
RoleCraft: User Access Control – Roles, Capabilities & Content Restriction
by Angelo Rocha
RoleCraft User Access Control is a lightweight and comprehensive access control solution for WordPress that gives administrators precise control over what users can do, what they can access, and what content they can see.
Manage custom user roles and capabilities, assign multiple roles to users, control dashboard menus and the admin bar, restrict widgets and sidebars, and protect content across posts, pages, and custom post types — without relying on multiple plugins or custom code.
Designed for site administrators, developers, agencies, client websites, membership sites, LMS platforms, and custom WordPress projects, RoleCraft User Access Control brings commonly scattered access-control features together in one clean and intuitive interface.
🔐 Roles & Capability Management
Create and manage the permission structure of your WordPress installation without editing code.
- Custom Role Management: Create, edit, and delete custom user roles directly from the WordPress dashboard.
- Granular Capability Management: Add or remove individual capabilities from custom roles for precise permission control.
- Multiple Roles per User: Assign multiple roles to the same user from their profile.
- Bulk Role Assignment: Add or remove roles from multiple users at once.
- Fallback Role: Automatically assign a configured fallback role when users are affected by the deletion of a role.
- Automatic Role Assignment: Automatically assign one or more selected roles to newly registered users.
🛡️ Dashboard & Admin Access Control
Control what different user roles can see and access inside the WordPress administration area.
- Admin Menu Permissions: Control the visibility and access of dashboard menus and submenus by user role.
- Admin Bar Visibility: Show or hide the WordPress admin bar for specific user roles.
This allows you to create cleaner, more focused dashboard experiences for clients, editors, contributors, members, and other user groups.
🧩 Widget & Sidebar Permissions
Control access to classic WordPress widgets and sidebars according to user roles.
- Widget Access Control: Restrict widget visibility and editing permissions based on user roles.
- Sidebar Permission Manager: Manage role-based permissions for specific sidebar widgets across the frontend and backend.
🔒 Content Restriction
Restrict access to content based on user roles without requiring custom development.
- Custom Post Type Restrictions: Choose which post types can use content restrictions.
- Per-Post Access Control: Restrict individual posts and pages by selecting which user roles are allowed to view their content.
- Custom Restriction Messages: Configure personalized messages displayed when access to restricted content is denied.
⚡ One Plugin, Multiple Access-Control Layers
Instead of installing several separate plugins to manage roles, capabilities, dashboard access, widgets, and restricted content, RoleCraft User Access Control brings these controls together in one focused solution.
From user permissions and administrative access to frontend content restrictions, everything can be managed from a unified interface.
🚀 Built for Modern WordPress
- Lightweight by Design: Built around WordPress Core APIs without unnecessary dependencies or feature bloat.
- Modern PHP: Requires PHP 8.1 or newer.
- Developer Friendly: Designed to fit client websites, custom WordPress projects, membership sites, LMS platforms, and other advanced WordPress installations.
- No Coding Required: Configure roles, capabilities, access rules, and restrictions directly from the WordPress dashboard.
💡 Common Use Cases
RoleCraft User Access Control is useful for:
- Client Websites: Give clients access only to the tools and dashboard areas they need.
- Membership Websites: Control access to content and functionality according to user roles.
- LMS Platforms: Separate administrative, instructor, and learner permissions.
- Client Portals: Create focused dashboard experiences with role-specific access.
- Editorial Workflows: Define precisely what different users and roles can manage.
- Custom WordPress Applications: Build granular permission structures without developing a custom access-control system from scratch.
Screenshots

Roles List: manage custom user roles, see how many users are assigned to each, and add or remove roles.

Menu Items: control which WordPress admin menus are visible to each user role.

Capabilities List: add or remove individual capabilities for a selected role.

User Management: search for a user and view or edit the roles assigned to them.

Admin/Front Widgets: control classic widget visibility per user role, in the dashboard and on the frontend.

Sidebar Widgets: control individual block widget visibility per user role.

Settings: configure the default role, entries per screen, roles for new users, and content access control.

Content access control on the post/page edit screen, choosing which roles can view the content.

The "Permissions" row action added to the native WordPress Users list screen.

The role-assignment popup opened from the "Permissions" link on the Users list screen.