Plugin Pulse
← Pulse

Protect WP Admin

by WP-EXPERTS.IN · Admin & Utilities

Also makes 17 other plugins · 26.6K+ installs across the portfolio →

Protect your WP site by changing the default wp-admin URL and customizing the login page for enhanced security.

How scoring works →
74 Health · B
Maintenance 84/100
Rating quality 65/100
Support 70/100

74 health vs 54 average across 3,790 Admin & Utilities plugins

Directory ranking optimization

How it's scored →

How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.

93 / 100

Excellent listing optimization

Well tuned across the board

Update recency 95/100
WP compatibility 100/100
Rating quality 77/100
Listing tuning 100/100

Daily downloads

Since 2022-10-05 · 1,425 days · wp.org + Plugin Pulse archive

+4% vs prior 30d
35Downloads · Aug 26

30-day downloads

Rolling 30-day volume · peaks are release surges

949

now · peak 9.1K

97930d downloads · Aug 26

Directory rank vs rivals

wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you

Protect WP Admin · #1711 you Temporary Login With · #457 Login Me Now · #8737 Teydea Password Rese · #9213

Rating trend

Star average over time · dips mark rough releases

3.6Stars · Aug 26

Update activity

How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.

98per 1k installs · Aug 26

Release cadence

Occasionally updated
from wp.org release tags

How often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.

1

releases in the last 12 months

7mo ago

latest release · v4.2

3

tagged releases on record

Recent releases

4.2 · 7mo ago4.1 · 1.1y ago4.0 · 2.9y ago

What its installed base runs

via wordpress.org

Share of active installs on each version of this plugin · 45% run the current release. Green is the current release; a big slice on older versions is a user base that has stopped updating.

v4.2 45%
v4.0 16%
v4.1 9%
v3.8 7.2%
v3.0 6.5%
Older / other versions 16%

Estimated active installs

The public count shows “10K+”. Our estimate pins where the real number sits.

tracked estimate
10K–20K ≈19K

Refined from the date this plugin crossed into its current band.

Install history · since 2015-03-19 · 1,461 observations

10KInstalls · Aug 26

Estimated value

What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.

Est. annual revenue

N/A

Est. acquisition value

N/A

No paid tier is visible, so we don't put a figure on revenue or sale value: that would be guessing. The install base is a real asset to an acquirer, just not one public data lets us price.

Details

Version
4.2
Last updated
7mo ago
Added
2014-10-20 · 11 yrs old
Requires WP
6.0
Tested up to
6.9.7
Requires PHP

Recent reviews

All reviews on wp.org ↗
  1. truekandyan
    5.1y ago

    Thank you for giving us Simple and Amazing plugin. Please check Login form customizing is not working. Hide wp-admin is working good. Thanks again.

    Read on wp.org ↗
  2. samuel
    5.3y ago

    A loophole has been found by hackers. My websites have been attacked by login brute-force thousands times everyday. Hackers could access wp-login.php directly when Protect-wp-admin was enabled. I try disabling the file access to wp-login.php in .htaccess but it also disable accessing the login page via the URL defined in Protect-wp-admin. Finally, it makes this plugin useless.

    Read on wp.org ↗
  3. elasticio
    5.5y ago

    After updating the WordPress version to 5.6, none of my team could log in any longer. Both URLs, the one created through the plugin and the original wp-admin link, kept redirecting to the Homepage. I had to deactivated all the plugins via MyPHPAdmin to get back the control of our website. This plugin was the first I reactivated and I could immediately replicate the issue. This is imho not acceptable.

    Read on wp.org ↗
  4. ichmirmich
    5.6y ago

    The plugin works as expected and after a recent WP update, it didn’t work anymore. contacted the support and they helped me out super quick.

    Read on wp.org ↗
  5. bsp7744
    5.6y ago

    Junk, do not use. Updated to WordPress 5.6 and I am now locked out of ALL my websites. Avoid at all costs.

    Read on wp.org ↗
  6. pivonka1975
    5.7y ago

    Cannot log in today after WordPress 5.6 renewal, have to disable this plugin via FTP. Bad experience!

    Read on wp.org ↗
  7. Anonymous User 17979783
    6.3y ago

    I strongly recommend this Plug-in, they have fantastic service and this crew has a very professional approach as they will return your help call within minutes helping you trouble shoot your problems about my. This Plug in is so beneficial Im glad I have installed it on my website from the very beginning at the early stages of my site! This topic was modified 6 years, 2 months ago by Anonymous User 17979783. This topic was modified 6 years, 2 months ago by Anonymous User 17979783.

    Read on wp.org ↗
  8. Hanun Khan
    7.2y ago

    Cannot LOGIN on re write login page, How to Reset this, i folow your documentaion change file .htacces but still cannot login

    Read on wp.org ↗

Latest updates

via wp.org changelog

Recent releases and news for this plugin

  1. Version 4.0 Fixed major bug Tested with WordPress 6.6.2 4.0
  2. Version 3.8 Security updates Tested with WordPress 5.9.3 3.8
  3. Version 3.7 Fixed URL issue Code optimization 3.7
  4. Version 3.6 Optimized code and security Tested with WordPress 5.8.2 3.6
  5. Version 3.5 Resolved double slash issue in login URL 3.5
  6. Version 3.4 Added admin bar restriction for non-admin users 3.4

Known vulnerabilities

via Wordfence Intelligence

4 disclosed vulnerabilities on record for this plugin, all fixed in the current version. Sites on older versions stay exposed until they update.

  1. 2025-12-15 CVE-2025-64249 Missing Authorization Affects <= 4.1 Patched in 4.2
  2. 2023-06-12 CVE-2023-3139 Exposure of Sensitive Information to an Unauthorized Actor Affects <= 3.8 Patched in 4.0
  3. 2022-08-05 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 3.7 Patched in 3.8
  4. 2021-12-23 CVE-2021-24906 Incorrect Authorization Affects <= 3.6 Patched in 3.7

Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.

CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.

Behavioral tests

via WP Hive

Automated install-time checks, tested on PHP 8.1.12 · WP 7.0.1

Low memory footprint
Low page-speed impact
Runs on latest PHP + WP
No PHP errors
No JS errors
Activates cleanly
No resource errors
No external HTTP errors
Optimized database use
Frequently updated

Languages

via translate.wordpress.org

Translated into 1 language, 0 at 90% or more

Swedish 58%

Growth timeline

Install-tier crossings we have observed, and how long each tier took to outgrow

  1. 2025-05-03 20K+ → 10K+ down

Competes with

The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).

Compare head to head →

Embed this report card

Drop a live Pulse card for Protect WP Admin into a readme, a review or a deck. It updates itself.

<iframe src="https://plugins.wpmayor.com/embed/protect-wp-admin" width="480" height="300" style="border:0" loading="lazy" title="Protect WP Admin — Plugin Pulse"></iframe>
Preview card ↗

Protect WP Admin: 10K+ active installs, 3.6★ (50 reviews). Plugin Pulse (WP Mayor), as of 2026-08-29. https://plugins.wpmayor.com/plugin/protect-wp-admin