[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fr6yjIb2tbzQBWf4n3r1eT9_nT57ZdnrwXHSPjMXrsbM":3},{"slug":4,"display_name":4,"profile_url":5,"plugin_count":6,"total_installs":7,"avg_security_score":8,"avg_patch_time_days":9,"trust_score":10,"computed_at":11,"plugins":12},"jfwenisch","https:\u002F\u002Fprofiles.wordpress.org\u002Fjfwenisch\u002F",1,0,100,30,94,"2026-08-28T22:14:30.281Z",[13],{"slug":14,"name":15,"version":16,"author":4,"author_profile":5,"description":17,"short_description":18,"active_installs":7,"downloaded":19,"rating":7,"num_ratings":7,"last_updated":20,"tested_up_to":21,"requires_at_least":22,"requires_php":23,"tags":24,"homepage":30,"download_link":31,"security_score":8,"vuln_count":7,"unpatched_count":7,"last_vuln_date":32,"fetched_at":33},"keystone-oidc","Keystone OIDC","2.3.3","\u003Cp>Keystone OIDC transforms your WordPress installation into a fully-featured \u003Cstrong>OpenID Connect (OIDC) identity provider\u003C\u002Fstrong>, allowing other applications to authenticate users via your WordPress user database.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>OIDC Authorization Code Flow\u003C\u002Fstrong> with PKCE support\u003C\u002Fli>\n\u003Cli>\u003Cstrong>RS256 JWT\u003C\u002Fstrong> signed access tokens and ID tokens\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Admin UI\u003C\u002Fstrong> to create and manage multiple OIDC clients\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Client secret management\u003C\u002Fstrong> – generate and reset secrets securely (shown only once)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>OIDC Discovery\u003C\u002Fstrong> endpoint (\u003Ccode>\u002Fwenisch-tech\u002Fkeystone-oidc\u002F.well-known\u002Fopenid-configuration\u003C\u002Fcode>) for automatic client configuration\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Standard scopes\u003C\u002Fstrong>: \u003Ccode>openid\u003C\u002Fcode>, \u003Ccode>profile\u003C\u002Fcode>, \u003Ccode>email\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Refresh tokens\u003C\u002Fstrong> for long-lived sessions\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Zero additional configuration\u003C\u002Fstrong> after install – just create a client and you’re ready\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Quick Start\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Install and activate the plugin\u003C\u002Fli>\n\u003Cli>Go to \u003Cstrong>OIDC Provider \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Add Client\u003C\u002Fstrong> in your WordPress admin\u003C\u002Fli>\n\u003Cli>Enter your application name and redirect URI(s)\u003C\u002Fli>\n\u003Cli>Copy the generated \u003Cstrong>Client ID\u003C\u002Fstrong> and \u003Cstrong>Client Secret\u003C\u002Fstrong> (shown once)\u003C\u002Fli>\n\u003Cli>Configure your OIDC client application with the discovery URL shown in the settings\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Endpoints\u003C\u002Fh4>\n\u003Cp>All URLs are relative to your WordPress site root.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Discovery:\u003C\u002Fstrong> \u003Ccode>\u002Fwenisch-tech\u002Fkeystone-oidc\u002F.well-known\u002Fopenid-configuration\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Authorization:\u003C\u002Fstrong> \u003Ccode>\u002Fwenisch-tech\u002Fkeystone-oidc\u002Foauth\u002Fauthorize\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Token:\u003C\u002Fstrong> \u003Ccode>\u002Fwenisch-tech\u002Fkeystone-oidc\u002Foauth\u002Ftoken\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>UserInfo:\u003C\u002Fstrong> \u003Ccode>\u002Fwenisch-tech\u002Fkeystone-oidc\u002Foauth\u002Fuserinfo\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>JWKS:\u003C\u002Fstrong> \u003Ccode>\u002Fwenisch-tech\u002Fkeystone-oidc\u002Foauth\u002Fjwks\u003C\u002Fcode>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Compatibility aliases are also routed under \u003Ccode>\u002Fwenisch-tech\u002Fkeystone-oidc\u002Fprotocol\u002Fopenid-connect\u002F*\u003C\u002Fcode> for clients that still derive Keycloak-style paths from the custom issuer URI. These aliases are not advertised in discovery.