BACK TO DIRECTORY

Restricted User Activity

by Steve Puddick

0.0
(0 ratings)

This plugin prevents unauthorized admin users from damaging or compromising your website.

A common technique for hackers is to exploit vulnerabilities in your plugins or theme and try to create an unauthorized admin user for themselves. Once they have admin access they can do whatever they want to your website. They can deface it, display inappropriate content, or carry out many other malicious acts.

Restricted User Activity adds an extra step to the process of allowing Admin users to perform actions on your website. It achieves this by explicitly specifying valid Admin user ids in the wp-config.php file. Even if a hacker was able to create an Admin user for themselves, they won’t be able to perform any actions since their user id would not be in the valid user list.

Note: This plugin requires some technical knowledge about how the WordPress wp-config.php file works and basic PHP coding. A single line of code needs to be added to the wp-config.php file.

Screenshots

Admin users who attempt to perform admin actions will receive this error screen if their user id is not also in the allow list

Admin users who attempt to perform admin actions will receive this error screen if their user id is not also in the allow list

A sample wp-config.php file with the allow list specified

A sample wp-config.php file with the allow list specified

An additional column in the User list page to conveniently find user ids

An additional column in the User list page to conveniently find user ids

Plugin Details

Active Installs
0
Total Downloads
346
Version
1.0.0
Requires WP
4.4
Requires PHP
7.0
Tested Up To
6.9.7
Added
2026-03-02
Last Updated
2026-03-02 2:58am GMT

Ratings

5
0
4
0
3
0
2
0
1
0