Protect third-party resources
An integrity attribute lets the browser reject a fetched resource when its bytes no longer match the expected digest.
Core transformations run locally in your browser.
Generate SHA-256, SHA-384, or SHA-512 integrity values for scripts, stylesheets, and preloaded resources.
Hash the exact contents of a script or stylesheet.
Even one changed byte produces a different value. Hash the exact deployed file content.
An integrity attribute lets the browser reject a fetched resource when its bytes no longer match the expected digest.
Minification, line endings, build banners, or any other content change requires generating a new integrity value.