[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fQyfqMjER2nWO6CzfX9WU4qRhHF9wAndwTsFHiSknJUk":3,"$fq64hS5qLLOYhZbYsdJa1wq7dI80VKNm2jmDerfEPWic":131,"$fsZs_eMA4AYqVBB2TwCBBSPr_0bow9bSGd9fzEQzzZf8":136},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":23,"download_link":24,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":30,"crawl_stats":26,"alternatives":37,"analysis":26,"fingerprints":26},"keyless-login","Keyless Login","1.0.0","susheelhbti","https:\u002F\u002Fprofiles.wordpress.org\u002Fsusheelhbti\u002F","\u003Cp>\u003Cstrong>Keyless Login\u003C\u002Fstrong> brings modern, phishing-resistant authentication to your WordPress site.\u003C\u002Fp>\n\u003Cp>Log in with your fingerprint, face, or a hardware security key — no password ever required or transmitted. Implemented entirely in pure PHP using only the built-in \u003Ccode>openssl\u003C\u002Fcode> extension. No Composer, no vendor folder, no third-party libraries.\u003C\u002Fp>\n\u003Ch4>How It Works\u003C\u002Fh4>\n\u003Cp>KeylessWP implements the \u003Ca href=\"https:\u002F\u002Fwww.w3.org\u002FTR\u002Fwebauthn-2\u002F\" rel=\"nofollow ugc\">W3C WebAuthn Level 2\u003C\u002Fa> specification from scratch:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>A custom CBOR decoder parses authenticator data\u003C\u002Fli>\n\u003Cli>Custom ASN.1\u002FDER builders construct public keys\u003C\u002Fli>\n\u003Cli>PHP’s built-in \u003Ccode>openssl_verify()\u003C\u002Fcode> verifies ECDSA P-256 (ES256) and RSA-2048 (RS256) signatures\u003C\u002Fli>\n\u003Cli>Credentials are stored in a dedicated database table with sign-count clone detection\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Supported Authentication Methods\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>🖐 Fingerprint sensors (Touch ID, Windows Hello)\u003C\u002Fli>\n\u003Cli>😊 Face recognition (Face ID, Windows Hello face camera)\u003C\u002Fli>\n\u003Cli>🔑 Hardware security keys (YubiKey, Google Titan Key, Feitian)\u003C\u002Fli>\n\u003Cli>🔐 Platform passkey managers (iCloud Keychain, Google Password Manager)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Full FIDO2 \u002F WebAuthn Level 2 implementation — pure PHP\u003C\u002Fli>\n\u003Cli>ECDSA P-256 (ES256) and RSA-2048 (RS256) signature verification\u003C\u002Fli>\n\u003Cli>Zero external libraries — only PHP’s built-in \u003Ccode>openssl\u003C\u002Fcode> extension required\u003C\u002Fli>\n\u003Cli>Passkey registration and management from the user profile page\u003C\u002Fli>\n\u003Cli>Per-credential device naming, creation date, and last-used tracking\u003C\u002Fli>\n\u003Cli>Sign-count verification on every authentication (clone detection)\u003C\u002Fli>\n\u003Cli>Phishing-resistant: credentials are cryptographically bound to your domain\u003C\u002Fli>\n\u003Cli>Admin settings page with live usage statistics\u003C\u002Fli>\n\u003Cli>Graceful fallback: the standard password form remains available\u003C\u002Fli>\n\u003Cli>Translatable — all strings use \u003Ccode>__()\u003C\u002Fcode> with the \u003Ccode>keylesswp\u003C\u002Fcode> text domain\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Privacy\u003C\u002Fh4>\n\u003Cp>KeylessWP does not collect, transmit, or share any user data. No external services are contacted. Biometric data never leaves the user’s device — only a cryptographic public key is stored on the server.\u003C\u002Fp>\n","Passwordless WebAuthn\u002FFIDO2 login for WordPress. 100% pure PHP, zero external dependencies.",0,143,"2026-05-20T16:54:00.000Z","6.9.5","6.4","8.0",[18,19,20,21,22],"fido2","passkey","passwordless","security","webauthn","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fkeyless-login.zip",100,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":33,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},18,50,89,30,86,"2026-08-29T03:36:55.541Z",[38,56,72,94,112],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":11,"num_ratings":11,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":16,"tags":51,"homepage":54,"download_link":55,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"advanced-passkey-login","Advanced Passkeys for Secure Login","1.1.11","wppasskey","https:\u002F\u002Fprofiles.wordpress.org\u002Fwppasskey\u002F","\u003Cp>Passwords are the single biggest security liability for your WordPress site. They get leaked, reused, and exploited by automated brute-force attacks every single day. While standard Two-Factor Authentication (2FA) adds a layer of safety, typing in temporary codes from SMS or authenticator apps introduces annoying workflow friction that hurts user adoption and slows down your day.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Advanced Passkeys for Secure Login\u003C\u002Fstrong> brings the future of un-phishable, lightning-fast authentication directly to WordPress using the official FIDO2 \u002F WebAuthn standard.