内容をスキップ
WordPress.org

日本語

  • テーマ
  • プラグイン
  • ニュース
    • ドキュメンテーション
    • フォーラム
  • 概要
  • 参加・貢献
  • このサイトについて
  • WordPress を入手
WordPress を入手
WordPress.org

Plugin Directory

UserFlow – Disable Dashboard Access for Non Admin

  • プラグインを申請
  • お気に入り
  • ログイン
  • プラグインを申請
  • お気に入り
  • ログイン

UserFlow – Disable Dashboard Access for Non Admin

作者: Ga Satrya
ダウンロード
ライブプレビュー
  • 詳細
  • レビュー
  • 開発
サポート

説明

Remove dashboard access to non-admin users and easily control who can access your WordPress dashboard with simple configuration. By default, only administrators are allowed, but you can now whitelist specific trusted users by username—perfect for developers, VAs, or contractors.

Features include:

  • Whitelist specific users by username
  • Session expiration controls (1-24 hours)
  • Option to apply session timeout to administrators
  • Custom redirect URL for blocked users
  • Secure, validated, and sanitized settings
  • Hide admin toolbar for non-authorized users
  • Developer-friendly filters for advanced customization

Why Choose UserFlow?

  • Maximum Protection: Instantly block unauthorized users from accessing sensitive dashboard areas.
  • Effortless Whitelisting: Grant dashboard access to trusted users (developers, VAs, contractors) without changing their roles. Just add their usernames!
  • Session Security: Automatically log out users after a set period for bulletproof session management. Choose from multiple timeout intervals and apply to all users or just non-admins.
  • Custom Redirects: Guide blocked users to a branded page or helpful resource instead of the generic homepage.
  • Zero Configuration Needed: Works out of the box—only administrators can access the dashboard until you customize settings.

Perfect For:

  • Website owners who want peace of mind
  • Agencies and developers managing multiple sites
  • Teams needing granular dashboard access
  • Anyone serious about WordPress security

Protect your site, empower your workflow, and deliver a professional experience—all with one lightweight plugin.

Read more detail

スクリーンショット

Plugin settings
Plugin settings

評価

Simple and to the point

esamzenhom 2024年11月25日 1 reply
I’m Wondering how their are no reviews for this plugin, but really its as simple as it is, very effective 🙂 thanks for the developer
1件のレビューをすべて表示

貢献者と開発者

UserFlow – Disable Dashboard Access for Non Admin はオープンソースソフトウェアです。以下の人々がこのプラグインに貢献しています。

貢献者
  • Ga Satrya

“UserFlow – Disable Dashboard Access for Non Admin” をあなたの言語に翻訳しましょう。

開発に興味がありますか ?

コードを閲覧するか、SVN リポジトリをチェックするか、開発ログを RSS で購読してみてください。

変更履歴

1.3.2

  • Updated WordPress compatibility declaration through version 7.1.

1.3.1

  • Security: Hardened settings reset handler with request-method check and nonce improvements.
  • Improved: Replaced per-username DB queries with single batched query for settings save performance.
  • Improved: Added explicit access-control fallthrough logic and removed stale static cache.
  • Improved: Separated settings-page capability filter from dashboard-access filter.
  • Improved: Settings sanitization now guarantees consistent option shape on save.
  • Improved: Added meta-refresh fallback when redirect headers cannot be sent.
  • Improved: Username validation errors now show count only to prevent enumeration.
  • Added: Plugin uninstall handler to clean up stored options on deletion.
  • Added: AJAX bypass behavior documented in settings help tab.
  • Added: Sidebar promotion box for developer services.
  • Dev: Improved test mock fidelity for wp_validate_redirect and WP_User_Query.
  • Dev: Fixed Composer license to valid SPDX identifier.

1.3.0

  • Rebranding: Formally renamed the plugin to UserFlow.
  • Added: Support for WordPress 7.0.
  • Refactor: Moved inline JavaScript and CSS to external files for better security and maintainability.
  • Improved: Updated settings sidebar to connect with the developer on LinkedIn.
  • Improved: Settings page formatting and code structure.
  • Improved: Updated settings labels for better clarity.
  • Improved: Use wp_validate_redirect for more robust same-site URL validation.
  • Added: admon_access_capability filter for developer customization of access rights.
  • Fix: Updated make-pot composer script for Windows compatibility.

1.2.5

  • Performance: Optimized access checks with static caching (memoization) to reduce redundant processing.
  • Fix: Ensured settings errors and success messages are correctly displayed on the settings page.
  • Improved: Better UI feedback when saving or resetting settings.
  • Improved: Added GitHub Actions automated deployment for WordPress.org SVN.
  • Assets: Added new plugin banners and icons for the WordPress.org repository.

1.1.1

  • Security Fix: Patched Open Redirect vulnerability in URL validation logic.
  • Improved: Stricter validation for custom redirect URLs.
  • Improved: Added Contextual Help tabs in settings page.

1.1.0

  • Added session timeout management with configurable intervals (1-24 hours)
  • Added custom timeout duration option (1-168 hours)
  • Added username whitelist for granting dashboard access to specific non-admin users
  • Added custom redirect URL for blocked users
  • Added option to apply session timeout to administrators
  • Added “Remember Me” override functionality
  • Enhanced security with proper input sanitization and validation
  • Improved user interface with comprehensive settings page
  • Added reset to defaults functionality
  • Updated to follow WordPress coding standards

1.0.0

  • First version

メタ

  • バージョン 1.3.2
  • 最終更新日 3週間前
  • 有効インストール数 30+
  • WordPress バージョン 6.5またはそれ以降
  • 検証済み最新バージョン: 7.1
  • PHP バージョン 7.0またはそれ以降
  • 言語
    English (US)
  • タグ
    accessdashboardloginmembershiprestrict
  • 詳細を表示

評価

5つ星中5つ星
  • 1 5-星レビュー 5つ星 1
  • 0 4-星レビュー 4つ星 0
  • 0 3-星レビュー 3つ星 0
  • 0 2-星レビュー 2つ星 0
  • 0 1-星レビュー 1つ星 0

Your review

すべてのレビューを見る

貢献者

  • Ga Satrya

サポート

意見や質問がありますか ?

サポートフォーラムを表示

  • WordPress とは
  • ニュース
  • ホスティング
  • プライバシー
  • ショーケース
  • テーマ
  • プラグイン
  • パターン
  • Learn
  • サポート
  • 開発者
  • WordPress.tv ↗
  • 参加・貢献
  • イベント
  • 寄付 ↗
  • Swag ↗
  • WordPress.com ↗
  • Matt ↗
  • bbPress ↗
  • BuddyPress ↗
WordPress.org
WordPress.org

日本語

  • X (旧 Twitter) アカウントへ
  • Bluesky アカウントへ
  • Mastodon アカウントへ
  • Threads アカウントへ
  • Facebook ページへ
  • Instagram アカウントへ
  • LinkedIn アカウントへ
  • TikTok アカウントへ
  • YouTube チャンネルへ
  • Tumblr アカウントへ
Code is Poetry.
The WordPress® trademark is the intellectual property of the WordPress Foundation.