Auto SRI

Beschrijving

Auto SRI automatically adds Subresource Integrity (SRI) attributes to scripts and styles loaded from external sources.

This improves security, protects against tampering, and enables strict Content Security Policy (CSP) setups.

Features

  • ✔ Adds SRI to all external <script> and <link> tags
  • ✔ Supports WordPress-enqueued assets and raw HTML tags
  • ✔ Supports async, defer, crossorigin, and multiline script tags
  • ✔ Caches all hashes for performance
  • ✔ Excludes admin panel (wp-admin) to prevent conflicts
  • ✔ Automatically skips non-SRI-compatible providers:
    • Google reCAPTCHA
    • Google Fonts (fonts.googleapis.com / fonts.gstatic.com)
    • WordPress.com widgets (widgets.wp.com)
    • Dynamic concatenated resources
    • Dynamic script loaders and runtime-inserted scripts
  • ✔ Safe for Elementor, WooCommerce, CookieYes, Jetpack, GoDaddy hosting, etc.

Why some scripts are excluded

This plugin automatically excludes:

  • Google reCAPTCHA (google.com/recaptcha)
  • Google Fonts stylesheets (fonts.googleapis.com)
  • Google Fonts font files (fonts.gstatic.com)
  • WordPress.com widgets (widgets.wp.com)
  • Dynamic concatenated resources (/_static/??)
  • Other dynamic inline loaders (CookieYes, wsimg, ywxi, etc.)

Want to whitelist a dynamic provider? Contact us at izafirsk@gmail.com.
* Other dynamic inline loaders (CookieYes, wsimg, ywxi, etc.)

Want to whitelist a dynamic provider? Contact us at izafirsk@gmail.com.

These exclusions prevent:

  • CORS failures
  • Integrity mismatch blocking
  • Google reCAPTCHA from breaking
  • Google Fonts from disappearing
  • Layout shifts caused by blocked assets

Installatie

  1. Upload the plugin to /wp-content/plugins/auto-sri

FAQ

Does this plugin apply SRI in the WordPress admin panel?

No. The plugin automatically skips the WordPress admin panel (wp-admin) to prevent any conflicts with admin scripts and ensure smooth backend operation.

Why are some scripts not receiving SRI?

Scripts from Google reCAPTCHA, Google Fonts, wsimg, ywxi, and other dynamic sources cannot support SRI because their content changes on every request.

This plugin intelligently detects those sources and safely skips them.

Does this affect performance?

No. SRI hashes are computed once and stored in the WordPress options table.

Does this break Elementor or CookieYes?

No. This plugin is fully compatible and tested against common dynamic script loaders.

Does this plugin help with CSP?

Yes — it allows you to safely enforce:

For excluded domains, you should whitelist them in your CSP.

Beoordelingen

Er zijn geen beoordelingen voor deze plugin.

Bijdragers & ontwikkelaars

“Auto SRI” is open source software. De volgende personen hebben bijgedragen aan deze plugin.

Bijdragers

Vertaal “Auto SRI” in je eigen taal.

Interesse in ontwikkeling?

Bekijk de code, haal de SVN repository op, of abonneer je op het ontwikkellog via RSS.

Changelog

2.1

  • Improved settings page UX with clearer instructions
  • Added “Settings” link to the plugin action links on the plugins page

2.0

  • Added settings page to allow user-defined URL exclusions
  • Refactored exclusion logic for better maintainability (Unit tested)

1.9

  • Added admin panel exclusion – SRI no longer applies in wp-admin
  • Added exclusion for WordPress.com widgets (widgets.wp.com)
  • Added exclusion for dynamic concatenated resources (/_static/??)
  • Fixed integrity mismatch errors for dynamic content
  • Improved compatibility with WordPress.com features

1.8

  • Fixed prefixing issues to comply with WordPress standards
  • Improved security by preventing direct file access
  • Excluded development assets from release package
  • Example of SRI added to external script tags in the page source

1.7

  • Code quality improvements
  • WordPress coding standards compliance
  • Optimized readme for plugin repository

1.6

  • Renamed plugin to comply with WordPress.org trademark policies
  • Updated all assets and paths
  • Stability improvements

1.5

  • Renamed plugin to comply with WordPress.org trademark policies
  • Updated all assets and paths
  • Stability improvements

1.4

  • Added new plugin banner + icon assets
  • Visual branding improvements
  • Updated readme and asset packaging

1.3

  • Added automatic exclusion of Google reCAPTCHA (fixes CORS / blocked script issues)
  • Added automatic exclusion of Google Fonts (fixes integrity mismatch issues)
  • Improved compatibility with Google APIs and Elementor
  • Updated SRI matching and handling logic
  • Stable, safe version for production use