Earlier quoted context omitted.
I wonder how the Subresource Integrity can expand to the root document hash (other than using IPFS gateways). UPD yeah, extension hashing resources sounds nice too
I've wanted this too! You could include subresource integrity hash in the URL that the browser will check against the page. This would make things like Cryptpad and Skiff, or group invite links in Signal, way more secure.
Usually, when I have an idea for a standard, it turns out one exists, so maybe I’ll do some digging…