It’s a cool effect but would be better to go front-and-center with the source code. Asking people to embed random third party scripts on their web pages is a security bottomless pit.
<script
src="https://app.embed.im/snow.js"
integrity="sha384-Valx9sYaUe2U0FqU3e/VYEIMy5hvYI21K429rkwaao8xgzmD6in2EIws7JBQtlnl"
crossorigin="anonymous"
defer></script>But yeah, the URL should really be versioned.