Booster Sweeper: WordPress Asset Cleanup Security & Risk Analysis

wordpress.org/plugins/booster-sweeper

Boost the Website speed by sweeping assets your pages do not need!

10 active installs v1.0.8 PHP 7.4+ WP 6.7+ Updated Dec 7, 2025
assetsdequeuepagespeedperformancespeed
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Booster Sweeper: WordPress Asset Cleanup Safe to Use in 2026?

Generally Safe

Score 100/100

Booster Sweeper: WordPress Asset Cleanup has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "booster-sweeper" plugin v1.0.8 demonstrates a generally good security posture based on the provided static analysis. It utilizes prepared statements for all SQL queries and has a high percentage of properly escaped output, indicating a strong understanding of common web vulnerabilities. The plugin also incorporates a robust number of nonce and capability checks for its AJAX handlers, effectively limiting the attack surface. Furthermore, the absence of any recorded vulnerabilities, including CVEs, suggests a history of secure development or prompt patching by the developers.

However, a small concern arises from the potential for the 81% of unescaped output. While this doesn't translate to a critical risk in the current analysis, it represents a potential area for XSS vulnerabilities if user-supplied data is not handled carefully in the remaining 19%. The taint analysis did not reveal any critical or high severity issues, which is a positive sign. The lack of shortcodes, cron events, and REST API routes further minimizes the plugin's attack surface beyond the AJAX handlers.

In conclusion, "booster-sweeper" appears to be a relatively secure plugin with a solid foundation in secure coding practices. The primary area for improvement would be to ensure 100% output escaping and consistent sanitization of any user-controllable data displayed to users. The clean vulnerability history is a significant strength.

Key Concerns

  • Unescaped output (19%)
Vulnerabilities
None known

Booster Sweeper: WordPress Asset Cleanup Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Booster Sweeper: WordPress Asset Cleanup Release Timeline

v1.0.8Current
v1.0.7
v1.0.6
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

Booster Sweeper: WordPress Asset Cleanup Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
193
820 escaped
Nonce Checks
12
Capability Checks
5
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

81% escaped1013 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

3 flows
csf_export (admin/codestar-framework/functions/actions.php:62)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Booster Sweeper: WordPress Asset Cleanup Attack Surface

