[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fO3Xy9jv-nGkX_r1wqQTwAL9OqqDb1hWDCB5oXWjK-uE":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":22,"download_link":23,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26,"vulnerabilities":27,"developer":28,"crawl_stats":25,"alternatives":34,"analysis":137,"fingerprints":238},"wp-chinese-optimize","WP-Chinese-Optimize","1.0.1","xunhuweb","https:\u002F\u002Fprofiles.wordpress.org\u002Fxunhuweb\u002F","\u003Cp>WP-Chinese-Optimize基础版主要提供WP系统优化，后期会加入SEO优化，云存储文件上传，数据库优化等\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>去掉WordPress前台后台google字体\u003C\u002Fli>\n\u003Cli>移除顶部管理菜单WordPress logo\u003C\u002Fli>\n\u003Cli>移除前端页面 meta里 WordPress版本信息\u003C\u002Fli>\n\u003Cli>移除开放接口RSD和wlwmanifest\u003C\u002Fli>\n\u003Cli>禁用WordPress的auto-embeds\u003C\u002Fli>\n\u003Cli>关闭日志自动修订，自动保存草稿的功能\u003C\u002Fli>\n\u003Cli>关闭WordPress 的XML-RPC离线发布功能\u003C\u002Fli>\n\u003Cli>阿里云，腾讯云云存储上传（开发中）\u003C\u002Fli>\n\u003Cli>数据库优化（开发中）\u003C\u002Fli>\n\u003Cli>SEO优化（开发中）\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>GitHub:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Project url in GitHub\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Donation:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>If this plugin really benefits you, give me a high praise, or recommend the plug-in to your friends\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Support Mail:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Mailbox: jeff@xunhuweb.com\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Remove plugin\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Deactivate plugin through the ‘Plugins’ menu in WordPress\u003C\u002Fli>\n\u003Cli>Delete plugin through the ‘Plugins’ menu in WordPress\u003C\u002Fli>\n\u003C\u002Fol>\n","WP-Chinese-Optimize 专为中国人打造的WordPress优化插件",10,2053,0,"2017-10-16T07:54:00.000Z","4.8.28","4.0","",[19,20,21],"chinese","optimize","wordpress","http:\u002F\u002Fwww.xunhuweb.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-chinese-optimize.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":29,"total_installs":30,"avg_security_score":24,"avg_patch_time_days":31,"trust_score":32,"computed_at":33},3,40,30,84,"2026-04-05T04:21:55.406Z",[35,59,78,98,118],{"slug":36,"name":37,"version":38,"author":39,"author_profile":40,"description":41,"short_description":42,"active_installs":43,"downloaded":44,"rating":32,"num_ratings":45,"last_updated":46,"tested_up_to":47,"requires_at_least":48,"requires_php":49,"tags":50,"homepage":56,"download_link":57,"security_score":58,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"optimus","Optimus – WordPress Image Optimizer","1.6.3","KeyCDN","https:\u002F\u002Fprofiles.wordpress.org\u002Fkeycdn\u002F","\u003Ch4>WordPress Image Optimizer\u003C\u002Fh4>\n\u003Cp>Optimus reduces the file size of uploaded media files automatically. Depending on the image and format, reductions in size of up to 70% are possible. Several kilobytes can be saved per image—these savings contribute positively to the performance of the blog website. What’s most impressive about the compression technology: the quality of the images is maintained.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Ch4>There are three different versions of Optimus:\u003C\u002Fh4>\n\u003Col>\n\u003Cli>\u003Cstrong>Optimus\u003C\u002Fstrong> \u003Cem>(Free)\u003C\u002Fem> as base version with limitations (e.g. max of 100kb)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Optimus HQ\u003C\u002Fstrong> \u003Cem>(Premium)\u003C\u002Fem> with expanded functionality for personal projects\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Optimus HQ PRO\u003C\u002Fstrong> \u003Cem>(Premium)\u003C\u002Fem> as professional solution for customer websites\u003C\u002Fli>\n\u003C\u002Fol>\n\u003C\u002Fblockquote>\n\u003Cp>More details about the features and the pricing model on \u003Ca href=\"https:\u002F\u002Foptimus.io\" rel=\"nofollow ugc\">optimus.io\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>How does it work?\u003C\u002Fh4>\n\u003Cp>During the uploading process of images to the media library, the \u003Cem>Optimus\u003C\u002Fem> plugin simultaneously sends the images to the \u003Cem>Optimus\u003C\u002Fem> server, where the incoming material is processed and sent back in optimized form. Afterwards, the \u003Cem>Optimus\u003C\u002Fem> plugin saves the image version with a reduced file size in the media library.