The Prismic blog Product announcements, news, and thoughts on content management & software development from the Prismic team

Writing Room

September 11,2020

Changes to how we handle SVG's

We have recently disabled the use of SVGs with the Imgix integration. The reasoning behind this is because of security vulnerabilities with SVGs, in that they can be injected with JS which could cause malicious behavior on your websites. Another reason for this decision is because the Imgix query parameters have no effect on SVGs. So from now on SVGs will be treated as files rather than images and because of this they will not be delivered from the the domain images.prismic, they will now come from our Amazon servers. The Team thought this change would not result in any breaking changes, but one case we didn’t foresee was people currently with SVGs and query params who update their documents and this is why we didn't communicate this earlier. This is our bad and we should have been more thorough in our testing.

By Phil Snow


June 11,2020

Development environments: a sandbox where you can test, try, and iterate safely

Few things are more important for your website development and maintenance than knowing that you can safely iterate and test new features without putting your live website at risk. But, fear no more, with Prismic’s new development environments feature you can easily clone your production environment and work on new iterations and designs in a separate and safe development environment.

By Edward Hewitt