\u003C\u002Fp>\n\u003Cp>Give your users a modern login experience. Users register a secure passkey just once using their device’s built-in biometric sensor (Face ID, Touch ID, Windows Hello), device PIN, or a hardware security key (like a YubiKey). Future sign-ins can bypass traditional password fields and reduce credential-theft risk.\u003C\u002Fp>\n\u003Ch3>Out-of-the-Box WooCommerce & Membership Integrations\u003C\u002Fh3>\n\u003Cp>Don’t settle for basic alternatives that only support the default backend login page. Advanced Passkeys features intelligent, dependency-aware integration modules that automatically inject secure passkey entry points into your existing platform ecosystem. Experience seamless, zero-configuration support for:\u003Cbr \u002F>\n* \u003Cstrong>WooCommerce\u003C\u002Fstrong> (Secure checkout & customer account login)\u003Cbr \u002F>\n* \u003Cstrong>MemberPress\u003C\u002Fstrong> & \u003Cstrong>Paid Memberships Pro (PMPro)\u003C\u002Fstrong> (Frictionless member portal protection)\u003Cbr \u002F>\n* \u003Cstrong>LearnDash\u003C\u002Fstrong> (Instant student sign-in to prevent account sharing)\u003Cbr \u002F>\n* \u003Cstrong>Ultimate Member\u003C\u002Fstrong> & \u003Cstrong>BuddyBoss\u003C\u002Fstrong> (Biometric profiles for modern communities)\u003Cbr \u002F>\n* \u003Cstrong>Gravity Forms\u003C\u002Fstrong> (Protected frontend user-registration flows)\u003C\u002Fp>\n\u003Ch3>Why Smart Site Owners Choose Passkeys\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Strong Phishing Resistance:\u003C\u002Fstrong> Passkeys are cryptographically bound to your specific domain name. A fake login page or copycat site cannot reuse a passkey issued for your real site.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Reduce Brute-Force Risk:\u003C\u002Fstrong> Passkey login does not rely on a static password being typed into the login form, reducing exposure to automated password-guessing attacks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Painless Cross-Device Sync:\u003C\u002Fstrong> Works natively with iCloud Keychain, Google Password Manager, and 1Password for reliable, frictionless cross-device access across desktop, mobile, and tablet.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>One-Click Passwordless Authentication:\u003C\u002Fstrong> Adds a native, highly visible “Sign in with Passkey” button directly to your core WordPress login screens.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Conditional UI Autofill Support:\u003C\u002Fstrong> Offers optional browser-native passkey autofill prompts when a user focuses on the username field for an incredibly polished user experience.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Ecosystem-Aware Gutenberg Blocks & Shortcodes:\u003C\u002Fstrong> Automatically registers matching frontend login cards and components specifically tailored to your active third-party plugins.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>High-Yield Admin Nudge Notices:\u003C\u002Fstrong> Turn on built-in dashboard reminders that gently guide eligible users to secure their accounts with a passkey without administrator intervention.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Granular Role-Based Security Policies:\u003C\u002Fstrong> Configure exactly which user roles are permitted to use biometric authentication (Default: Administrators-only out of the box).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Developer-Managed Overrides:\u003C\u002Fstrong> Manage passkey settings in PHP using the centralized \u003Ccode>advapafo_local_configuration\u003C\u002Fcode> filter or the \u003Ccode>ADVAPAFO_SETTINGS\u003C\u002Fcode> constant.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Theme Template Customization:\u003C\u002Fstrong> Seamlessly match your active brand by overriding the login button template layout via \u003Ccode>\u002Fadvanced-passkeys\u002Flogin\u002Fbutton.php\u003C\u002Fcode> inside your child theme.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Advanced Analytics Dashboard:\u003C\u002Fstrong> Track credential performance over time with a live Authenticator Overview breakdown card and a Last Login audit trail log.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Hardened Brute-Force Rate Limiting:\u003C\u002Fstrong> Enforce strict local connection limits to log and block malicious behavior, backed by automated daily cleanup crons to keep your database lean.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multisite Network Provisioning:\u003C\u002Fstrong> Network-aware architecture instantly partitions tables dynamically and inherits security guardrails across newly deployed network sites.