\u003C\u002Fp>\n\u003Cp>The optimization of images – \u003Cem>including thumbnails\u003C\u002Fem> – is conducted in the background and outside of the view of the user. The image compression gains per file are displayed by Optimus within the media library in form of a percentage value, see \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Foptimus\u002Fscreenshots\u002F\" rel=\"ugc\">screenshot\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Superfluous information that is saved by image processing programs and is not even necessary for displaying the image is extracted from image files. This way, the quality of the graphics remains intact while the image size can be reduced significantly. If you wish, Optimus keeps all author, EXIF and copyright information contained within the photos — the compressional gains will be correspondingly lower.\u003C\u002Fp>\n\u003Cp>Optimus supports the conversion of images to the new \u003Ca href=\"https:\u002F\u002Fwww.keycdn.com\u002Fblog\u002Fconvert-to-webp-the-successor-of-jpeg\" rel=\"nofollow ugc\">\u003Cem>WebP\u003C\u002Fem> image format\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>It is recommended to use the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcache-enabler\u002F\" rel=\"ugc\">WordPress Cache Enabler\u003C\u002Fa> plugin to integrate the converted WebP images.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.keycdn.com\u002Fsupport\u002Foptimus\u002Fprogressive-jpeg\" rel=\"nofollow ugc\">Progressive JPEGs\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Reduction of file size during the upload\u003C\u002Fli>\n\u003Cli>Optimization of all preview images of a photo\u003C\u002Fli>\n\u003Cli>No adjustments to code necessary\u003C\u002Fli>\n\u003Cli>Optional: no removal of EXIF and IPTC metadata\u003C\u002Fli>\n\u003Cli>Optional: HTTPS connection for the image transfer (Optimus HQ)\u003C\u002Fli>\n\u003Cli>Optional: \u003Ca href=\"https:\u002F\u002Fwww.keycdn.com\u002Fsupport\u002Foptimus\u002Fconfiguration-to-deliver-webp\" rel=\"nofollow ugc\">conversion to the WebP\u003C\u002Fa> image format (Optimus HQ)\u003C\u002Fli>\n\u003Cli>Faster load times for blog pages\u003C\u002Fli>\n\u003Cli>Support for WooCommerce\u003C\u002Fli>\n\u003Cli>WordPress multisite-support\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.keycdn.com\u002Fsupport\u002Foptimus\u002Fimage-bulk-optimization\" rel=\"nofollow ugc\">Bulk optimization\u003C\u002Fa> (optimize existing images)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Privacy\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>After the image optimization and transfer process, the \u003Cem>Optimus\u003C\u002Fem> server immediately deletes all the temporarily stored files. No files are stored!\u003C\u002Fli>\n\u003Cli>The Optimus servers are located in Germany.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Tips\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Photos should always be saved as JPEGs rather than PNGs. The PNG format works well for illustrations, JPEG on the other hand is the right choice for photographs. Another reason: the size reduction always works more quickly for JPEGs.\u003C\u002Fli>\n\u003Cli>Your images have been optimized using Desktop tools such as ImageOptim (Mac) or PNGGauntlet (Win) before you upload them? Optimus has the significant benefit of also minimizing the thumbnails (=preview images) created by WordPress. After all, themes almost always integrate thumbnails rather than original images.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>System Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>PHP >=5.6\u003C\u002Fli>\n\u003Cli>WordPress >=4.6\u003C\u002Fli>\n\u003Cli>Allow outbound connections\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Storage Utilization\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Backend: ~ 0,19 MB\u003C\u002Fli>\n\u003Cli>Frontend: ~ 0,01 MB\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Website\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Foptimus.io\" rel=\"nofollow ugc\">optimus.io\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Author\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.keycdn.com\" title=\"KeyCDN\" rel=\"nofollow ugc\">KeyCDN\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Effective image compression and optimization during the upload process. Smart, automatic and