\u003C\u002Fp>\n\u003Ch4>UserInfo Example\u003C\u002Fh4>\n\u003Cp>For \u003Ccode>openid profile email\u003C\u002Fcode>, \u003Ccode>\u002Fwenisch-tech\u002Fkeystone-oidc\u002Foauth\u002Fuserinfo\u003C\u002Fcode> returns:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>{\n  \"sub\": \"42\",\n  \"name\": \"Jane Doe\",\n  \"given_name\": \"Jane\",\n  \"family_name\": \"Doe\",\n  \"preferred_username\": \"jane\",\n  \"email\": \"jane@example.com\",\n  \"email_verified\": true\n}\n\nsub is the WordPress user ID as a string, `preferred_username` is the WordPress `user_login`, and `email` is the WordPress `user_email`.\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Roles are not currently emitted. The plugin does not expose WordPress roles or capabilities in UserInfo or ID tokens.\u003C\u002Fp>\n\u003Ch3>[2.3.0](https:\u002F\u002Fgithub.com\u002Fwenisch-tech\u002Fwordpress-keystone-oidc\u002Fcompare\u002Fv2.2.2…v2.3.0) (2026-06-14)\u003C\u002Fh3>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>consent-screen now uses theme default colors if available (\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwenisch-tech\u002Fwordpress-keystone-oidc\u002Fcommit\u002F24beefead5ac2fab30e0945c58af3f009a733c1c\" rel=\"nofollow ugc\">24beefe\u003C\u002Fa>)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Bug Fixes\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>ensure compability with wordpress v7 (\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwenisch-tech\u002Fwordpress-keystone-oidc\u002Fcommit\u002F36f0d5040ee72d8f2ad9b76ff07da25ed5649bce\" rel=\"nofollow ugc\">36f0d50\u003C\u002Fa>)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>2.2.2\u003C\u002Fh4>\n\u003Cp>Released on 2026-06-12.\u003C\u002Fp>\n\u003Ch4>Bug Fixes\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>updated release versioning and changelog creation (\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwenisch-tech\u002Fwordpress-keystone-oidc\u002Fcommit\u002F98cfb3062232f96346646f915a90198f69b17f51\" rel=\"nofollow ugc\">98cfb30\u003C\u002Fa>)\u003C\u002Fli>\n\u003Cli>updated repository links (\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwenisch-tech\u002Fwordpress-keystone-oidc\u002Fcommit\u002Ff46b2b6f2012cd348eab5e73f5ca9410f0efc406\" rel=\"nofollow ugc\">f46b2b6\u003C\u002Fa>)\u003C\u002Fli>\n\u003Cli>updatet generation of changelog. (\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwenisch-tech\u002Fwordpress-keystone-oidc\u002Fcommit\u002F357bded5f6cd824859dfc4710d72bdbec60da983\" rel=\"nofollow ugc\">357bded\u003C\u002Fa>)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Documentation\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>added “Report a bug” button to plugin page (\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwenisch-tech\u002Fwordpress-keystone-oidc\u002Fcommit\u002F8281f6c5cfd9474e785c06eaf562e1a2cb84f47d\" rel=\"nofollow ugc\">8281f6c\u003C\u002Fa>)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>1.0.0\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Initial release\u003C\u002Fli>\n\u003Cli>Authorization Code Flow with PKCE\u003C\u002Fli>\n\u003Cli>RS256 JWT tokens\u003C\u002Fli>\n\u003Cli>Multi-client admin UI with secret management\u003C\u002Fli>\n\u003Cli>OIDC Discovery endpoint\u003C\u002Fli>\n\u003Cli>Refresh token support\u003C\u002Fli>\n\u003C\u002Ful>\n","Turn your WordPress site into an OpenID Connect (OIDC) identity provider. Manage clients through a simple admin panel.",251,"2026-07-14T07:17:00.000Z","7.0.2","5.6","7.4",[25,26,27,28,29],"authentication","oauth2","oidc","openid-connect","sso","https:\u002F\u002Fgithub.com\u002Fwenisch-tech\u002Fwordpress-keystone-oidc","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fkeystone-oidc.2.3.3.zip",null,"2026-07-22T17:31:50.256Z"]