Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Add
noopener noreferrer
to external-link macro
Apparently, _blank links are the most underestimated vulnerability ever. Source: https://www.jitbit.com/alexblog/256-targetblank---the-most-underestimated-vulnerability-ever/ I'm not convinced, but, as @tombye pointed out, we don't lose anything. Adding them where external links have a target="_blank" *** Also worth mentioning that even though I've removed all of the external-link styles from the toolkit, our frontend apps (at this point, supplier and admin) are using the external-link template and so rely on its markup. Probably worth removing the surrounding div eventually (maybe removing the pattern altogether) but not now.
- Loading branch information