Shrinkify Image Compression Security & Risk Analysis

wordpress.org/plugins/shrinkify-image-compression

High-performance image optimization using Shrinkify API. Convert to AVIF/WebP instantly.

0 active installs v1.0 PHP 7.4+ WP 5.8+ Updated Apr 2, 2026
avifimage-compressionimage-optimizerwebp
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Shrinkify Image Compression Safe to Use in 2026?

Generally Safe

Score 100/100

Shrinkify Image Compression has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The plugin "shrinkify-image-compression" v1.0 exhibits a generally strong security posture based on the provided static analysis. The code demonstrates good practices by utilizing prepared statements for all SQL queries and ensuring that all output is properly escaped, which significantly mitigates risks of SQL injection and cross-site scripting (XSS) vulnerabilities. The presence of nonce and capability checks on its single AJAX handler is also a positive indicator, suggesting an attempt to secure this entry point.

However, the analysis reveals a few areas that warrant attention. The plugin performs file operations and makes external HTTP requests, which can introduce vulnerabilities if not handled with extreme care. While the static analysis shows no critical or high severity taint flows, these operations represent potential attack vectors. The absence of any recorded vulnerability history for this plugin is a positive sign, suggesting a history of secure development or a lack of past public exploits. Despite the good practices observed, the plugin's limited vulnerability history means there's less historical data to confirm long-term security resilience. Overall, while the code itself appears to follow many security best practices, the use of file operations and external requests means careful review and ongoing monitoring are advisable.

Key Concerns

  • File operations present potential risks
  • External HTTP requests present potential risks
Vulnerabilities
None known

Shrinkify Image Compression Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Shrinkify Image Compression Release Timeline

v1.0Current
Code Analysis
Analyzed Apr 16, 2026

Shrinkify Image Compression Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
34 escaped
Nonce Checks
1
Capability Checks
1
File Operations
2
External Requests
3
Bundled Libraries
0

Output Escaping

100% escaped34 total outputs
Attack Surface

Shrinkify Image Compression Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_shrinkify_process_batchincludes/class-shrinkify-core.php:8
WordPress Hooks 5
actionadmin_menuincludes/class-shrinkify-admin.php:7
actionadmin_initincludes/class-shrinkify-admin.php:8
actionadmin_enqueue_scriptsincludes/class-shrinkify-admin.php:9
filterwp_generate_attachment_metadataincludes/class-shrinkify-core.php:7
actionplugins_loadedshrinkify-image-compression.php:21
Maintenance & Trust

Shrinkify Image Compression Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 2, 2026
PHP min version7.4
Downloads70

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Shrinkify Image Compression Developer Profile

shrinkify

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Shrinkify Image Compression

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/shrinkify-image-compression/assets/css/admin.css/wp-content/plugins/shrinkify-image-compression/assets/js/phosphor.js/wp-content/plugins/shrinkify-image-compression/assets/js/admin.js
Script Paths
/wp-content/plugins/shrinkify-image-compression/assets/js/phosphor.js/wp-content/plugins/shrinkify-image-compression/assets/js/admin.js
Version Parameters
shrinkify-image-compression/assets/css/admin.css?ver=shrinkify-image-compression/assets/js/phosphor.js?ver=shrinkify-image-compression/assets/js/admin.js?ver=

HTML / DOM Fingerprints

JS Globals
shrinkifyDatashrinkifyInitialTotal
FAQ

Frequently Asked Questions about Shrinkify Image Compression