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Clean Housekeeping Routine:\u003C\u002Fstrong> Implements a strict, responsible uninstall function that leaves behind absolutely zero orphaned database tables or leftover configuration choices.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Developer Configuration\u003C\u002Fh3>\n\u003Cp>Advanced Passkeys supports code-managed configuration for developers, agencies, and infrastructure teams that deploy settings through version control. This helps apply the same passkey policy across many sites without manual option changes.\u003C\u002Fp>\n\u003Ch4>Configuration evaluation priority order\u003C\u002Fh4>\n\u003Cp>When resolving a configuration key, the plugin respects this strict top-down hierarchy:\u003C\u002Fp>\n\u003Col>\n\u003Cli>Centralized \u003Ccode>advapafo_local_configuration\u003C\u002Fcode> hook filter\u003C\u002Fli>\n\u003Cli>Global \u003Ccode>ADVAPAFO_SETTINGS\u003C\u002Fcode> array constant definition\u003C\u002Fli>\n\u003Cli>Site-level \u003Ccode>advapafo_settings\u003C\u002Fcode> option array map\u003C\u002Fli>\n\u003Cli>Single historical legacy \u003Ccode>advapafo_*\u003C\u002Fcode> options\u003C\u002Fli>\n\u003Cli>Core plugin out-of-the-box system defaults\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>Values resolve individually by index key. Overriding a key like \u003Ccode>login_challenge_ttl\u003C\u002Fcode> via code leaves your remaining settings completely manageable via the dashboard UI or database choices.\u003C\u002Fp>\n\u003Ch4>Example: Enforce HTTPS and restrict passkey enrollment to administrators\u003C\u002Fh4>\n\u003Cp>Drop this configuration array inside your active theme’s functions file or a custom functionality plugin:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003C?php\nadd_filter(\n    'advapafo_local_configuration',\n    static function ( array $configuration ): array {\n        return array_replace(\n            $configuration,\n            array(\n                'enforce_https'  => true,\n                'eligible_roles' => array( 'administrator' ),\n            )\n        );\n    }\n);\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch4>Example: Global array constant configuration within wp-config.php\u003C\u002Fh4>\n\u003Cp>For automated environments that favor infrastructure-level array maps, define this constant:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>define(\n    'ADVAPAFO_SETTINGS',\n    array(\n        'conditional_ui_enabled'     => true,\n        'login_challenge_ttl'        => 300,\n        'registration_challenge_ttl' => 300,\n        'max_passkeys_per_user'      => 0,\n    )\n);\n\u003C\u002Fcode>\u003C\u002Fpre>\n","Add secure passwordless passkey login with Face ID, Touch ID, Windows Hello, and hardware keys.",10,367,"2026-07-08T22:58:00.000Z","7.0.2","6.0",[52,53,20,21,22],"login","passkeys","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fadvanced-passkey-login\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fadvanced-passkey-login.1.1.11.zip",{"slug":57,"name":58,"version":59,"author":60,"author_profile":61,"description":62,"short_description":63,"active_installs":46,"downloaded":64,"rating":11,"num_ratings":11,"last_updated":65,"tested_up_to":14,"requires_at_least":66,"requires_php":67,"tags":68,"homepage":70,"download_link":71,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"bye-bye-passwords","Bye Bye Passwords","1.2.7","Clayton LZ","https:\u002F\u002Fprofiles.wordpress.org\u002Fclaytonlz\u002F","\u003Cp>\u003Cstrong>Bye Bye Passwords\u003C\u002Fstrong> brings modern passwordless authentication to WordPress using WebAuthn\u002FPasskeys technology. Say goodbye to weak passwords and hello to secure, convenient login with biometrics, security keys, or platform authenticators.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Passwordless Login\u003C\u002Fstrong> – Sign in using Touch ID, Face ID, Windows Hello, or security keys\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multiple Passkeys\u003C\u002Fstrong> – Register multiple devices for convenient access anywhere\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Recovery Codes\u003C\u002Fstrong> – Generate one-time backup codes for emergency access\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Enhanced Security\u003C\u002Fstrong> – Eliminate password-based attacks completely\u003C\u002Fli>\n\u003Cli>\u003Cstrong>User-Friendly\u003C\u002Fstrong> – Simple setup with no technical knowledge required\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy-Focused\u003C\u002Fstrong> – Your authentication data stays on your server\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WordPress Integration\u003C\u002Fstrong> – Seamlessly