reliable.",30000,693747,68,"2026-03-02T09:04:00.000Z","6.9.4","4.6","5.6",[51,52,53,54,55],"image-optimizer","images","optimize-image","webp","wordpress-image-optimizer","https:\u002F\u002Foptimus.io","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Foptimus.1.6.3.zip",100,{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":61,"active_installs":66,"downloaded":67,"rating":58,"num_ratings":68,"last_updated":69,"tested_up_to":70,"requires_at_least":71,"requires_php":49,"tags":72,"homepage":17,"download_link":77,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"hostvn-admin-optimize","Hostvn Admin Optimize","1.0.7","Duong Thanh Binh","https:\u002F\u002Fprofiles.wordpress.org\u002Fhostvn\u002F","\u003Cul>\n\u003Cli>Disable Wp-admin Dashboard widget\u003C\u002Fli>\n\u003Cli>Disable Plugins update, Theme update, WordPress Update\u003C\u002Fli>\n\u003Cli>Add Google Recaptcha to login form, register form, forgot password form\u003C\u002Fli>\n\u003Cli>Disable Generator meta tag\u003C\u002Fli>\n\u003Cli>Change login errors message\u003C\u002Fli>\n\u003Cli>Enable\u002FDisable redirect to homepage after login\u003C\u002Fli>\n\u003Cli>Woocommerce optimize\u003C\u002Fli>\n\u003Cli>SMTP settings\u003C\u002Fli>\n\u003Cli>CDN config\u003C\u002Fli>\n\u003Cli>Security settings\u003C\u002Fli>\n\u003Cli>Contact Button\u003C\u002Fli>\n\u003Cli>Show\u002FHide menu in wp-admin\u003C\u002Fli>\n\u003Cli>Change login link\u003C\u002Fli>\n\u003Cli>And more …\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>System Requirements\u003C\u002Fh3>\n\u003Col>\n\u003Cli>PHP >= 5.6\u003C\u002Fli>\n\u003Cli>WordPress >= 4.9\u003C\u002Fli>\n\u003C\u002Fol>\n",400,2206,1,"2021-02-08T11:12:00.000Z","5.5.18","4.9",[73,74,75,76],"login-recaptcha","recaptcha","wordpress-optimize","wp-admin","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhostvn-admin-optimize.zip",{"slug":79,"name":80,"version":81,"author":82,"author_profile":83,"description":84,"short_description":85,"active_installs":58,"downloaded":86,"rating":87,"num_ratings":88,"last_updated":89,"tested_up_to":90,"requires_at_least":91,"requires_php":17,"tags":92,"homepage":96,"download_link":97,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"wp-images-lazy-loading","WP images lazy loading","1.3.1","Derick Payne","https:\u002F\u002Fprofiles.wordpress.org\u002Fpetrichorpost\u002F","\u003Cp>The WordPress images lazy loading plugin (WPILL) enables the jQuery lazy loading of images to improve page load times and increase your Google PageSpeed Score. It delays loading of images outside of the viewport (visible part of a web page). These images won’t be loaded before the user scrolls down to them. Using WPILL on long pages containing many large images makes the page load much faster. It will also reduce server load and save some bandwidth.\u003C\u002Fp>\n\u003Cp>For more information, go to http:\u002F\u002Fwww.petrichorpost.com\u002Fwordpress-images-lazy-loading-plugin\u002F or for a complete WordPress optimization guide, go to http:\u002F\u002Fwww.petrichorpost.com\u002Fhow-to-speed-up-wordpress\u002F\u003C\u002Fp>\n","WordPress optimization plugin that enables jQuery image lazy loading.",14480,80,4,"2016-05-05T00:30:00.000Z","4.5.33","2.8",[93,52,94,20,95],"google-pagespeed","jquery-lazy-load-plugin","optimize-wordpress","http:\u002F\u002Fwww.petrichorpost.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-images-lazy-loading.1.3.1.zip",{"slug":99,"name":100,"version":101,"author":102,"author_profile":103,"description":104,"short_description":105,"active_installs":106,"downloaded":107,"rating":58,"num_ratings":108,"last_updated":109,"tested_up_to":47,"requires_at_least":110,"requires_php":111,"tags":112,"homepage":17,"download_link":117,"security_score":58,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"wpoptimizers-image-optimizer-lite","WPOptimizers – Image Optimizer Lite","1.0.5","WPOptimizers","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpoptimizers\u002F","\u003Cp>WPOptimizers – Image Optimizer Lite is a lightweight and powerful WordPress image optimization plugin that helps you improve your website speed by compressing and optimizing images directly inside your WordPress dashboard. With its simple interface and automatic optimization, you can boost your site’s performance, SEO rankings, and Core Web Vitals in just a few clicks.\u003C\u002Fp>\n\u003Cp>Built for simplicity, speed, and compatibility, this plugin ensures your images load faster without compromising quality. Perfect for bloggers, businesses, and developers who care about website performance and user experience.