Description
At a glance
Looking for CacheArmor v1.4.0? It is available here as a free GPL download for WordPress — updated September 28, 2026 · requires WordPress 5.6+ & PHP 7.4+.
Most REST caching stops at “store the response, serve it until it expires”. The hard part is the moment it does expire: that is when every client that was being served instantly is suddenly queued behind one slow render.
This plugin is built around that moment.
What makes it different
- Stale-while-revalidate. Once an entry exists, it keeps being served after it expires while a single request refreshes it in the background, so visitors are not held up by the refresh.
- Stampede protection. When an entry is missing or has expired entirely, exactly one request regenerates it. The others wait briefly for that result instead of running the same expensive render in parallel.
- Files on disk, no custom tables. Cached responses are files, not database rows, and there is no must-use plugin to drop into
mu-plugins. The only things stored in the database are your settings and a note of when the cache was last cleared. - Opt-in per route, from a settings screen. Choose exactly which routes to cache, set a query filter and a lifetime for each, and see which routes carry a permission check. Nothing is cached until you enable it.
- Safe by default. Only anonymous GET requests are ever cached. Routes whose responses differ per user or per shopping session, such as
/wp/v2/usersand the WooCommerce cart and checkout, cannot be enabled at all, and requests that carry a shopping session are never served from the cache. - Bounded. The cache stops growing at 1,000 entries or 256 MB, whichever comes first, so it can never fill the disk.
- Multisite aware. Every site in a network has its own cache.
- Fails open. An error, a corrupt file, or an unwritable directory falls back to normal uncached behaviour rather than breaking the endpoint.
- No external requests, no telemetry, no data collection. Ever.
Why caching is opt-in
Caching the wrong endpoint can serve one visitor’s data to another. So the plugin does nothing until you enable a route yourself.
The settings screen lists every REST route registered on your site, including routes added by other plugins and your own custom endpoints, with a filter to find the ones you want. Each is marked “Public” or “Permission check” so you can see which ones restrict access before you decide.
A worked example
A collection request that renders page-builder content for dozens of posts can take many seconds and hold a PHP worker for the whole time. When several clients poll that endpoint, the worker pool fills and the whole site slows down. Cache that one route and the cost collapses to a file read, even at the moment the entry expires.
Frequently asked questions
What do I get when I download CacheArmor?
CacheArmor 1.4.0 is the latest version. It is a WordPress plugin you can download here free of charge under the GPL license, with the complete feature set included and no trial limitations.
Does CacheArmor cost anything?
No. CacheArmor 1.4.0 is 100% free — the full GPL version, not a trial or demo. There are no download limits, no accounts to create, and no upsells during the download.
How do I install CacheArmor 1.4.0?
Download the ZIP file from this page, then in your WordPress dashboard go to Plugins → Add New → Upload Plugin, choose the file, click Install Now, then Activate. The plugin works immediately after activation — no license key or extra setup is required for the core features.
What are the requirements for CacheArmor?
CacheArmor 1.4.0 requires WordPress 5.6 or higher and PHP 7.4 or higher. Most modern WordPress hosts already meet these versions. Running older versions may cause features to break, so update WordPress and PHP first if your site is behind.
When was CacheArmor last updated?
Version 1.4.0 was last updated on September 28, 2026. This page is refreshed automatically, so the download here always matches the newest version we have verified.
Is the CacheArmor download safe?
The file is sourced directly from the official WordPress.org repository — the same file the developer published. It is served unmodified, so what you install here is byte-identical to the official release.
Technical details
| Version | 1.4.0 |
|---|---|
| Last updated | September 28, 2026 |
| Requires WordPress | 5.6 or higher |
| Requires PHP | 7.4 or higher |
| Author | mandaffaaord |
| Tags | api, cache, performance, rest-api |
Download CacheArmor
Download CacheArmor WP PluginNote: if the download does not start, disable your ad blocker and try again.