
Accelerate Security & Risk Analysis
wordpress.org/plugins/altis-accelerateStop guessing. Start converting. The native A/B testing and personalization platform for the WordPress Block Editor.
Is Accelerate Safe to Use in 2026?
Generally Safe
Score 100/100Accelerate has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Altis Accelerate v4.1.0 presents a mixed security posture. On the positive side, the plugin demonstrates good coding practices with a high percentage of SQL queries using prepared statements and properly escaped output. The absence of dangerous functions, critical or high severity taint flows, and any recorded historical vulnerabilities, including unpatched CVEs, are significant strengths, indicating a generally secure development approach.
However, a notable concern arises from the significant attack surface exposed without adequate authentication or authorization checks. All 7 REST API routes are unprotected, and there are 7 entry points without permission callbacks. This creates a substantial risk of unauthorized access and manipulation of plugin functionalities. While taint analysis shows no immediate critical or high severity unsanitized paths, the lack of access control on these numerous entry points is a significant oversight that could be exploited.
In conclusion, Altis Accelerate v4.1.0 benefits from strong internal code hygiene regarding data handling and sanitization. The absence of historical vulnerabilities further bolsters confidence. The primary weakness lies in the inadequate protection of its REST API routes, which represents a significant security gap that requires immediate attention to mitigate potential risks.
Key Concerns
- REST API routes without permission callbacks
- Total entry points without authorization
- Bundled library Guzzle
Accelerate Security Vulnerabilities
Accelerate Release Timeline
Accelerate Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Accelerate Attack Surface
REST API Routes 7
WordPress Hooks 119
Scheduled Events 3
Maintenance & Trust
Accelerate Maintenance & Trust
Maintenance Signals
Community Trust
Accelerate Alternatives
Zoho PageSense for WordPress
zoho-pagesense
Zoho PageSense
Liana with GrowthStack
liana-with-growthstack
Add world class marketing automation features like personalization to your website.
Lytics Personalization Engine (Official)
lytics-wp
Integrate Lytics' personalization engine with WordPress for segmentation, personalized content, recommendations, and more.
Evergage for WordPress
evergage
Evergage for Wordpress provides a seamless way to integrate Evergage’s cloud-based personalization platform with Wordpress install(s).
FORTVISION
fortvision-platform
ABOUT
Accelerate Developer Profile
1 plugin · 20 total installs
How We Detect Accelerate
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/altis-accelerate/build/tailwind.csswp-admin/js/widgets.jswp-includes/js/dist/block-editor.min.jswp-includes/js/dist/block-library.min.jswp-includes/js/dist/i18n.min.jswp-includes/js/dist/components.min.jswp-includes/js/dist/element.min.js+4 morealtis-accelerate/build/tailwind.css?ver=HTML / DOM Fingerprints
accelerate-admindata-altis-accelerate-rest-urlaltis_accelerate_configaccelerateAdmin/wp-json/altis-accelerate/v1/settings/wp-json/altis-accelerate/v1/feedback