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Now includes a modern animated progress bar with brand colors (#fcba04 & #30BCED) for bulk optimization.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>One-click image optimization – optimize all your images instantly\u003C\u002Fli>\n\u003Cli>Supports JPEG, PNG, and GIF images\u003C\u002Fli>\n\u003Cli>Lightweight and fast – no bloat, works with any theme or plugin\u003C\u002Fli>\n\u003Cli>Optimizes new uploads automatically\u003C\u002Fli>\n\u003Cli>Reduces file size without visible quality loss\u003C\u002Fli>\n\u003Cli>Improves SEO, Core Web Vitals, and page speed scores\u003C\u002Fli>\n\u003Cli>Media Library badge to show which images are optimized or not (NEW)\u003C\u002Fli>\n\u003Cli>Bulk optimization fixes with proper status saving (NEW)\u003C\u002Fli>\n\u003Cli>Stylish animated progress bar with brand colors for bulk optimization (NEW)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Why choose WPOptimizers Lite?\u003C\u002Fh4>\n\u003Cp>Unlike bulky image optimization plugins that require complex configurations or external APIs, WPOptimizers Lite is designed for users who want a \u003Cstrong>simple, free, and effective WordPress image optimization solution\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>Whether you’re a blogger, business owner, or developer, this plugin offers:\u003Cbr \u002F>\n– A clean and beginner-friendly interface\u003Cbr \u002F>\n– Smart image compression for faster loading times\u003Cbr \u002F>\n– Improved site performance without extra server load\u003Cbr \u002F>\n– Better search engine rankings with optimized images\u003C\u002Fp>\n\u003Cp>If you need a \u003Cstrong>fast, lightweight, and beginner-friendly WordPress image optimizer\u003C\u002Fstrong>, WPOptimizers Lite is the perfect choice to make your website load faster and deliver a smoother user experience.\u003C\u002Fp>\n","Lightweight image optimizer for WordPress. Compress images with one click for faster, better-performing websites.",70,827,2,"2026-01-24T11:45:00.000Z","6.4","7.4",[113,114,115,51,116],"compress-images","image-compression","image-optimization","wordpress-speed","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwpoptimizers-image-optimizer-lite.1.0.5.zip",{"slug":119,"name":120,"version":121,"author":122,"author_profile":123,"description":124,"short_description":125,"active_installs":126,"downloaded":127,"rating":13,"num_ratings":13,"last_updated":128,"tested_up_to":129,"requires_at_least":130,"requires_php":17,"tags":131,"homepage":135,"download_link":136,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"wp-sanitize","WP Sanitize : Auto WordPress Optimizer Plugin","1.0","VibeThemes","https:\u002F\u002Fprofiles.wordpress.org\u002Fvibethemes\u002F","\u003Cp>WP Sanitize checks for potential security vulnerabilities and keeps your WordPress database optimized. And most important runs on Fully Automatic mode.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Plug and Play solution : Just install and forget\u003C\u002Fli>\n\u003Cli>Light Weight 2KB plugin , resides in the admin panel\u003C\u002Fli>\n\u003Cli>Cleans wp_head and Content\u003C\u002Fli>\n\u003Cli>Removes RSD link (Really simple discovery link)\u003C\u002Fli>\n\u003Cli>Cleans Curly quotes from Content\u003C\u002Fli>\n\u003Cli>HTML in User profile\u003C\u002Fli>\n\u003Cli>Keeps WordPRess database Optimized : Removes Overheads\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Settings\u003C\u002Fh4>\n\u003Cp>In the Settings Tab  you’ll find the \u003Ccode>WP Sanitize\u003C\u002Fcode> widget.\u003Cbr \u002F>\n\u003Cbr \u002F>\n\u003Ca href=\"http:\u002F\u002Fwww.vibethemes.com\u002Fshowcase\u002F\" rel=\"nofollow ugc\">More Free Plugins\u003C\u002Fa>\u003C\u002Fp>\n","Keep your WordPress Optimized and Secure 