manifest / performance / speed-my-ass-up
Speed My A$$ Up
Speed My A$$ Up - Zero-Bloat, Security-Aware Web Performance & Core Web Vitals Hyper-Optimizer for WordPress
by Cynthia Schomp · github.com/cynthiaschomp/speed-my-ass-up · website
★ 0stars
0forks
Install
No release zip yet. The repository archive installs, but the folder name will carry the branch suffix and updates will not flow:
wp plugin install https://github.com/cynthiaschomp/speed-my-ass-up/archive/refs/heads/main.zipReadme
Speed My A$$ Up (SMAU) 🏎️⚡
Zero-Bloat, Security-Aware Web Performance & Core Web Vitals Hyper-Optimizer for WordPress
The 4th Pillar of the Whole A$$ Security Suite by securemyass.com.
Direct open architecture alternative to WP Rocket.
⚡ Key Highlights
- Sub-0.5ms Pre-Boot Page Caching: Generates static flat HTML & GZIP caches on disk, served directly via
advanced-cache.phpbefore database connections or heavy WordPress core loads. - W3C Speculation Rules API Native: Injects native browser pre-rendering rules for modern Chromium engines, delivering sub-50ms instantaneous page transitions.
- LCP Turbo Priority Elevation: Automatically identifies the primary above-the-fold viewport hero image, excludes it from LazyLoad, injects
<link rel="preload" as="image" fetchpriority="high">into<head>, and applies nativefetchpriority="high". - CLS Zero-Shift Armor: Parses HTML for images and iframes lacking dimension attributes, calculates native aspect ratios, and injects
width,height, and inline CSSaspect-ratioto eliminate Cumulative Layout Shift (CLS = 0.000). - Smart Delay & Defer Script Scheduler: Defers non-critical JavaScript until user interaction (
pointerdown,keydown,scroll,wheel) with zero-break safelists for Divi 5, WooCommerce, and Stripe. - Zero SaaS Dependencies: 100% on-server pure PHP and native browser standards. No external cloud SaaS queues, no quota throttles, and no recurring API fees.
- Security-Aware Cache Shield: Integrates with Guard My A$$ (GMA) Shannon entropy engine to detect and reject query-string cache poisoning and exploit payloads.
- YouTube & Vimeo Video Facades: Replaces heavy iframe video embeds with lightweight preview posters and responsive SVG play buttons, saving ~1.2MB of JS per embed.
- Full WP-CLI Operations: Comprehensive command-line control via
wp smau status,wp smau cache_clear,wp smau preload,wp smau optimize_db, andwp smau benchmark.
🏗️ Architecture Overview
Incoming HTTP(S) Request
│
▼
┌─────────────────────────────────────────────┐
│ Traefik v3 Edge Reverse Proxy │ ── Static File Cache Hit (<0.2ms)
└──────────────────────┬──────────────────────┘
│ Cache Miss
▼
┌─────────────────────────────────────────────┐
│ GMA Pre-Boot Shield (Shannon Entropy) │ ── Block / Poison Drop (403)
└──────────────────────┬──────────────────────┘
│ Clean
▼
┌─────────────────────────────────────────────┐
│ SMAU Pre-Boot Fast Path (advanced-cache.php)│ ── Disk HTML Cache Hit (<0.5ms)
└──────────────────────┬──────────────────────┘
│ Cache Miss
▼
┌─────────────────────────────────────────────┐
│ WordPress Core Bootstrap │
│ │
│ ┌───────────────────────────────────────┐ │
│ │ SMAU Core Engine Pipeline │ │
│ │ - LCP Turbo Priority & CLS Armor │ │
│ │ - Speculation Rules API Generator │ │
│ │ - Smart Delay & Defer JS Scheduler │ │
│ │ - Pure-PHP Local CSS/HTML Minifier │ │
│ │ - Responsive Facade Lazy-Loader │ │
│ └───────────────────────────────────────┘ │
│ │
│ ┌───────────────────────────────────────┐ │
│ │ Output Buffer Capture & Compress │ │
│ │ Write to /wp-content/cache/smau/ │ │
│ └───────────────────────────────────────┘ │
└─────────────────────────────────────────────┘
🥊 Head-to-Head: Speed My A$$ Up vs. WP Rocket
| Capability | WP Rocket | Speed My A$$ Up (SMAU) |
|---|---|---|
| Critical CSS / RUCSS | External cloud SaaS queue (slow & rate-limited) | Pure-PHP local AST & DOM regex extraction |
| Pre-Boot Fast Path | Standard output buffer | Sub-0.5ms advanced-cache.php disk delivery |
| Pre-Rendering | Legacy instant.page script |
Native W3C Speculation Rules API |
| Security Synergy | None (vulnerable to cache-poisoning) | Integrates with Guard My A$$ entropy engine |
| Video Facades | Basic placeholders | Smart responsive SVG facade engine |
| DevOps & CLI | Basic cache clear | Full wp smau suite with automated TTFB benchmarking |
🚀 Installation & Setup
- Clone or Copy:
Place the
speed-my-ass-updirectory into your WordPress plugins folder:cd /path/to/wordpress/wp-content/plugins/ git clone git@github.com:cynthiaschomp/speed-my-ass-up.git - Activate via WP-CLI:
wp plugin activate speed-my-ass-up --allow-root - Verify Status & Pre-Boot Engine:
wp smau status --allow-root
💻 WP-CLI Command Reference
| Command | Purpose |
|---|---|
wp smau status |
View real-time status, cache disk usage, and enabled optimizations |
wp smau cache_clear |
Purge the entire static HTML page cache |
wp smau cache_clear --post=<id> |
Invalidate static cache for a specific post and its associated archives |
wp smau preload |
Trigger background XML sitemap crawler to pre-warm the cache |
wp smau optimize_db |
Prune revisions, auto-drafts, spam comments, and optimize tables |
wp smau benchmark <url> |
Measure 5-iteration TTFB and response size comparing cached performance |
wp smau edge_purge |
Invalidate Cloudflare edge cache via API |
🔒 Whole A$$ Security Suite Interoperability
Speed My A$$ Up coordinates natively with companion products in the Whole A$$ Security Suite:
- Guard My A$$: Pre-boot entropy filtering prevents cache-poisoning attacks from being stored on disk.
- Back My A$$ Up: Automatically excludes temporary cache files from backup archives to preserve cloud storage headroom.
- Secure My A$$: Enforces execution barriers (
.htaccess,.user.ini,index.php) inside cache directories to eliminate PHP execution vectors. - Compress My A$$: Natively prioritizes CMA WebP and AVIF assets as high-priority LCP targets.
- Doc My A$$: High-velocity developer documentation system, Cmd+K search, Docs-as-Code, and zero-bloat standalone reader.
📄 License
Distributed under the GPLv3 License. Developed by Cynthia Schomp.