AMP integrations transform WordPress output, validate generated markup, and may direct visitors between standard and optimized page variants. AMP version 2.5.5 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-65701. The review focused on administrative settings, markup sanitization, validation data, template processing, component handling, and safe page delivery.
| Name of | AMP |
| Version | 2.5.5 |
| Active installations | 400,000+ |
| Description | Generates AMP-compatible WordPress markup, provides validation tools for compatibility issues, and supports optimized responsive experiences within existing publishing workflows. |
| Security | Successfully tested for: SQL Injection (SQLi) Cross-Site Scripting (XSS) – Stored and Reflected Cross-Site Request Forgery (CSRF) Authentication Vulnerabilities Authentication Bypass Exploits Privilege Escalation Buffer Overflow Denial-of-Service (DoS) vectors Data Leakage Vulnerabilities Insecure Dependency Usage Remote Code Execution (RCE) Risks Unauthorized File Access Insufficient Injection Protection Information Disclosure via Misconfigured Endpoints |
| CleanTalk Certification | Proudly earned the “Plugin Security Certification” (PSC) from CleanTalk, indicating adherence to stringent security standards. |
| Additional Information | Use AMP with confidence backed by the “Plugin Security Certification” (PSC). Test important templates after theme or plugin updates, review validation errors, and confirm that redirects and canonical relationships match the intended publishing mode. |
| Plugin Security Certification by CleanTalk | ![]() |
| Logo of the plugin |
PSC by CleantalkJoin the community of developers who prioritize security. Highlight your plugin in the WordPress catalog.
Key Features
AMP integrates with the normal WordPress publishing flow and automates much of the work required to generate AMP-valid markup. Its validation tools identify and contextualize compatibility errors so site owners and developers can address incompatible theme or plugin output. The plugin supports responsive AMP experiences for both mobile and desktop visitors.
Security Assurance
The CleanTalk Plugin Security Certification evaluation focused on permissions and request integrity around plugin settings, validation records, and compatibility controls. The review also covered sanitization of generated markup, escaping of validation output, template and component processing, redirection choices, publishing state, and safe handling of front-end requests.
The plugin has been successfully tested for:
✅ Information Leakage Vulnerabilities
✅ SQL Injection Vulnerabilities
✅ Cross-Site Scripting (XSS) Attacks
✅ Cross-Site Request Forgery (CSRF) Attacks
✅ Authentication and Authentication Bypass Vulnerabilities
✅ Privilege Escalation Vulnerabilities
✅ Buffer Overflow Vulnerabilities
✅ Denial-of-Service (DoS) Vulnerabilities
✅ Data Leakage Vulnerabilities
✅ Insecure Dependencies
✅ Code Execution Vulnerabilities
✅ File Unauthorized Access Vulnerabilities
✅ Insufficient Injection Protection
Conclusion
With PSC-2026-65701, AMP version 2.5.5 demonstrates a strong security baseline for optimized markup generation and delivery. The certification addresses privileged configuration, sanitization, validation output, template integration, and page routing. Site owners should test representative content, resolve validation findings, and repeat compatibility checks whenever themes or content-producing plugins change.
Note: The date and certification information may change over time. It is advisable to verify the latest details on the plugin developer’s website.
