
SweepPress: Website Cleanup and Optimization Security & Risk Analysis
wordpress.org/plugins/sweeppressRemove unused, orphaned, duplicated data in your WordPress website using 55+ sweepers, manage and clean Options table, optimize database.
Is SweepPress: Website Cleanup and Optimization Safe to Use in 2026?
Generally Safe
Score 100/100SweepPress: Website Cleanup and Optimization has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The sweeppress plugin v6.4.4 exhibits a generally good security posture with several strengths. The plugin demonstrates a strong adherence to secure coding practices, with a high percentage of SQL queries utilizing prepared statements and a significant portion of output being properly escaped. The absence of any recorded CVEs, critical taint flows, or dangerous functions further bolsters this positive assessment. However, there are notable areas of concern that detract from an otherwise strong security profile.
The primary risks stem from the plugin's attack surface. Specifically, four AJAX handlers are present, and a concerning two of these lack authentication checks. This creates direct entry points for unauthenticated users, potentially leading to unauthorized actions if these handlers are not otherwise secured. While no taint flows with critical or high severity were found, the presence of one flow with unsanitized paths warrants attention, as it could represent a latent vulnerability.
The plugin's vulnerability history is a significant strength, indicating a history of secure development or effective patching. However, the static analysis reveals potential weaknesses that could lead to future vulnerabilities if not addressed. The presence of unprotected AJAX handlers and an unsanitized path flow are the most immediate risks. Overall, sweeppress v6.4.4 is a relatively secure plugin, but the unprotected AJAX endpoints require immediate attention to mitigate potential security risks.
Key Concerns
- Unprotected AJAX handlers
- Flows with unsanitized paths
SweepPress: Website Cleanup and Optimization Security Vulnerabilities
SweepPress: Website Cleanup and Optimization Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
SweepPress: Website Cleanup and Optimization Attack Surface
AJAX Handlers 4
WordPress Hooks 20
Scheduled Events 1
Maintenance & Trust
SweepPress: Website Cleanup and Optimization Maintenance & Trust
Maintenance Signals
Community Trust
SweepPress: Website Cleanup and Optimization Alternatives
Optimize Database after Deleting Revisions
rvg-optimize-database
One-click database optimization with precise revision cleanup and flexible scheduling. Speeding up sites since 2011!
WP-Cleanup
wp-cleanup
This Wordpress plugin will cleanup your Wordpress database by remove all unused data from your database.
WP Database Cleaner
wp-database-cleaner
Cleanup and optimize the database of WordPress sites.
atec Database
atec-database
Manage, clean, and optimize your WordPress database with detailed control over tables and options.
Media Cleaner and Database Optimizer by ITPath
itpathsolutions-media-cleaner-and-database-optimizer
The most powerful tool for clearing unused media from your website and optimizing your database to boost site performance
SweepPress: Website Cleanup and Optimization Developer Profile
17 plugins · 12K total installs
How We Detect SweepPress: Website Cleanup and Optimization
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sweeppress/vendor/dev4press/library/core.css/wp-content/plugins/sweeppress/core/assets/css/styles.css/wp-content/plugins/sweeppress/core/assets/js/scripts.js/wp-content/plugins/sweeppress/vendor/dev4press/library/core.js/wp-content/plugins/sweeppress/core/assets/js/scripts.jssweeppress/core/assets/css/styles.css?ver=sweeppress/core/assets/js/scripts.js?ver=sweeppress/vendor/dev4press/library/core.css?ver=sweeppress/vendor/dev4press/library/core.js?ver=HTML / DOM Fingerprints
ab-icondashicons-trashdata-sweep-actionsweeppress/wp-json/sweeppress/v1/sweep