跳至内容
WordPress.org

China 简体中文

  • 主题
  • 插件
  • 新闻
    • 文档
    • 论坛
  • 关于
  • 获取 WordPress
获取 WordPress
WordPress.org

Plugin Directory

EffortLess Temporary Secure Login

  • 提交插件
  • 我的收藏
  • 登录
  • 提交插件
  • 我的收藏
  • 登录

EffortLess Temporary Secure Login

作者:domclic
下载
  • 详情
  • 评价
  • 安装
  • 开发进展
支持

描述

EffortLess Temporary Secure Login lets an administrator create a time-limited login link for a developer or support person, without ever sharing a password. Choose a role, choose an expiry, copy the link. The link auto-expires (deleting the temporary account and destroying its sessions) or can be revoked instantly.

安装

  1. Upload the plugin files to /wp-content/plugins/effortless-temporary-secure-login, or install directly through the WordPress plugins screen.
  2. Activate the plugin.
  3. Go to Users > Temporary Logins to create your first temporary login.

常见问题

Does this share my real password?

No. The plugin creates a separate, disposable WordPress user account and authenticates the recipient via a secure signed link — no password is ever shared or stored in plain text.

What happens when a temporary login expires?

The account is automatically logged out, its sessions destroyed, and the underlying WordPress user account deleted. The event stays visible in the plugin’s activity log.

评价

此插件暂无评价。

贡献者及开发者

「EffortLess Temporary Secure Login」是开源软件。 以下人员对此插件做出了贡献。

贡献者
  • domclic

帮助将「EffortLess Temporary Secure Login」翻译成简体中文。

对开发感兴趣吗?

您可以浏览代码,查看SVN仓库,或通过RSS订阅开发日志。

更新日志

1.1.3

  • Change: tested against WordPress 7.1 and the “Tested up to” header updated to 7.1. No functional changes.

1.1.2

  • Fixed: a temporary login’s granted Super Admin status was never actually revoked on expiry, revoke, or uninstall — revoke_super_admin() was called with the temporary account’s username instead of its numeric user ID (which WordPress core silently ignores), and the uninstall routine didn’t call it at all.
  • Fixed: network-activating the plugin on a multisite install with existing sites only provisioned the tables/cron for one site; every other existing site never got its eltsl_logins/eltsl_activity tables.
  • Fixed: sites that only got provisioned via the lazy per-site upgrade path never had the hourly expiry sweep scheduled.
  • Fixed: uninstall only cleaned up the first 100 sites on a large network (missing number => 0 on the site query).
  • Fixed: an unparseable custom expiry date silently created an already-expired login instead of falling back to the default duration.
  • Improved: front-end token verification now looks up the matching login by its indexed token hash instead of scanning and re-hashing every active login.
  • Improved: the Network Admin list table no longer re-resolves a site’s URL once per row, and skips the lookup entirely for sites with no logins.
  • Refactored: the per-site and network-wide list tables now share their column-rendering and revoke-link logic instead of duplicating it.

1.1.1

  • Fixed a 404 when generating or revoking a temporary login from Network Admin — the create form and revoke links pointed at wp-admin/network/admin-post.php, which doesn’t exist; admin-post.php is a shared handler that always lives at wp-admin/admin-post.php.

1.1.0

  • Added a Network Admin > Users > Temporary Logins page (multisite) with a site picker to create a temporary login for any site in the network, plus a combined list/revoke table across every site.
  • Added an option (Network Admin only, visible only to an existing Super Admin) to also grant the temporary account real Super Admin rights for the login’s lifetime, cleanly revoked via revoke_super_admin() on expiry or manual revoke.
  • Existing installs are upgraded automatically (adds the is_super_admin column to the logins table).

1.0.3

  • Set Author to domclic (Donate link intentionally stays https://id7.dev/donate/, per project convention).

1.0.2

  • Renamed to “EffortLess Temporary Secure Login” and set Contributors to domclic.
  • Fixed Plugin Check findings: prefixed template loop variables in the admin view, and switched the direct-file-access guard in helpers.php/class-eltsl-secret.php to the standard ABSPATH-only check (recognized by automated scanners) — test loading now sets ABSPATH itself instead of a separate testing constant.

1.0.1

  • Fixed multisite: sites created after Network Activation now get their tables and cron sweep provisioned automatically, and network-wide uninstall now cleans up every site instead of only the current one.

1.0.0

  • Initial release.

额外信息

  • 版本 1.1.3
  • 最后更新:2 周前
  • 活跃安装数量 不到10
  • WordPress 版本 6.2 或更高版本
  • 已测试的最高版本为 7.0.6
  • PHP 版本 7.4 或更高版本
  • 语言
    English (US)
  • 标签
    loginpasswordlesssecuritysupporttemporary access
  • 高级视图

评级

尚未提交反馈。

您的评价

查看全部评论

贡献者

  • domclic

支持

有话要说吗?是否需要帮助?

查看支持论坛

捐助

您愿意支持这个插件的发展吗?

捐助此插件

  • 关于
  • 新闻
  • 主机
  • 隐私
  • 陈列窗
  • 主题
  • 插件
  • 区块样板
  • 学习
  • 支持
  • 开发者
  • WordPress.tv ↗︎
  • 参与
  • 活动
  • 捐赠 ↗
  • 周边商品 ↗
  • WordPress.com ↗
  • Matt ↗
  • bbPress ↗
  • BuddyPress ↗
WordPress.org
WordPress.org

China 简体中文

  • 关注我们的 X(原 Twitter)账号
  • 访问我们的 Bluesky 账号
  • 关注我们的 Mastodon 账号
  • 访问我们的 Threads 账号
  • 访问我们的 Facebook 公共主页
  • 关注我们的 Instagram 账号
  • 关注我们的 LinkedIn 主页
  • 访问我们的 TikTok 账号
  • 访问我们的 YouTube 频道
  • 访问我们的 Tumblr 账号
代码如诗
The WordPress® trademark is the intellectual property of the WordPress Foundation.