If you use webpack, just drop in webpack-subresource-integrity [0] for basically "free" SRI tags on all scripts.
It's not really as useful if you are serving your static assets from the same place as the HTML (and you always use HTTPS) but if you load your js/css on another server SRI can still provide some protection.
[0] https://github.com/waysact/webpack-subresource-integrity