PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site Security & Risk Analysis

wordpress.org/plugins/pageflash

Preload pages intelligently to boost site speed and enhance user experience by loading pages before users click, ensuring instant page transitions.

0 active installs v2.2.0 PHP 7.4+ WP 6.1+ Updated Jun 27, 2026
optimizationpage-speedpageflashperformancepreload
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site Safe to Use in 2026?

Generally Safe

Score 100/100

PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "pageflash" v2.1.0 plugin exhibits a generally strong security posture based on the provided static analysis. The complete absence of dangerous functions, raw SQL queries, unescaped output, file operations, and external HTTP requests are all positive indicators of secure coding practices. The presence of nonce and capability checks on all identified entry points is also commendable, demonstrating an effort to secure the plugin's functionality.

However, the analysis does highlight two specific areas of concern: the REST API routes. With 3 total REST API routes and 2 of them lacking explicit permission callbacks, this creates a potential attack surface. If these unprotected routes perform sensitive operations or expose data, they could be exploited by unauthenticated users. The lack of taint analysis results prevents a deeper understanding of potential data flow vulnerabilities within the plugin, but the absence of critical or high-severity flows is reassuring.

The vulnerability history being completely clean is an excellent sign, suggesting a low likelihood of known exploitable issues. In conclusion, while "pageflash" v2.1.0 has a good foundation with robust code-level protections, the unprotected REST API routes represent a tangible security weakness that requires attention.

Key Concerns

  • REST API routes without permission callbacks
Vulnerabilities
None known

PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site Release Timeline

v2.2.0Current
v2.1.0
v2.0.0
v1.2.0
v1.1.0
v1.0.1
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
66 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped66 total outputs
Attack Surface
2 unprotected

PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site Attack Surface

Entry Points3
Unprotected2

REST API Routes 3

GET/wp-json/pageflash/v1/landmarkincludes/Landmark/LandmarkAPI.php:48
GET/wp-json/pageflash/v1/landmark/(?P<slug>[a-zA-Z0-9_-]+)includes/Landmark/LandmarkAPI.php:59
PUT/wp-json/pageflash/v1/landmark/(?P<slug>[a-zA-Z0-9_-]+)includes/Landmark/LandmarkAPI.php:76
WordPress Hooks 38
filterplugin_row_metaincludes/Admin/ActionLinks.php:21
actionadmin_menuincludes/Admin/AdminMenu.php:27
actionadmin_enqueue_scriptsincludes/AssetsManager/AssetsManager.php:21
actionadmin_initincludes/AssetsManager/AssetsManager.php:22
actionwp_enqueue_scriptsincludes/Landmark/General/DisableDashicons.php:30
actioninitincludes/Landmark/General/DisableEmbeds.php:30
filterembed_oembed_discoverincludes/Landmark/General/DisableEmbeds.php:49
filtertiny_mce_pluginsincludes/Landmark/General/DisableEmbeds.php:50
filterrewrite_rules_arrayincludes/Landmark/General/DisableEmbeds.php:51
actioninitincludes/Landmark/General/DisableEmojis.php:30
filtertiny_mce_pluginsincludes/Landmark/General/DisableEmojis.php:48
filterwp_resource_hintsincludes/Landmark/General/DisableEmojis.php:49
filteremoji_svg_urlincludes/Landmark/General/DisableEmojis.php:50
actioninitincludes/Landmark/General/DisableHeartbeat.php:51
filterheartbeat_settingsincludes/Landmark/General/DisableHeartbeat.php:52
filterrest_authentication_errorsincludes/Landmark/General/DisableRestAPI.php:31
filterxmlrpc_enabledincludes/Landmark/General/DisableXMLRPC.php:30
filterwp_headersincludes/Landmark/General/DisableXMLRPC.php:31
filterpings_openincludes/Landmark/General/DisableXMLRPC.php:32
filterpre_option_enable_xmlrpcincludes/Landmark/General/DisableXMLRPC.php:33
actioninitincludes/Landmark/General/DisableXMLRPC.php:34
filterthe_generatorincludes/Landmark/General/HideWPVersion.php:31
filterwp_default_scriptsincludes/Landmark/General/RemoveJQueryMigrate.php:30
actioninitincludes/Landmark/General/RemoveRestAPILink.php:22
actionpageflash_initincludes/Landmark/Landmark.php:23
actionpageflash_initincludes/Landmark/Landmark.php:24
actionrest_api_initincludes/Landmark/LandmarkAPI.php:37
actioninitincludes/Landmark/LandmarkList.php:27
actionwp_default_scriptsincludes/Landmark/NoReload/InstantPage.php:22
actionwp_enqueue_scriptsincludes/Landmark/NoReload/InstantPage.php:23
filterscript_loader_tagincludes/Landmark/NoReload/InstantPage.php:24
actionwp_default_scriptsincludes/Landmark/NoReload/Quicklink.php:21
actionwp_enqueue_scriptsincludes/Landmark/NoReload/Quicklink.php:22
filterscript_loader_tagincludes/Landmark/NoReload/Quicklink.php:23
actionwp_enqueue_scriptsincludes/Landmark/NoReload/Quicklink.php:24
actionplugins_loadedpageflash.php:42
actionadmin_noticespageflash.php:45
actionadmin_noticespageflash.php:47
Maintenance & Trust

PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.5
Last updatedJun 27, 2026
PHP min version7.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site Developer Profile

Aminul Islam

4 plugins · 100 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pageflash/build/admin/admin.css/wp-content/plugins/pageflash/build/admin/admin.js/wp-content/plugins/pageflash/assets/icomoon/style.css
Script Paths
/wp-content/plugins/pageflash/build/admin/admin.js
Version Parameters
pageflash/build/admin/admin.css?ver=pageflash/build/admin/admin.js?ver=pageflash/assets/icomoon/style.css?ver=

HTML / DOM Fingerprints

JS Globals
pageflashAdmin
FAQ

Frequently Asked Questions about PageFlash – Fast Page Preloading, Performance Optimization & Secure Your WordPress Site