
Booster Sweeper: WordPress Asset Cleanup Security & Risk Analysis
wordpress.org/plugins/booster-sweeperBoost the Website speed by sweeping assets your pages do not need!
Is Booster Sweeper: WordPress Asset Cleanup Safe to Use in 2026?
Generally Safe
Score 100/100Booster Sweeper: WordPress Asset Cleanup has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "booster-sweeper" plugin v1.0.8 demonstrates a generally good security posture based on the provided static analysis. It utilizes prepared statements for all SQL queries and has a high percentage of properly escaped output, indicating a strong understanding of common web vulnerabilities. The plugin also incorporates a robust number of nonce and capability checks for its AJAX handlers, effectively limiting the attack surface. Furthermore, the absence of any recorded vulnerabilities, including CVEs, suggests a history of secure development or prompt patching by the developers.
However, a small concern arises from the potential for the 81% of unescaped output. While this doesn't translate to a critical risk in the current analysis, it represents a potential area for XSS vulnerabilities if user-supplied data is not handled carefully in the remaining 19%. The taint analysis did not reveal any critical or high severity issues, which is a positive sign. The lack of shortcodes, cron events, and REST API routes further minimizes the plugin's attack surface beyond the AJAX handlers.
In conclusion, "booster-sweeper" appears to be a relatively secure plugin with a solid foundation in secure coding practices. The primary area for improvement would be to ensure 100% output escaping and consistent sanitization of any user-controllable data displayed to users. The clean vulnerability history is a significant strength.
Key Concerns
- Unescaped output (19%)
Booster Sweeper: WordPress Asset Cleanup Security Vulnerabilities
Booster Sweeper: WordPress Asset Cleanup Release Timeline
Booster Sweeper: WordPress Asset Cleanup Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Booster Sweeper: WordPress Asset Cleanup Attack Surface
AJAX Handlers 5
WordPress Hooks 57
Maintenance & Trust
Booster Sweeper: WordPress Asset Cleanup Maintenance & Trust
Maintenance Signals
Community Trust
Booster Sweeper: WordPress Asset Cleanup Alternatives
GSP Assets Manager (Easy Live Assets Editor)
gsp-assets-manager
GSP Assets Manager will allow you to live review and control WordPress javascript files and stylesheets. Optimize google page speed rank within 5 minu …
LiteSpeed Cache
litespeed-cache
All-in-one unbeatable acceleration & PageSpeed improvement: caching, image/CSS/JS optimization...
WP Fastest Cache – WordPress Cache Plugin
wp-fastest-cache
The simplest and fastest WP Cache system
Autoptimize
autoptimize
Autoptimize speeds up your website by optimizing JS, CSS, images (incl. lazy-load), HTML and Google Fonts, asyncing JS, removing emoji cruft and more.
W3 Total Cache
w3-total-cache
Search Engine (SEO) & Performance Optimization (WPO) via caching. Integrated caching: CDN, Page, Minify, Object, Fragment, Database support.
Booster Sweeper: WordPress Asset Cleanup Developer Profile
4 plugins · 270 total installs
How We Detect Booster Sweeper: WordPress Asset Cleanup
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/booster-sweeper/library/admin/adminizr.css/wp-content/plugins/booster-sweeper/library/admin/adminizr.js/wp-content/plugins/booster-sweeper/library/admin/adminizr.jsbooster-sweeper/library/admin/adminizr.css?ver=booster-sweeper/library/admin/adminizr.js?ver=HTML / DOM Fingerprints
booster_sweeper_localize