Hacktoberfest 2026: the issues maintainers tagged for October, open and beginner-friendly. Browse Hacktoberfest issues

Resolve "Potentially unsafe external link" for LA Incubator in `_includes/about-page/about-card-sponsors.html`

Open Beginner friendly
#8,823 0 comments 0 reactions 0 assignees View on GitHub

Maintainers usually reply within 1 day

Nobody has claimed this yet.

Assessment

Difficulty
1/5
Estimated time
Under an hour
Newbie friendliness
85/100
Issue type
Bug
Clarity
Clearly specified
Activity status
Active
Tech stack
docker, html, javascript, jekyll
Domain
frontend, security

Research direction

Open _includes/about-page/about-card-sponsors.html and add the specified rel="noopener noreferrer" attribute to the LA Incubator link. Using Docker, check the /about page in mobile, tablet, and desktop views, then confirm the link still works and opens as expected. When complete, check off the corresponding item in #5129.

Written by the indexing model from the issue text.

Description

Feature: Code Alerts good first issue P-Feature: Project Info and Page role: back end/devOps role: front end size: 0.25pt
Prerequisite
  1. Be a member of Hack for LA. (There are no fees to join.) If you have not joined yet, please follow the steps on our Getting Started page.
  2. Before you claim or start working on an issue, please make sure you have read our How to Contribute to Hack for LA Guide.
Overview

We need to fix a potentially unsafe external link by adding the attribute rel="noopener noreferrer". The problem and solution are similar to those detailed in the CodeQL alerts tracked in #5129; however, the instance addressed by this issue did not result in a CodeQL alert.

Action Items
  • Open the file _includes/about-page/about-card-sponsors.html in your IDE
  • Replace
<a href="https://laincubator.org" target="_blank" alt="LA Incubator">

with

<a href="https://laincubator.org" target="_blank" alt="LA Incubator" rel="noopener noreferrer">
  • Using Docker, check the /about page and confirm that the page remains the same in mobile, tablet, and desktop views as on the current website.
  • Confirm that the LA Incubator link still works and opens as expected.
Merge Team
  • When this issue is completed, check off the corresponding item in #5129
Resources/Instructions
  1. GitHub CodeQL documentation
  2. Webpage: https://www.hackforla.org/about/
  3. This issue is part of #5129
Dominant language
JavaScript
Stars
364
Forks
871
Avg merge
4d 13h
Merged PRs (30d)
13

Getting set up

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from hackforla/website

All issues in hackforla/website

Similar issues

More JavaScript issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.