Entry Points5
Unprotected0

AJAX Handlers 5

authwp_ajax_csf-get-iconsadmin/codestar-framework/functions/actions.php:50
authwp_ajax_csf-exportadmin/codestar-framework/functions/actions.php:87
authwp_ajax_csf-importadmin/codestar-framework/functions/actions.php:123
authwp_ajax_csf-resetadmin/codestar-framework/functions/actions.php:150
authwp_ajax_csf-chosenadmin/codestar-framework/functions/actions.php:189
WordPress Hooks 57
filtercsf_welcome_pageadmin/admin-init.php:22
actionadmin_enqueue_scriptsadmin/admin-init.php:65
actionwp_enqueue_scriptsadmin/codestar-framework/classes/abstract.class.php:21
actionadmin_menuadmin/codestar-framework/classes/admin-options.class.php:107
actionadmin_bar_menuadmin/codestar-framework/classes/admin-options.class.php:108
actionnetwork_admin_menuadmin/codestar-framework/classes/admin-options.class.php:112
filteradmin_footer_textadmin/codestar-framework/classes/admin-options.class.php:432
actionadd_meta_boxes_commentadmin/codestar-framework/classes/comment-options.class.php:38
actionedit_commentadmin/codestar-framework/classes/comment-options.class.php:39
actioncustomize_registeradmin/codestar-framework/classes/customize-options.class.php:44
actioncustomize_save_afteradmin/codestar-framework/classes/customize-options.class.php:45
actionwp_enqueue_scriptsadmin/codestar-framework/classes/customize-options.class.php:49
actionadd_meta_boxesadmin/codestar-framework/classes/metabox-options.class.php:50
actionsave_postadmin/codestar-framework/classes/metabox-options.class.php:51
actionedit_attachmentadmin/codestar-framework/classes/metabox-options.class.php:52
actionwp_nav_menu_item_custom_fieldsadmin/codestar-framework/classes/nav-menu-options.class.php:32
actionwp_update_nav_menu_itemadmin/codestar-framework/classes/nav-menu-options.class.php:33
filterwp_edit_nav_menu_walkeradmin/codestar-framework/classes/nav-menu-options.class.php:35
actionadmin_initadmin/codestar-framework/classes/profile-options.class.php:32
actionshow_user_profileadmin/codestar-framework/classes/profile-options.class.php:44
actionedit_user_profileadmin/codestar-framework/classes/profile-options.class.php:45
actionpersonal_options_updateadmin/codestar-framework/classes/profile-options.class.php:47
actionedit_user_profile_updateadmin/codestar-framework/classes/profile-options.class.php:48
actionafter_setup_themeadmin/codestar-framework/classes/setup.class.php:73
actioninitadmin/codestar-framework/classes/setup.class.php:74
actionswitch_themeadmin/codestar-framework/classes/setup.class.php:75
actionadmin_enqueue_scriptsadmin/codestar-framework/classes/setup.class.php:76
actionwp_enqueue_scriptsadmin/codestar-framework/classes/setup.class.php:77
actionwp_headadmin/codestar-framework/classes/setup.class.php:78
filteradmin_body_classadmin/codestar-framework/classes/setup.class.php:79
actionadmin_footeradmin/codestar-framework/classes/shortcode-options.class.php:47
actioncustomize_controls_print_footer_scriptsadmin/codestar-framework/classes/shortcode-options.class.php:48
actionelementor/editor/before_enqueue_scriptsadmin/codestar-framework/classes/shortcode-options.class.php:59
actionelementor/editor/footeradmin/codestar-framework/classes/shortcode-options.class.php:60
actionelementor/editor/footeradmin/codestar-framework/classes/shortcode-options.class.php:61
actionenqueue_block_editor_assetsadmin/codestar-framework/classes/shortcode-options.class.php:258
actionmedia_buttonsadmin/codestar-framework/classes/shortcode-options.class.php:262
actionadmin_initadmin/codestar-framework/classes/taxonomy-options.class.php:41
actionadmin_footeradmin/codestar-framework/fields/icon/icon.php:41
actioncustomize_controls_print_footer_scriptsadmin/codestar-framework/fields/icon/icon.php:42
actionadmin_print_footer_scriptsadmin/codestar-framework/fields/link/link.php:65
actionprint_default_editor_scriptsadmin/codestar-framework/fields/wp_editor/wp_editor.php:62
actionadmin_menuadmin/codestar-framework/views/welcome.php:19
filterplugin_action_linksadmin/codestar-framework/views/welcome.php:20
filterplugin_row_metaadmin/codestar-framework/views/welcome.php:21
actioncsf_loadedadmin/opt/config/framework.php:343
actioncsf_loadedadmin/opt/config/metabox.php:151
actioninitclasses/init.php:14
actionadmin_print_stylesclasses/resources.php:15
actionadmin_print_footer_scriptsclasses/resources.php:16
actionwp_print_stylesclasses/resources.php:22
actionwp_print_footer_scriptsclasses/resources.php:23
actionwp_print_footer_scriptsclasses/resources.php:26
actionwp_print_footer_scriptsclasses/resources.php:27
filterthe_generatorclean-html.php:50
actioninitclean-html.php:99
actioninitclean-html.php:129
Maintenance & Trust

Booster Sweeper: WordPress Asset Cleanup Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 7, 2025
PHP min version7.4
Downloads2K

Community Trust

Rating60/100
Number of ratings2
Active installs10
Developer Profile

Booster Sweeper: WordPress Asset Cleanup Developer Profile

maxpressy

4 plugins · 270 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Booster Sweeper: WordPress Asset Cleanup

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/booster-sweeper/library/admin/adminizr.css/wp-content/plugins/booster-sweeper/library/admin/adminizr.js
Script Paths
/wp-content/plugins/booster-sweeper/library/admin/adminizr.js
Version Parameters
booster-sweeper/library/admin/adminizr.css?ver=booster-sweeper/library/admin/adminizr.js?ver=

HTML / DOM Fingerprints

JS Globals
booster_sweeper_localize
FAQ

Frequently Asked Questions about Booster Sweeper: WordPress Asset Cleanup