Apr 9, 2009
- The jQuery Project has been alive and growing for 3 years
- The library itself is basically text
I have heard of occasions where Norton AV would throw false positive alerts on packer or minified versions of jQuery but that’s Norton’s fault for bad heuristics. So I wanted to address it here.
The jQuery downloads are basically text files that we manage. We have a tremendous number of users downloading and leveraging jQuery from our sites daily so the likelihood that we’d know something was up is VERY good. In addition, a ton of well-known companies are using jQuery and it’s a pretty good indication that everything is cool when you see who is using it:
If you’re concerned about downloading it from our site or using the Google hosted version, we provide the code so that you can create your own copy of it. This gives you the best level of control over the build process:
Now, is it possible that someone is offering up a bad version of jQuery? Sure and that can be the case for Prototype, MooTools, Dojo or any other popular framework. We obviously can’t control what someone else does, only what *we* can provide via our site.
With that said, please only download jQuery from the official site or use the version hosted on Google’s CDN. Here are the official site links:
Downloading jQuery from any site other than the ones listed above is not recommended as we can’t ensure the validity of the code. And if you do find a version of jQuery that is doing some “evil”, please let us know so we can advise the jQuery community.
We want you to enjoy your experience with jQuery and provide the best option available for your usage.