Skip to main content
drupalreleases
Release: Drupal 11.4.9 — Update released for Drupal core (11.4.9)! Release: Better Exposed Filters 7.2.0 — Minor update available for module better_exposed_filters (7.2.0). Release: Bootstrap 8.x-3.43 — Minor update available for theme bootstrap (8.x-3.43). Release: Svg Image 3.2.5 — Minor update available for module svg_image (3.2.5). Release: Book 3.0.8 — Minor update available for module book (3.0.8). Release: Tagify 2.0.5 — Minor update available for module tagify (2.0.5). Release: Editoria11y Accessibility Checker 3.0.11 — Minor update available for module editoria11y (3.0.11). Release: Events Log Track 5.0.1 — Minor update available for module events_log_track (5.0.1). Module Revived: @font-your-face 4.3.0 — Module fontyourface updated after 7 months of inactivity (4.3.0). Security Coverage: Open Y Branch Selector — Module openy_branch_selector now has official Drupal security advisory coverage.

CDN Fetcher

1 sites Security covered
View on drupal.org

This module downloads external JavaScript and CSS assets declared in your theme and module libraries into your Drupal site's libraries folder. It then rewrites your library definitions to use these local copies, helping to improve privacy and GDPR compliance by avoiding remote CDN requests. The module automatically checks for updates on install, when modules/themes are enabled, and during cron runs.

CDN Fetcher scans *.libraries.yml of installed modules, themes, the install profile, and core. External JS and CSS (https://, http://, protocol-relative //, or type: external with an allowed remote URL) are listed on the status report. Library definitions are rewritten to local paths only when a copy already exists: a Composer package under a Drupal libraries folder (/libraries, site libraries, or the install profile), or a mirror under libraries/cdn_fetcher/. Missing files stay on the CDN URL.

A file becomes local in one of two ways: install it with Composer under /libraries, or click Download locally on the status report. The module never downloads on install, when modules or themes are enabled, on cache rebuild, or during page builds. It never writes composer.json or runs Composer. Composer copies under /libraries are preferred and never overwritten.

drush cdn_fetcher:revalidate (drush cfr) lists missing assets and probes existing fetcher mirrors. It marks New version available when remote bytes changed; the local file is not replaced until a button click or a Composer update. Downloads that fail a declared Subresource Integrity hash are rejected.

Uninstalling a providing extension removes unused mirrors. Uninstalling CDN Fetcher deletes only libraries/cdn_fetcher/ and leaves other /libraries packages in place.

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
6
Tracked since
Aug 2026
Latest release
1 week ago
Releases (12 mo)
6 ▲ from 0
Maintenance
Active

Release Timeline

Releases

Version Type Core Release date
1.0.0-alpha6 Pre-release 11 Oct 2, 2026
1.0.0-alpha5 Pre-release 11 Sep 25, 2026
1.0.0-alpha4 Pre-release 11 Sep 11, 2026
1.0.0-alpha3 Pre-release 11 Aug 26, 2026
1.0.0-alpha2 Pre-release 11 Aug 26, 2026
1.0.0-alpha1 Pre-release 11 Aug 25, 2026