Some very popular websites learned the hard way this past weekend that placing third-party code in your website's pages is a liability.

SiteMeter, a widely-used "counter and statistics tracker," made some changes to its "backend system" that made it impossible for visitors using certain versions of Internet Explorer to load pages containing the SiteMeter code.

SiteMeter has since resolved the issue and in a blog post, explained the situation and apologized. That probably, however, didn't do much to quell the anger of webmasters using SiteMeter.

The SiteMeter problem highlights the fact that when you place third-party code in your website's pages, you are potentially making your website's operation wholly-dependent on a third-party.

A simple "backend" change made by a third-party whose JavaScript code you use on your pages, for instance, can render your website unusable to a large percentage of your visitors, as it did for SiteMeter users.

While some focus on the way companies like SiteMeter respond to incidents like this, pragmatic webmasters will always take control of their own fate and make decisions that reduce their vulnerability.

Unfortunately, this is a difficult task when it comes to third-party code because it's hard not to use third-party code on your website today. For instance, most of my clients use at least one service like SiteMeter or Google Analytics.

But you can take steps to mitigate your risk of falling victim to a SiteMeter-like problem.

Here are some tips:

  • Don't use any third-party code that absolutely isn't needed. While some types of services (like analytics) are often too expensive to bring in-house, avoid using third-party services that you don't need when they require you to put code in your website's pages. I see a lot of websites that are making use of cutsie "widgets" that are superfluous. That's risky and you need to recognize the risks.
  • Compare different services. If you need some solution that requires you to place third-party code in your website's pages, compare the services that provide that solution. Have any experienced major problems in the past? What are the policies of each? Don't hesitate to contact the services and ask them how they maintain the integrity of their code and what testing they do before rolling out new code.
  • Consider free versus paid. While SiteMeter does have a premium service in addition to its free service, a lot of webmasters prefer to use free services for obvious reasons.

    Yet a worthwhile piece of advice that my attorney relayed to me is this - when you have paid a third-party to provide a service, you have a better ability to recover damages in the case that the third-party fails to deliver or harms you because of some negligent act. I'm not litigious but if your business depends on your website, you don't want to be dependent upon third-parties that have no real legal obligations to you.

  • Monitor your website. While automatically catching errors generated by buggy JavaScripts can be difficult, you should be monitoring your website (see my post on monitoring services) and conceivably, there are ways to develop monitoring systems that detect such errors if the investment in time and effort is worth it for you.

Published 6 August, 2008 by Patrick Oak

82 more posts from this author

You might be interested in

Comments (1)


Deri Jones, CEO at SciVisum Ltd

it can be even more dangerous, when sites use 3rd parties links as part of the navigation.
I've seen sites where you click on a product category from the home page, and the URL is at a 3rd party, which then redirects your browser back to the main site's product page. The visitor doesn't notice it happening.

I guess it's doing some extra web analytics 'cleverness' this way... but clearly if the 3rd party redirect is slow or broken, your site is too!

Sometimes this kind of thing is left over from a development version of the site, and nobody has noticed.... some time looking at user journeys is needed to spot it


almost 10 years ago

Save or Cancel

Enjoying this article?

Get more just like this, delivered to your inbox.

Keep up to date with the latest analysis, inspiration and learning from the Econsultancy blog with our free Digital Pulse newsletter. You will receive a hand-picked digest of the latest and greatest articles, as well as snippets of new market data, best practice guides and trends research.