Vai al contenuto
WordPress.org

Italia

  • Temi
  • Plugin
  • Notizie
    • Documentazione
    • Forum
  • Info
    • Manifesto
    • Unisciti alla Community
    • Team
    • Manuali
    • Traduci
    • Meetup italiani
    • WordCamp
    • Five for the Future
    • Proposte di lavoro
    • Swag Store
    • Directory delle foto
    • Learn WordPress
    • Openverse
    • Pattern
    • Playground
    • Prova l’editor Gutenberg
    • WordPress.tv
  • Eventi
  • Scarica WordPress
Scarica WordPress
WordPress.org

Plugin Directory

Usama Simple 2FA Authenticator

  • Invia un plugin
  • I miei preferiti
  • Accedi
  • Invia un plugin
  • I miei preferiti
  • Accedi

Usama Simple 2FA Authenticator

Di usamashahadat
Scarica
  • Dettagli
  • Recensioni
  • Installazione
  • Sviluppo
Supporto

Descrizione

This plugin enhances the security of your WordPress website by adding a simple but effective two-factor authentication (2FA) screen after a successful password login.

Instead of adding fields to the main login page (which can cause conflicts), this plugin waits until a user has correctly entered their username and password. Then, it intercepts the login and presents them with a clean, separate screen to enter their 6-digit code from an authenticator app (like Google Authenticator, Authy, etc.).

This method is more secure, more compatible, and provides a smoother user experience.

Features:

Secure Post-Login Verification: 2FA check happens on a separate screen, after the password is correct.

Easy Setup: A simple “Usama 2FA” menu page for each user to scan a QR code and activate 2FA.

Backup Codes: On activation, 10 one-time-use backup codes are generated in case you lose your phone.

Regenerate Codes: You can generate new backup codes at any time from the settings page.

Lightweight & Simple: No bloat. Just the essential 2FA features.

Per-User: 2FA is enabled on a per-user basis. Administrators cannot control 2FA for other users.

External services

This plugin connects to a third-party API to generate the QR codes used during setup.

Service: goqr.me API (https://www.google.com/search?q=api.qrserver.com)

Usage: Used only once during setup to generate a QR code image that users scan with their authenticator app.

Data Sent: The API receives the user’s email address and the generated secret key (inside the OTPAuth URL) to create the image. This data is not stored by the service.

Provider: Foundata GmbH

Terms of Use: Terms of Use

Privacy Policy: Privacy Policy

Screenshot

  • The simple “2FA Security” settings page in the admin dashboard.

  • The QR code and activation step.

  • The post-activation screen, showing the one-time backup codes.

  • The separate 2FA verification screen that appears after a successful password login.

Installazione

From your WordPress Dashboard (Recommended):

Navigate to Plugins > Add New.

In the search bar, type “Usama Simple 2FA Authenticator”.

Click “Install Now” on the plugin.

Click “Activate”.

Once activated, a new “2FA Security” menu will appear in your admin sidebar. Click on it to set up your 2FA.

Manual Installation (from .zip):

Download the plugin .zip file.

Navigate to Plugins > Add New in your WordPress dashboard.

Click the “Upload Plugin” button at the top of the page.

Select the .zip file you downloaded and click “Install Now”.

Click “Activate”.

Go to the “2FA Security” menu in your sidebar to set up.

FAQ

What authenticator apps does this work with?

This plugin uses the standard TOTP (Time-based One-Time Password) algorithm. It works perfectly with:

Google Authenticator

Authy

Microsoft Authenticator

1Password

LastPass Authenticator

…and any other standard TOTP app.

What happens if I lose my phone?

When you first activate 2FA, the plugin provides you with 10 one-time-use backup codes. You must save these in a secure place (like a password manager or a printed document). If you lose your phone, you can use one of these backup codes in place of the 6-digit authenticator code to log in.

How do I get new backup codes?

Go to the “2FA Security” page in your admin dashboard. You will see an option to “Generate New Backup Codes”. This will invalidate all of your old codes and create a new set for you.

Is this plugin secure?

Yes. Your secret key is stored securely in your user’s metadata, and the login check uses a separate, temporary key (a “transient”) to manage the post-login verification step. All codes are checked using standard, secure cryptographic methods.

Recensioni

Non ci sono recensioni per questo plugin.

Contributi e sviluppo

“Usama Simple 2FA Authenticator” è un software open source. Le persone che hanno contribuito allo sviluppo di questo plugin sono indicate di seguito.

Collaboratori
  • usamashahadat

Traduci “Usama Simple 2FA Authenticator” nella tua lingua.

Ti interessa lo sviluppo?

Esplora il codice segui il repository SVN, segui il log delle modifiche tramite RSS.

Changelog

1.0.0

Initial public release.

Added post-login 2FA verification screen.

Added user-specific admin menu for 2FA setup.

Implemented QR code and manual key setup.

Implemented backup code generation and verification.

Meta

  • Versione 1.0.0
  • Ultimo aggiornamento 5 mesi fa
  • Installazioni attive Meno di 10
  • Versione WordPress 5.0 o superiore
  • Testato fino alla versione 6.9.4
  • Versione PHP 7.0 o superiore
  • Lingua
    English (US)
  • Tag
    2FAauthenticationloginsecuritytwo factor
  • Visualizzazione avanzata

Valutazioni

Non sono state ancora inviate recensioni.

Your review

Vedi tutte le recensioni

Collaboratori

  • usamashahadat

Supporto

Hai qualcosa da dire? Ti serve aiuto?

Chiedi nel forum di supporto

  • Chi siamo
  • News
  • Hosting
  • Privacy
  • Vetrina
  • Temi
  • Plugin
  • Pattern
  • Learn (Training)
  • Supporto
  • Sviluppo
  • WordPress.tv ↗
  • Partecipa
  • Eventi
  • Donazioni ↗
  • Five for the Future
  • WordPress.com ↗
  • Matt ↗
  • bbPress ↗
  • BuddyPress ↗
WordPress.org
WordPress.org

Italia

  • Visita il nostro account X (ex Twitter)
  • Visita il nostro account Bluesky
  • Visita il nostro account Mastodon
  • Visita il nostro account Threads
  • Visita la nostra pagina Facebook
  • Visita il nostro account Instagram
  • Visita il nostro account LinkedIn
  • Visita il nostro account TikTok
  • Visita il nostro canale YouTube
  • Visita il nostro account Tumblr
Code is Poetry.
The WordPress® trademark is the intellectual property of the WordPress Foundation.