Hostry PageSpeed Booster Security & Risk Analysis

wordpress.org/plugins/hostry-pagespeed-booster

Speed your website up and improve SEO ranking as well as WPO rates by using CDN and CSS, JavaScript, HTML minifications

10 active installs v1.2.5 PHP 5.3+ WP 4.7+ Updated Feb 25, 2021
cdngoogle-search-consoleminifypagespeedseo
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Hostry PageSpeed Booster Safe to Use in 2026?

Generally Safe

Score 85/100

Hostry PageSpeed Booster has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The plugin "hostry-pagespeed-booster" v1.2.5 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events with exposed entry points significantly minimizes the attack surface. Furthermore, the code uses prepared statements for all SQL queries, which is a crucial best practice for preventing SQL injection vulnerabilities. The lack of recorded CVEs and vulnerability history also suggests a well-maintained and secure codebase.

However, there are areas for improvement. The output escaping is only at 20% proper, indicating a potential risk of cross-site scripting (XSS) vulnerabilities if user-supplied data is not properly sanitized before being displayed. The complete lack of nonce checks and capability checks on the identified entry points (though there are none) is a concern that would become a significant risk if any entry points were introduced in future versions without these security measures. The plugin also performs file operations and external HTTP requests, which could be vectors for attack if not handled with extreme care.

In conclusion, the current version of "hostry-pagespeed-booster" appears to be highly secure due to its minimal attack surface and diligent use of prepared statements. The primary weakness lies in the insufficient output escaping. If the plugin's functionality were to expand in the future, it would be imperative to implement nonce and capability checks for any new entry points to maintain this high level of security.

Key Concerns

  • Output escaping is only 20% proper
  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

Hostry PageSpeed Booster Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Hostry PageSpeed Booster Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
5 prepared
Unescaped Output
20
5 escaped
Nonce Checks
0
Capability Checks
0
File Operations
6
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared5 total queries

Output Escaping

20% escaped25 total outputs
Attack Surface

Hostry PageSpeed Booster Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionplugins_loadedcdn-minifier.php:65
actionadmin_menuincludes\main\CdnMinifierPlugin.php:40
actionadmin_initincludes\main\CdnMinifierPlugin.php:77
actiontemplate_redirectincludes\main\CdnMinifierPlugin.php:96
actiontemplate_redirectincludes\main\CdnMinifierPlugin.php:109
filterstyle_loader_tagincludes\main\CdnMinifierPlugin.php:127
filterscript_loader_tagincludes\main\CdnMinifierPlugin.php:137
actionwp_headincludes\main\CdnMinifierPlugin.php:146
actionwp_footerincludes\main\CdnMinifierPlugin.php:154
Maintenance & Trust

Hostry PageSpeed Booster Maintenance & Trust

Maintenance Signals

WordPress version tested5.6.17
Last updatedFeb 25, 2021
PHP min version5.3
Downloads4K

Community Trust

Rating100/100
Number of ratings7
Active installs10
Developer Profile

Hostry PageSpeed Booster Developer Profile

HOSTRY

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Hostry PageSpeed Booster

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/hostry-pagespeed-booster/assets/css/frontend.css/wp-content/plugins/hostry-pagespeed-booster/assets/js/frontend.js
Script Paths
/wp-content/plugins/hostry-pagespeed-booster/assets/js/frontend.js
Version Parameters
hostry-pagespeed-booster/assets/css/frontend.css?ver=hostry-pagespeed-booster/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
hostry-pagespeed-booster-admin-menu
HTML Comments
<!-- Hostry PageSpeed Booster -->
JS Globals
hostry_cdn_minifier_config
FAQ

Frequently Asked Questions about Hostry PageSpeed Booster