The Web Design Group

script - Client-side Script

Syntax <script>...</script>
Attribute Specifications
  • type=ContentType (content-type of scripting language)
  • language=CDATA (scripting language name)
  • src=URI (external script location)
  • charset=Charset (character encoding of external script)
  • defer="defer" (script execution may wait)
Contents An embedded script
Contained in head, block-level elements, inline elements except select and script

[This page has not yet been updated to reflect the new interpretation of embeded contents.]

The script element includes a client-side script in the document. Client-side scripts allow greater interactivity in a document by responding to user events. For example, a script could be used to check the user's form input prior to submission to provide immediate notice of any errors by the user.

Note that not all browsers support client-side scripting, and supporting browsers allow the user to disable scripting, so authors should avoid dependence on client-side scripting wherever possible. The noscript element can be used to provide content for browsers that do not support client-side scripting or have it disabled. In the case of form validation, any error checking done by the client-side script should be repeated by the CGI script or Java servlet that handles the submission at the server.

Also note that different browsers support different variants of scripting languages with different bugs. Authors are encouraged to check their scripts on as many browsers as possible. Browsers that support client-side scripting include Netscape Navigator 2.0 and up, Microsoft Internet Explorer 3.0 and up, and Opera 3.0 and up.

The required type attribute of script specifies the media type of the scripting language, e.g., text/javascript. However, many browsers only support the deprecated language attribute, which specifies the language name. Examples of supported language values include javascript, javascript1.1, and vbscript. The values are not case sensitive.

Browsers will ignore scripts with language values that they do not support. For example, Netscape Navigator 3.0 will execute scripts with language="javascript" or language="javascript1.1" but will ignore scripts with language="javascript1.2" or language="vbscript".

In the absence of the language attribute, browsers that do not support the type attribute typically assume that the language is the highest version of JavaScript supported by the browser. Thus authors may safely omit the deprecated language attribute when using JavaScript.

An embedded script is given as the content of the script element. The src attribute allows authors to reuse code by specifying an external script. The optional charset attribute gives the character encoding of the external script (typically iso-8859-1). When the src attribute is used, the embedded script is ignored. An example follows:

<script type="text/javascript" src="foo.js" charset="iso-8859-1">
  // embedded script ignored
</script>

Netscape Navigator requires that external scripts be served with a Content-Type of application/x-javascript.

The defer attribute indicates that the browser may wait to parse the script until the rest of the document has been rendered. Scripts that use defer must not generate any document content, and should not be required to respond to user events (e.g., form submission) that may occur while the document is loading. The defer attribute can be useful for delaying scripts that pre-load images or harass the user with scrolling messages in the status bar, though current browsers do not generally support this attribute.

The script element may occur any number of times in the document head or body. Typically the script element is used in the head unless it generates body content.

Pre-HTML 3.2 browsers, unaware of the script element, will treat the content of script as normal HTML. It is recommended that external scripts are used to avoid this.

Technically, the first occurrence of "</" followed by any letter is considered the end tag for the script element. While browsers are forgiving in this, authors should avoid using strings such as "</P>" in their embedded scripts. JavaScript allows authors to use a backslash to avoid ending the script element prematurely, e.g., document.write("<\/P>"). Also, any occurrences of < and & should be quoted as &lt; and &amp; in embeded scripts.

More Information