Skip to main content
mod_pagespeed 2.1 is here — open source (Apache-2.0): the module you know, plus the optimizer worker

The software is free. Support — and hardened builds — are what's for sale.

mod_pagespeed 2.1 is open source under the Apache License 2.0 — free to install and run, in development and in production. A support subscription and hardened, attested builds are what We-Amp sells alongside it.

Support subscription

support from the people who build the product, with agreed response times and SLA-backed delivery of security updates

  • A direct channel to the people who build the product
  • Agreed response times for configuration, upgrade and incident questions
  • SLA-backed delivery of security updates
  • Scoped to your deployment or your organization

Pricing to be announced

Engagements are available today — talk to us.

Talk to us →

Hardened attested builds

builds of the same code with a signed SBOM and build provenance, delivered through the subscriber repository

  • The same code as the standard packages, built through a hardened pipeline
  • A signed SBOM and build provenance with every build
  • Delivered through the subscriber repository
  • The artifacts carry the same Apache License 2.0 as the standard packages

Pricing to be announced

Engagements are available today — talk to us.

Talk to us →

Both cover the same software: a subscription changes who answers when you need help and how your builds are attested, never what the software does. Running without one is a first-class choice. Hosting providers running it at fleet scale: see the hosting partner program. Subscriptions are governed by the terms of service together with the support terms.

Packages & builds

Standard packages

Free

The signed apt and yum packages everyone runs — free to install and run, in development and in production, on any number of servers. No account, no registration.

Download →

Hardened builds

Pricing to be announced

The same code the standard packages are built from, through a hardened pipeline: signed SBOM and build provenance, delivered through the subscriber repository. They differ in how they are built and attested — never in features. The artifacts themselves carry the same Apache License 2.0 as the standard packages; a subscription covers access to the subscriber repository.

Talk to us →

The optimization core behind 231,341 live sites (per BuiltWith, May 2026) — maintained by the team that helped build ngx_pagespeed.

What if I never subscribe?

Then you run the same software everyone else runs, free under the Apache License 2.0. A support subscription changes who answers when you need help.

Will it break my site?

Transforms are deliberately conservative, and the design falls back to your original content when an optimization step fails. Test on staging, then disable any path, URL pattern, or transform type with one line of config.

One small company — what's the risk?

Smaller than it used to be: mod_pagespeed 2.1 is open source under the Apache License 2.0, and there is no kill switch in the request path. If We-Amp disappeared tomorrow, your deployment keeps running and the code stays yours to build, patch, and fork.

How to get started

1

Install

apt install the signed mod-pagespeed (Apache) or nginx-module-pagespeed (nginx) from packages.modpagespeed.com.

2

Run it — it's yours

No registration, no trial clock. Enable filters, set the cache path, and ship it to production — the software is open source under the Apache License 2.0.

3

Add backing when you want it

When the deployment matters enough that you want support from the people who build it, or attested builds for your supply chain, talk to us.

Support questions

Is the software really free?

Yes. mod_pagespeed 2.1 is open source under the Apache License 2.0: free to install and run, in development and in production, with no usage registration. The standard signed packages cost nothing; what We-Amp sells is support — and hardened, attested builds.

What does a support subscription buy?

Backing from the people who build the product: a direct channel, agreed response times for configuration, upgrade and incident questions, and SLA-backed delivery of security updates. Hosting providers get the same subscription shaped for a fleet. The software is the same whether or not you hold a subscription.

What are hardened builds?

Builds of the same code the standard packages are built from, produced through a hardened build pipeline with a signed SBOM and build provenance, delivered through the subscriber repository. They differ in how they are built and attested — never in features. Sold as a subscription; pricing is to be announced. The artifacts themselves carry the same Apache License 2.0 as the standard packages; a subscription covers access to the subscriber repository.

When can I buy a support plan or hardened builds?

Pricing is being finalized. Until it is published, talk to us directly at sales@we-amp.com.

