Skip to main content
mod_pagespeed 2.1 is here — open source (Apache-2.0): the module you know, plus the optimizer worker

Documentation

v2.1.0

Install, configure, and run mod_pagespeed 2.1 — the native module, or a Docker / nginx reverse proxy.

Start here

Getting Started

Install mod_pagespeed 2.1. Three integrations share one optimization pipeline: the native Apache/nginx module, the native IIS module, or a Docker / nginx reverse proxy.

Configure

Operate

Deploy to production: Docker, Helm, systemd

Run the optimizer worker and the module in production with Docker Compose, Kubernetes (Helm), or systemd — covering file permissions, logging, monitoring, and cache sizing.

Use the web console

Inspect cache contents, monitor live throughput and bandwidth savings, and hot-reload configuration from the mod_pagespeed 2.1 web console at /console/.

Browser analysis with headless Chrome

How the optimizer worker renders pages in headless Chrome to extract critical CSS, detect the LCP element, measure JavaScript coverage, and gate optimizations against visual regressions.

Troubleshoot common issues

Fix common mod_pagespeed 2.1 issues: cache misses, images not converting to WebP or AVIF, the optimizer worker not processing, and socket diagnostics.

Serve Markdown to AI agents

Serve AI agents a rendered Markdown copy of your pages at the same URL, and synthesize an /llms.txt — off by default, nothing leaves your server.

Verify AI crawlers with Web Bot Auth

Check RFC 9421 signatures from AI crawlers at your origin and label each request with a verified bot identity — observe-only, off by default.

Validate RSL license capability tokens

Validate Authorization: License capability tokens at your origin and return 401/402/pass — experimental operator access control, off by default.

mod_pagespeed Admin Console

mod_pagespeed 2.1 admin console: statistics, cache inspection, message history, and config. Setup and access control for nginx, Apache, and IIS at /pagespeed_admin/.

Security

Security guidance for mod_pagespeed 2.1: restricting admin pages, domain authorization, untrusted content, CSS/XSS, cache poisoning, HTTPS, and CVE patching.