Welcome to ManageWP.org

Register to share, discuss and vote for the best WordPress stories every day, find new ideas and inspiration for your business and network with other members of the WordPress community. Join the #1 WordPress news community!

×

5 min read Mark Gavalda
Business | igorkromin.net | Jan. 16, 2019

GoDaddy is sneakily injecting JavaScript into your website and how to stop it

Unless you explicitly opt-out GoDaddy is injecting a JavaScript tracker into your website's code.

GoDaddy is sneakily injecting JavaScript into your website and how to stop it

Business | igorkromin.net | Jan. 16, 2019

I recently started having issues with the admin interface of a website I run and decided to check the browser console to see if any errors were being displayed there. There were and among them was an error stating that a JavaScript map file being loaded (and failing) that I did not recognise. This meant that the actual JavaScript file itself was already loaded via my website. This set off all sorts of alarms for me and I started to dig in further. I checked the file system for any suspicious files, there were none. I checked the source code and templates for evidence of anything that has been added, there was nothing there. Yet all my pages were being served with the following <script> injected into them just before the closing </html> tag...
JavaScript
<script>'undefined'=== typeof _trfq