
Simple AMP Security & Risk Analysis
wordpress.org/plugins/simple-ampA simple plugin that generates AMP pages based on current template.
Is Simple AMP Safe to Use in 2026?
Generally Safe
Score 85/100Simple AMP has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'simple-amp' v0.1.1 plugin exhibits a strong security posture in several key areas. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. Furthermore, the plugin utilizes prepared statements exclusively for its SQL queries, mitigating common SQL injection risks. The static analysis reveals no dangerous functions, file operations, or external HTTP requests, all positive indicators. However, the low percentage of properly escaped output (25%) is a notable concern. This suggests that user-provided data or dynamic content might be rendered without sufficient sanitization, potentially leading to cross-site scripting (XSS) vulnerabilities. The lack of capability checks and nonce checks, while mitigated by the small attack surface, could become a risk if new entry points are introduced without proper security controls. The plugin's vulnerability history is clean, with no recorded CVEs. This, combined with the current static analysis findings, suggests a generally well-coded plugin, but the output escaping issue warrants attention.
Key Concerns
- Low output escaping percentage
- No capability checks
- No nonce checks
Simple AMP Security Vulnerabilities
Simple AMP Code Analysis
Bundled Libraries
Output Escaping
Simple AMP Attack Surface
WordPress Hooks 6
Maintenance & Trust
Simple AMP Maintenance & Trust
Maintenance Signals
Community Trust
Simple AMP Alternatives
AMP for WP – Accelerated Mobile Pages
accelerated-mobile-pages
AMP for WP is the most recommended AMP plugin by the community. Automatically add Accelerated Mobile Pages (Google AMP Project) functionality on your …
easy AMP
wp-amp-it-up
Enable AMP (Accelerated Mobile Pages) on your site. Just install, activate and it´s done! The official AMP Plugin for WordPress by amp-cloud.
PWA+AMP
pwamp
Converts WordPress into Progressive Web Apps and Accelerated Mobile Pages styles.
Templatic-Google-AMP
templatic-google-amp
To work with Templatic AMP plugin just type 'amp' keyword after any archive, category, details or any page URL it will display AMP version o …
Ultimate AMP – WordPress AMP Plugin
ultimate-amp
Ultimate AMP is a WordPress AMP Plugin to Enable AMP on Website. Feature rich and easy Customizable Plugin.
Simple AMP Developer Profile
9 plugins · 20K total installs
How We Detect Simple AMP
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.