integrated into WordPress admin and login\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How It Works\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Register a passkey from your WordPress admin profile\u003C\u002Fli>\n\u003Cli>Use your device’s built-in authentication (fingerprint, face, PIN)\u003C\u002Fli>\n\u003Cli>Sign in instantly without typing passwords\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>SSL\u002FHTTPS enabled website (required for WebAuthn)\u003C\u002Fli>\n\u003Cli>Modern browser with WebAuthn support\u003C\u002Fli>\n\u003Cli>PHP 7.2 or higher\u003C\u002Fli>\n\u003Cli>WordPress 5.0 or higher\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin may connect to the FIDO Alliance Metadata Service (MDS) to download root certificates for authenticator validation.\u003C\u002Fp>\n\u003Ch4>FIDO Alliance Metadata Service\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>URL:\u003C\u002Fstrong> https:\u002F\u002Fmds.fidoalliance.org\u002F\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Purpose:\u003C\u002Fstrong> Downloads attestation root certificates to verify the authenticity of security keys and passkey devices\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When:\u003C\u002Fstrong> Only when attestation verification is enabled and the plugin needs to update its certificate store (not during normal authentication)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> No personal or user data is transmitted – only a standard HTTP GET request\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Service provider:\u003C\u002Fstrong> FIDO Alliance\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms of Use:\u003C\u002Fstrong> https:\u002F\u002Ffidoalliance.org\u002Fmetadata\u002F\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy Policy:\u003C\u002Fstrong> https:\u002F\u002Ffidoalliance.org\u002Fprivacy-policy\u002F\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>No user data, credentials, or personal information is ever sent to external services. All authentication happens locally on your server.\u003C\u002Fp>\n","Enable passwordless authentication for WordPress using WebAuthn\u002FPasskeys. More secure, more convenient.",430,"2026-02-26T18:34:00.000Z","5.0","7.2",[69,53,20,21,22],"authentication","https:\u002F\u002Fgithub.com\u002Fclayton\u002Fbyebyepw","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbye-bye-passwords.1.2.7.zip",{"slug":73,"name":74,"version":75,"author":76,"author_profile":77,"description":78,"short_description":79,"active_installs":80,"downloaded":81,"rating":82,"num_ratings":83,"last_updated":84,"tested_up_to":14,"requires_at_least":66,"requires_php":85,"tags":86,"homepage":88,"download_link":89,"security_score":90,"vuln_count":91,"unpatched_count":92,"last_vuln_date":93,"fetched_at":27},"wp-webauthn","WP-WebAuthn","1.4.1","Axton","https:\u002F\u002Fprofiles.wordpress.org\u002Faxton\u002F","\u003Cp>WebAuthn is a new way for you to authenticate in web. It helps you replace your passwords with devices like Passkeys, USB Keys, fingerprint scanners, Windows Hello compatible cameras, FaceID\u002FTouchID and more. Using WebAuthn, you can login to your a website with a glance or touch.\u003C\u002Fp>\n\u003Cp>When using WebAuthn, you just need to click once and perform a simple verification on the authenticator, then you are logged in. \u003Cstrong>No password needed.\u003C\u002Fstrong> If your device supports Passkey, your authenticator can roam seamlessly across multiple devices for a more convenient login experience.\u003C\u002Fp>\n\u003Cp>WP-WebAuthn is a plug-in for WordPress to enable WebAuthn on your site. Just download and install it, and you are in the future of web authentication.\u003C\u002Fp>\n\u003Cp>WP-WebAuthn also supports usernameless authentication.\u003C\u002Fp>\n\u003Cp>This plugin has 4 built-in shortcodes and 4 built-in Gutenberg blocks, so you can add components like register form to frontend pages.\u003C\u002Fp>\n\u003Cp>Please refer to the \u003Ca href=\"http:\u002F\u002Fdoc.flyhigher.top\u002Fwp-webauthn\" rel=\"nofollow ugc\">documentation\u003C\u002Fa> before using the plugin.\u003C\u002Fp>\n\u003Cp>This plugin currently has \u003Cem>BETA\u003C\u002Fem> multisite support, if you find any issue in multisite, feel free to \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fyrccondor\u002Fwp-webauthn\u002Fissues\u002Fnew\" rel=\"nofollow ugc\">open an issue\u003C\u002Fa> on GitHub.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>PHP extensions gmp and mbstring are required.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>WebAuthn requires HTTPS connection or \u003Ccode>localhost\u003C\u002Fcode> to function normally.