{"id":375241,"date":"2026-09-29T08:01:19","date_gmt":"2026-09-29T08:01:19","guid":{"rendered":"https:\/\/wordpress.org\/plugins\/vweb-admin-email-login-verify\/"},"modified":"2026-09-29T08:00:51","modified_gmt":"2026-09-29T08:00:51","slug":"vweb-admin-email-login-verify","status":"publish","type":"plugin","link":"https:\/\/pap-cw.wordpress.org\/plugins\/vweb-admin-email-login-verify\/","author":13951591,"comment_status":"closed","ping_status":"closed","template":"","meta":{"version":"1.0.0","stable_tag":"1.0.0","tested":"7.1.2","requires":"6.0","requires_php":"7.4","requires_plugins":null,"header_name":"VWEB Admin Email Login Verify","header_author":"VWEB India","header_description":"Administrators must enter an email verification code after password login. Regular users log in without extra verification.","assets_banners_color":"","last_updated":"2026-09-29 08:00:51","external_support_url":"","external_repository_url":"","donate_link":"https:\/\/vwebindia.com\/","header_plugin_uri":"","header_author_uri":"https:\/\/vwebindia.com\/","rating":0,"author_block_rating":0,"active_installs":0,"downloads":55,"num_ratings":0,"support_threads":0,"support_threads_resolved":0,"author_block_count":0,"sections":["description","installation","faq","changelog"],"tags":{"1.0.0":{"tag":"1.0.0","author":"jaingaurav9981","date":"2026-09-29 08:00:51","revision":3718508}},"upgrade_notice":{"1.0.0":"<p>Initial release. Confirm site email works before requiring admin verification.<\/p>"},"ratings":[],"assets_icons":[],"assets_banners":[],"assets_blueprints":{},"all_blocks":[],"tagged_versions":["1.0.0"],"block_files":[],"assets_screenshots":[],"screenshots":[]},"plugin_section":[],"plugin_tags":[710,267,602,600,9217],"plugin_category":[38,41,54],"plugin_contributors":[283363],"plugin_business_model":[],"class_list":["post-375241","plugin","type-plugin","status-publish","hentry","plugin_tags-authentication","plugin_tags-email","plugin_tags-login","plugin_tags-security","plugin_tags-two-factor","plugin_category-authentication","plugin_category-communication","plugin_category-security-and-spam-protection","plugin_contributors-jaingaurav9981","plugin_committers-jaingaurav9981"],"banners":[],"icons":{"svg":false,"icon":"https:\/\/s.w.org\/plugins\/geopattern-icon\/vweb-admin-email-login-verify.svg","icon_2x":false,"generated":true},"screenshots":[],"raw_content":"<!--section=description-->\n<p>VWEB Admin Email Login Verify is a VWEB India plugin that adds an extra login step only for administrator (and other selected) roles.<\/p>\n\n<p>After the username and password are accepted, WordPress emails a 6-digit code to that user's account email. The dashboard opens only after the correct code is entered. Subscribers, customers, and other roles you do not select log in as usual.<\/p>\n\n<p>This is not a generic two-factor suite. It is a focused admin-only email code for wp-login.php, built by <a href=\"https:\/\/vwebindia.com\/\">VWEB India<\/a>.<\/p>\n\n<h4>What it does<\/h4>\n\n<ul>\n<li>Checks the password first, then starts email verification for selected roles<\/li>\n<li>Sends a 6-digit code to the user's WordPress profile email<\/li>\n<li>Lets regular users sign in with no extra step<\/li>\n<li>Expires unused codes (default 10 minutes)<\/li>\n<li>Limits failed code attempts (default 5)<\/li>\n<li>Allows resending a code after a short cooldown<\/li>\n<li>Skips REST API, XML-RPC, WP-CLI, cron, and AJAX authentication<\/li>\n<\/ul>\n\n<h4>Settings<\/h4>\n\n<p>Go to <strong>Settings \u2192 VWEB Login Verify<\/strong> to:<\/p>\n\n<ul>\n<li>Enable or disable verification<\/li>\n<li>Choose which roles need a code (Administrator is selected by default)<\/li>\n<li>Set how long a code stays valid<\/li>\n<li>Set how many wrong codes are allowed<\/li>\n<\/ul>\n\n<h4>Email delivery<\/h4>\n\n<p>The plugin uses WordPress <code>wp_mail()<\/code>. If codes do not arrive, configure SMTP on the site and check the spam folder.