
Speed-Checker Security & Risk Analysis
wordpress.org/plugins/speed-checkerGet your WordPress webiste mobile and desktop score from the Google Pagespeed API to your WordPress dashboard.
Is Speed-Checker Safe to Use in 2026?
Generally Safe
Score 85/100Speed-Checker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "speed-checker" plugin version 1.0 exhibits a generally strong security posture based on the static analysis. The absence of dangerous functions, SQL queries without prepared statements, unsanitized file operations, and a complete lack of critical or high severity taint flows are significant strengths. All output appears to be properly escaped, and the presence of nonce checks further enhances security for potential interaction points. The plugin also has no recorded vulnerability history, indicating a good track record.
However, there are a few areas that warrant attention. The plugin has a single cron event which, while not inherently insecure, represents an entry point that wasn't explicitly detailed as being protected by capability checks in the static analysis. Similarly, the presence of an external HTTP request needs careful consideration to ensure it's not susceptible to man-in-the-middle attacks or other network-based vulnerabilities. The complete lack of observed capability checks on any entry points, although balanced by nonce checks, is a potential weakness if the cron event or the HTTP request involves sensitive operations or data.
In conclusion, "speed-checker" v1.0 is a well-developed plugin from a security perspective, with a clean codebase and no known vulnerabilities. The primary areas for improvement would be to explicitly verify the authorization and sanitization of the cron event's execution and the handling of the external HTTP request to ensure comprehensive security.
Key Concerns
- Capability checks missing on entry points
- External HTTP request without context
Speed-Checker Security Vulnerabilities
Speed-Checker Code Analysis
Output Escaping
Speed-Checker Attack Surface
WordPress Hooks 4
Scheduled Events 1
Maintenance & Trust
Speed-Checker Maintenance & Trust
Maintenance Signals
Community Trust
Speed-Checker Alternatives
Helper Lite for PageSpeed
helper-lite-for-pagespeed
Speed up your site with attributes decoding="async" & loading="lazy" for <img> and <iframe>.
LiteSpeed Cache
litespeed-cache
All-in-one unbeatable acceleration & PageSpeed improvement: caching, image/CSS/JS optimization...
SpeedyCache – Cache, Optimization, Performance
speedycache
SpeedyCache is a WordPress cache plugin that helps you improve performance of your WordPress site by caching, minifying, and compressing your website.
Insights from Google PageSpeed
google-pagespeed-insights
Use Insights from Google PageSpeed to increase your sites performance, your search engine ranking, and your visitors browsing experience.
True Lazy Analytics
true-lazy-analytics
This plugin enables lazy loading for Google Analytics, Microsoft Clarity, Facebook Pixel, Hotjar, Yandex Metrica (Yandex Metrika) and Liveinternet cou …
Speed-Checker Developer Profile
1 plugin · 10 total installs
How We Detect Speed-Checker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/speed-checker/assets/css/style.css/wp-content/plugins/speed-checker/assets/js/script.js/assets/js/script.jsspeed-checker/assets/js/script.js?ver=1.0HTML / DOM Fingerprints
nav-tabnav-tab-active<!--
* WEBSITE SPEED ADMIN
* ...
-->