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>You can contribute to this plugin on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fyrccondor\u002Fwp-webauthn\" rel=\"nofollow ugc\">GitHub\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Please note that this plugin does NOT support Internet Explorer (including IE 11). To use FaceID or TouchID, you need to use iOS\u002FiPadOS 14+.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch4>Security and Privacy\u003C\u002Fh4>\n\u003Cp>WebAuthn has become a W3C Recommendation since March 2019, which enabling the creation and use of strong, attested, scoped, public key-based credentials by web applications, for the purpose of strongly authenticating users using hardware authenticators. WebAuthn focuses on both security and privacy, it offers the possibility to create a secure authentication process without having to transfer any private data such as recognition data and fingerprint data. It will be the future of web authentication.\u003C\u002Fp>\n\u003Ch4>GDPR Friendly\u003C\u002Fh4>\n\u003Cp>When authenticating with WebAuthn, no private data will leave user’s device and no third-party involvement. The credentials transferred are not associate to any user’s information but only for authentication. It’s GDPR Friendly.\u003C\u002Fp>\n","WP-WebAuthn enables passwordless login through FIDO2 and U2F devices like Passkey, FaceID or Windows Hello for your site.",2000,27352,90,17,"2026-04-15T17:57:00.000Z","7.4",[87,52,19,21,22],"fido","https:\u002F\u002Fflyhigher.top","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-webauthn.1.4.1.zip",74,3,1,"2026-03-20 15:20:53",{"slug":95,"name":96,"version":97,"author":98,"author_profile":99,"description":100,"short_description":101,"active_installs":102,"downloaded":103,"rating":104,"num_ratings":31,"last_updated":105,"tested_up_to":49,"requires_at_least":50,"requires_php":85,"tags":106,"homepage":108,"download_link":109,"security_score":110,"vuln_count":92,"unpatched_count":11,"last_vuln_date":111,"fetched_at":27},"secure-passkeys","Secure Passkeys","1.3.0","Mohamed Endisha","https:\u002F\u002Fprofiles.wordpress.org\u002Fendisha\u002F","\u003Cp>Secure Passkeys is a powerful WordPress plugin that enables seamless passwordless authentication using WebAuthn technology. By eliminating the need for traditional passwords, it enhances security and improves the user login experience. With support for biometric authentication, security keys, and device-bound credentials, Secure Passkey provides a robust and user-friendly solution for modern authentication.\u003C\u002Fp>\n\u003Cp>Unlike traditional password-based authentication, Secure Passkey leverages cryptographic key pairs to ensure secure logins. The private key remains securely stored on the user’s device, while the public key is registered with the WordPress site. This method protects against phishing attacks and password breaches, ensuring that only authorized users can gain access.\u003C\u002Fp>\n\u003Cp>Secure Passkeys integrates effortlessly into WordPress, allowing users to register and manage their passkeys from their profile settings. Once registered, users can log in using their fingerprint, face recognition, or a hardware security key without the need to remember or enter a password.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Passwordless Login:\u003C\u002Fstrong> Secure authentication via WebAuthn with biometric devices, security keys, Touch ID, Face ID, and more.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Enhanced User Experience:\u003C\u002Fstrong>  Password-free login for a smoother user journey.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Integration Support:\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>WordPress default login form\u003C\u002Fli>\n\u003Cli>WooCommerce login page\u003C\u002Fli>\n\u003Cli>MemberPress login form\u003C\u002Fli>\n\u003Cli>Easy Digital Downloads login form\u003C\u002Fli>\n\u003Cli>Ultimate Member login form\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Admin Management:\u003C\u002Fstrong>  Administrators can delete, activate, or deactivate users directly from plugin settings or user profiles.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Passkeys Reminder Notice:\u003C\u002Fstrong>  New option to enable or disable the passkeys reminder notice in the WordPress admin area for users who have not yet enabled passkeys.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Activity Logging:\u003C\u002Fstrong>  Monitor activity logs and track last login\u002Fregistration of passkeys.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multiple Passkeys:\u003C\u002Fstrong> Supports multiple passkey registrations per user, with the option to set a registration limit or allow unlimited registrations.