What happens if my support plan lapses?

Nothing happens to your deployment. The software is yours under the Apache License 2.0 — it keeps running, keeps optimizing, and you can keep upgrading.

Do containers, replicas, or autoscaling count against anything?

No. The software is free, with no per-server, per-container, or per-request metering of any kind.

The original mod_pagespeed costs nothing. What changed?

Nothing, on that front: the maintained continuation is free too, under the same Apache License 2.0 the original codebase carried. What changed is that it is maintained again — security fixes, a current toolchain, and the optimizer worker — and that the maintenance is funded by support plans and hardened-build subscriptions.

Where do the support terms live?

At we-amp.com/licensing/ — the We-Amp terms page.

Which web servers does mod_pagespeed support?

Apache and nginx ship as GA native modules today, installed from the signed apt/yum repository — see the full distribution matrix. The IIS package ships from the 1.15 packaging channel.

Where are the technical answers for running mod_pagespeed?

See Getting Started, Troubleshooting, Filter Selection, Cache modes, Admin console, and the archived 1.0 docs.

Can I run mod_pagespeed under ASP.NET Core?

Yes, on Linux. The WeAmp.PageSpeed.Sidecar NuGet package adds mod_pagespeed to your Kestrel app via middleware, with a bundled nginx + ngx_pagespeed optimizer running on loopback behind it — AddPageSpeed() / UsePageSpeed() wire it in, and a single dotnet add package pulls the bundled native binaries. It is Linux-only (linux-x64, linux-arm64). See the ASP.NET Core sidecar guide. For a cross-platform, in-process integration, see ASP.NET Core Getting Started instead.

Which integrations are supported?

Three ways to run it: the native in-process module for Apache and nginx from the signed apt/yum repository (see installation); a Docker / nginx reverse proxy in front of any HTTP origin (Apache, Node.js, Caddy, IIS, your CDN's origin); and the ASP.NET Core middleware NuGet package (WeAmp.PageSpeed.AspNetCore). The same C++ optimization pipeline in all three. The IIS package ships from the 1.15 packaging channel.

How does the nginx integration work?

In reverse-proxy mode the module runs in front of your origin from the Docker image; the prebuilt nginx module ships inside it — there is no separate bare-metal module to install. Point the reverse proxy at your origin and all optimizations apply automatically.

Does it work with Apache?

Yes — as a reverse proxy. Put mod_pagespeed 2.1 in front of your Apache server with the Docker Compose setup, point BACKEND_HOST at your origin, and all optimizations apply automatically. If you want the in-process Apache module instead, it ships from the signed apt/yum repository — see installation.

Does it work with Kubernetes?

Yes. The Docker distribution uses separate nginx and worker containers, designed for Kubernetes pod deployments. Configuration is passed as environment variables, making it easy to manage via ConfigMaps and Secrets. A Helm chart is included.

Does it add latency?

On cache hit, serving is sub-millisecond — just a hash lookup and an mmap pointer. On cache miss, the original content is served immediately while the worker generates optimized variants in the background. There is no synchronous processing in the request path.

Can it break my site?

The optimizer worker optimizes outside the request path, and its transforms are deliberately conservative: JS minification strips whitespace and comments — no variable renaming — and every image re-encode is checked against a perceptual quality metric. The design falls back to serving your original content when an optimization step fails. No software that rewrites live responses is risk-free, so test on staging before production. You stay in control either way: in the module, pagespeed_disallow skips a URL pattern and pagespeed off disables a location; on the worker, flags like --disable-js turn off a transform type, and a PURGE drops cached variants immediately. See configuration.

Why not just use Cloudflare or another CDN?

CDN-based optimization requires routing your traffic through a third-party proxy. mod_pagespeed runs on your servers — your visitors' content stays on your infrastructure, and the software sends nothing to us. Self-hosted by design; helps your GDPR posture and keeps you in control of caching, configuration, and data.

Download & run