Certainly that's one approach, but perhaps there's a middle ground, where we can have trusted sources of JS.
Perhaps not, but I do stand by my initial comment, it's crazy we just download and execute stuff from wherever and somehow have expectations of security!