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Role Restrictions:\u003C\u002Fstrong> Restrict and exclude specific user roles from using passkey authentication.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Passkey Autofill:\u003C\u002Fstrong> Passkeys automatically appear as a suggestion when clicking the username field — no button click required.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Rate Limiting:\u003C\u002Fstrong> Configurable rate limiting on login attempts to protect against automated attacks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Long-lived Session:\u003C\u002Fstrong> Control whether passkey logins set a persistent session cookie or end when the browser is closed.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Customizable Settings:\u003C\u002Fstrong>  Adjust timeout settings for passkey registration and login.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>User Verification:\u003C\u002Fstrong> Enforce user verification for enhanced security.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Frontend Customization:\u003C\u002Fstrong> Easily customize frontend themes or add your own with basic frontend skills.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Theme Support:\u003C\u002Fstrong> Supports pre-built themes like YOOtheme (UIkit) for frontend shortcodes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Shortcodes:\u003C\u002Fstrong> Embed passkey login and registration forms on custom frontend pages.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Passkey Display:\u003C\u002Fstrong> Show passkey details in admin user lists and profiles.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multisite:\u003C\u002Fstrong> Supports WordPress Multisite and single-site installations.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Database Optimization:\u003C\u002Fstrong>  Option to allow or disallow automatic deletion of old challenge records and activity logs (configurable schedule).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>WordPress 6.0 or newer.\u003C\u002Fli>\n\u003Cli>PHP version 7.4 or newer.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>Secure Passkeys is licensed under the GNU General Public License v2 or later.\u003C\u002Fp>\n","Secure Passkeys is a powerful WordPress plugin that enables passwordless authentication using WebAuthn technology.",1000,9759,96,"2026-07-01T20:15:00.000Z",[52,53,20,107,22],"secure","https:\u002F\u002Fendisha.ly\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsecure-passkeys.1.3.0.zip",99,"2025-09-19 00:00:00",{"slug":113,"name":114,"version":115,"author":116,"author_profile":117,"description":118,"short_description":119,"active_installs":25,"downloaded":120,"rating":121,"num_ratings":91,"last_updated":122,"tested_up_to":123,"requires_at_least":124,"requires_php":125,"tags":126,"homepage":128,"download_link":129,"security_score":130,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"biometric-authentication","Biometric Authentication","0.3.8","Ivan Kristianto","https:\u002F\u002Fprofiles.wordpress.org\u002Fivankristianto\u002F","\u003Cp>This innovative plugin introduces passkey login to your WordPress experience. No more struggling to remember complex passwords.\u003Cbr \u002F>\nSimply use your fingerprint, face ID, or a secure PIN to log in with ease. You can still use your username and password to login to your site as fallback.\u003C\u002Fp>\n\u003Ch3>Enhanced Security, Frictionless Access:\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Effortless Login: Unlock the power of passkeys for a smooth and secure login experience.\u003C\u002Fli>\n\u003Cli>Superior Security: Passkeys offer enhanced protection against breaches compared to traditional passwords.\u003C\u002Fli>\n\u003Cli>Convenience at Your Fingertips: Enjoy the freedom of logging in with your biometrics or a secure PIN.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>GitHub Repository\u003C\u002Fh3>\n\u003Cp>You can find the source code of this plugin on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fivankristianto\u002Fwp-passkey\u002F\" rel=\"nofollow ugc\">GitHub\u003C\u002Fa>\u003C\u002Fp>\n","Passkeys are a safer and easier alternative to passwords. Simply use your fingerprint or face ID to log in with ease.",3233,94,"2024-05-01T04:23:00.000Z","6.5.8","6.1","8.1",[69,127,19,20,21],"biometric","https:\u002F\u002Fgithub.com\u002Fivankristianto\u002Fwp-passkey\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbiometric-authentication.0.3.8.zip",85,{"error":132,"url":133,"statusCode":134,"statusMessage":135,"message":135},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fkeyless-login\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":11,"versions":137},[]]