<\/p>\n\n<h4>Emergency disable<\/h4>\n\n<p>If you cannot receive mail and are locked out of admin, add this line to <code>wp-config.php<\/code>, log in, fix email, then remove the line:<\/p>\n\n<pre><code>define( 'AELV_DISABLE', true );\n<\/code><\/pre>\n\n<!--section=installation-->\n<ol>\n<li>Upload the <code>vweb-admin-email-login-verify<\/code> folder to the <code>\/wp-content\/plugins\/<\/code> directory, or install the zip through <strong>Plugins \u2192 Add New \u2192 Upload Plugin<\/strong>.<\/li>\n<li>Activate the plugin through the <strong>Plugins<\/strong> screen.<\/li>\n<li>Confirm the site can send email.<\/li>\n<li>Open <strong>Settings \u2192 VWEB Login Verify<\/strong> if you want to change roles or timings.<\/li>\n<li>Log out and test an administrator login.<\/li>\n<\/ol>\n\n<!--section=faq-->\n<dl>\n<dt id=\"which%20email%20receives%20the%20code%3F\"><h3>Which email receives the code?<\/h3><\/dt>\n<dd><p>The Email field on that user's WordPress profile (<strong>Users \u2192 Profile<\/strong>). It is not a separate plugin address.<\/p><\/dd>\n<dt id=\"do%20regular%20users%20get%20a%20code%3F\"><h3>Do regular users get a code?<\/h3><\/dt>\n<dd><p>No. Only roles you select under <strong>Settings \u2192 VWEB Login Verify<\/strong> must verify. The default is Administrator.<\/p><\/dd>\n<dt id=\"what%20if%20the%20email%20never%20arrives%3F\"><h3>What if the email never arrives?<\/h3><\/dt>\n<dd><p>Check spam, confirm the profile email is correct, and set up an SMTP plugin so <code>wp_mail()<\/code> can send. You can use <strong>Resend code<\/strong> on the verification screen.<\/p><\/dd>\n<dt id=\"what%20if%20i%20am%20locked%20out%3F\"><h3>What if I am locked out?<\/h3><\/dt>\n<dd><p>Add <code>define( 'AELV_DISABLE', true );<\/code> to <code>wp-config.php<\/code> to turn the plugin off, log in, fix mail, then remove that line. You can also deactivate the plugin over FTP or WP-CLI.<\/p><\/dd>\n<dt id=\"does%20this%20replace%20two-factor%20apps%3F\"><h3>Does this replace two-factor apps?<\/h3><\/dt>\n<dd><p>No. It is email verification for selected roles after a successful password login, not an authenticator-app or hardware-key plugin.<\/p><\/dd>\n\n<\/dl>\n\n<!--section=changelog-->\n<h4>1.0.0<\/h4>\n\n<ul>\n<li>Initial release.<\/li>\n<li>Email verification for administrators after password login.<\/li>\n<li>Regular users log in without a code.<\/li>\n<li>Settings for roles, code expiry, and failed attempts.<\/li>\n<\/ul>","raw_excerpt":"Administrators must enter an email verification code after password login. Regular users log in without extra verification.","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin\/375241","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin"}],"about":[{"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/types\/plugin"}],"replies":[{"embeddable":true,"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/comments?post=375241"}],"author":[{"embeddable":true,"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wporg\/v1\/users\/jaingaurav9981"}],"wp:attachment":[{"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/media?parent=375241"}],"wp:term":[{"taxonomy":"plugin_section","embeddable":true,"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_section?post=375241"},{"taxonomy":"plugin_tags","embeddable":true,"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_tags?post=375241"},{"taxonomy":"plugin_category","embeddable":true,"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_category?post=375241"},{"taxonomy":"plugin_contributors","embeddable":true,"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_contributors?post=375241"},{"taxonomy":"plugin_business_model","embeddable":true,"href":"https:\/\/pap-cw.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_business_model?post=375241"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}