24x7",50,7299,"2011-10-25T15:18:00.000Z","3.2.1","2.7",[132,20,133,134],"auto","wordpress-optimizer","wordpress-security","http:\u002F\u002Fwww.vibethemes.com\u002Fwp-sanitize-wordpress-security-plugin\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-sanitize.1.0.zip",{"attackSurface":138,"codeSignals":206,"taintFlows":227,"riskAssessment":228,"analyzedAt":237},{"hooks":139,"ajaxHandlers":202,"restRoutes":203,"shortcodes":204,"cronEvents":205,"entryPointCount":13,"unprotectedCount":13},[140,145,149,156,160,164,168,171,174,178,181,184,188,191,195,198],{"type":141,"name":142,"callback":142,"priority":11,"file":143,"line":144},"action","admin_menu","admin\\class-xh-wp-optimize-admin.php",11,{"type":141,"name":146,"callback":147,"file":143,"line":148},"admin_head","menu_highlight",12,{"type":150,"name":151,"callback":152,"priority":153,"file":154,"line":155},"filter","gettext_with_context","disable_open_sans",888,"class-xh-wp-optimize.php",15,{"type":141,"name":157,"callback":158,"file":154,"line":159},"init","remove_open_sans",16,{"type":141,"name":161,"callback":162,"file":154,"line":163},"get_header","wp_compress_html",17,{"type":150,"name":165,"callback":166,"file":154,"line":167},"automatic_updater_disabled","__return_true",21,{"type":150,"name":169,"callback":169,"priority":68,"file":154,"line":170},"get_avatar",63,{"type":141,"name":172,"callback":172,"file":154,"line":173},"add_admin_bar_menus",142,{"type":150,"name":175,"callback":176,"file":154,"line":177},"show_admin_bar","__return_false",146,{"type":141,"name":142,"callback":179,"file":154,"line":180},"remove_admin_notices_update_nag",150,{"type":150,"name":182,"callback":182,"priority":11,"file":154,"line":183},"tiny_mce_plugins",161,{"type":150,"name":185,"callback":186,"priority":11,"file":154,"line":187},"admin_footer_text","remove_wp_admin_footer_thankyou",168,{"type":141,"name":189,"callback":189,"file":154,"line":190},"in_admin_footer",172,{"type":141,"name":192,"callback":193,"file":154,"line":194},"wp_print_scripts","disable_autosave",190,{"type":150,"name":196,"callback":176,"file":154,"line":197},"xmlrpc_enabled",198,{"type":141,"name":157,"callback":199,"file":200,"line":201},"closure","init.php",19,[],[],[],[],{"dangerousFunctions":207,"sqlUsage":208,"outputEscaping":210,"fileOperations":225,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":226},[],{"prepared":13,"raw":13,"locations":209},[],{"escaped":211,"rawEcho":212,"locations":213},8,5,[214,218,221,222,224],{"file":215,"line":216,"context":217},"admin\\abstract\\abstract-xh-view-form-native.php",24,"raw output",{"file":219,"line":220,"context":217},"admin\\views\\class-xh-view-settings-all.php",67,{"file":219,"line":220,"context":217},{"file":223,"line":220,"context":217},"admin\\views\\class-xh-view-settings-tj.php",{"file":223,"line":220,"context":217},9,[],[],{"summary":229,"deductions":230},"The 'wp-chinese-optimize' v1.0.1 plugin exhibits a generally positive security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. Furthermore, the code demonstrates good practices by exclusively using prepared statements for SQL queries and having no recorded vulnerabilities or CVEs.  The plugin also avoids external HTTP requests, which is a positive security attribute.\n\nHowever, there are areas that warrant attention. A significant portion (38%) of output is not properly escaped, which could lead to Cross-Site Scripting (XSS) vulnerabilities if the unescaped data originates from user input or an untrusted source. The complete lack of nonce checks and capability checks across all entry points is a major concern. This means that any functionality within the plugin, if it were to exist (though the attack surface appears minimal), would not be protected against CSRF attacks or unauthorized access based on user roles.\n\nWhile the vulnerability history is clean, this does not entirely negate the risks identified in the static analysis. The absence of vulnerabilities could be due to the limited attack surface and lack of complex features rather than inherent robust security. The lack of taint analysis data also makes it difficult to fully assess risks related to data flow. The plugin's strengths lie in its minimal attack surface and SQL query handling, but the unescaped output and complete absence of nonces and capability checks are notable weaknesses.",[231,233,235],{"reason":232,"points":212},"Unescaped output detected",{"reason":234,"points":11},"No nonce checks",{"reason":236,"points":11},"No capability checks","2026-03-17T00:18:57.135Z",{"wat":239,"direct":248},{"assetPaths":240,"generatorPatterns":243,"scriptPaths":244,"versionParams":245},[241,242],"\u002Fwp-content\u002Fplugins\u002Fwp-chinese-optimize\u002Fassets\u002Fcss\u002Fstyle.css","\u002Fwp-content\u002Fplugins\u002Fwp-chinese-optimize\u002Fassets\u002Fjs\u002Fscript.js",[],[242],[246,247],"wp-chinese-optimize\u002Fstyle.css?ver=","wp-chinese-optimize\u002Fscript.js?ver=",{"cssClasses":249,"htmlComments":250,"htmlAttributes":251,"restEndpoints":252,"jsGlobals":253,"shortcodeOutput":255},[],[],[],[],[254],"XH_WP_OPTIMIZE",[]]