Is your feature request related to a problem?
No (an improvement).
What is the feature?
To prevent attacks, possibly into CSS files (see: https://www.mike-gualtieri.com/posts/stealing-data-with-css-attack-and-defense), maybe it's time to add new properties for the <txp:css /> tag:
"integrity" attempted to store a SRI hash (Subresource Integrity) and its compagnon "crossorigin".
Sample of a possible use:
<txp:css name="print" format="flat.link" media="print" integrity="sha384-/VLZ9QhATgiUs4ha2DcLiKyQ40fBFB+Wub8YYfGE4GQWPTB1glePJzCoX9Iqzi0q" crossorigin="anonymous" />
Online tools exist to get that hash (https://www.srihash.org/), maybe a more simple way could be added into core to generate on the fly a such code if user set the property on "1":
<txp:css name="print" format="flat.link" media="print" integrity="1" crossorigin="anonymous" />
Is your feature request related to a problem?
No (an improvement).
What is the feature?
To prevent attacks, possibly into CSS files (see: https://www.mike-gualtieri.com/posts/stealing-data-with-css-attack-and-defense), maybe it's time to add new properties for the
<txp:css />tag:"
integrity" attempted to store a SRI hash (Subresource Integrity) and its compagnon "crossorigin".Sample of a possible use:
<txp:css name="print" format="flat.link" media="print" integrity="sha384-/VLZ9QhATgiUs4ha2DcLiKyQ40fBFB+Wub8YYfGE4GQWPTB1glePJzCoX9Iqzi0q" crossorigin="anonymous" />Online tools exist to get that hash (https://www.srihash.org/), maybe a more simple way could be added into core to generate on the fly a such code if user set the property on "1":
<txp:css name="print" format="flat.link" media="print" integrity="1" crossorigin="anonymous" />