Limited Admin Role

توسط

Limited Admin Role adds a custom WordPress role called Admin Panel Manager that gives a user broad content and product management access — but blocks access to WooCommerce Orders, Customers, Users, and sensitive reports.

Key Features:

  • 🔐 Granular capability grid — enable or disable every WordPress & WooCommerce capability from the settings UI, organized into 15 categories
  • 🚫 Block WooCommerce Orders, Customers, Analytics, and WordPress Users (menu + URL + REST API)
  • 🧩 Plugin Access Deny — per-plugin admin page blocking via a dedicated submenu
  • 🔑 Plugins view-only — can see installed plugins list but cannot install/activate/deactivate/update/delete
  • 🕐 Configurable session timeout (default 12 hours) — forces logout regardless of “Remember Me”
  • ✅ Compatible with Rank Math, Yoast SEO, WooCommerce HPOS, and Cloudflare

Capability Categories:

  • Core Access, Posts, Pages, Media, Appearance & Themes
  • Plugins, Users, WordPress Updates
  • WooCommerce Products, Orders, Coupons, Reports & Analytics, Settings, Customers
  • Comments

License

This plugin is licensed under the GNU General Public License v2.0 or later.

Full license text: https://www.gnu.org/licenses/gpl-2.0.html

  1. Upload the limited-admin-role folder to /wp-content/plugins/ or install via Plugins Add New Upload Plugin.
  2. Activate the plugin through the Plugins menu.
  3. The Admin Panel Manager role is created automatically on activation.
  4. Configure settings at Limited Admin Role in the WordPress admin sidebar.
  5. Assign the role to users via Users Add New or Users Edit User Role.

سوالات متداول

How do I assign the role to a user?

Go to Users Add New and set the Role dropdown to Admin Panel Manager. Or edit an existing user and change their role.

Can I change which capabilities are granted?

Yes. Go to Limited Admin Role Settings Capabilities tab. Every capability is listed with a checkbox — check to grant, uncheck to deny. Changes apply immediately on save.

How does the session timeout work?

On login, the plugin records a timestamp. On every admin page load, it checks if the elapsed time exceeds the configured limit (default: 12 hours). If so, the session is destroyed and the user is redirected to the login page with a “Session expired” message. The auth cookie is also clamped so “Remember Me” cannot extend beyond the limit.

Can the user install or activate plugins?

No. Plugin installation, activation, deactivation, update, and deletion are always blocked. The user can view the installed plugins list (read-only). You can toggle even view access from the Capabilities tab (activate_plugins cap).

How does Plugin Access Deny work?

Go to Limited Admin Role Plugin Access Deny. Every active plugin and its detected admin pages are listed. Check any pages to block them for the Admin Panel Manager role.

Is it compatible with WooCommerce HPOS?

Yes. Both the legacy post_type=shop_order URL and the new HPOS page=wc-orders URL are blocked.

Does it work with Rank Math and Yoast SEO?

Yes. Both plugins show their meta boxes to any user with edit_posts capability, which this role has by default.

تصویری برای این آیتم موجود نیست.
نظری برای این آیتم موجود نیست.
0 0 رای ها
امتیازدهی
اشتراک در
اطلاع از
0 نظرات
قدیمی‌ترین
تازه‌ترین بیشترین رأی
نسخه حجم فایل SHA256 تغییرات دانلود
2.9.1 42 کیلوبایت -
دانلود
×
بدون امتیاز

قیمت:

رایگان

نگارش

2.9.1

آخرین انتشار

16 اردیبهشت 1405

آخرین بروزرسانی

3 ماه پیش

نصب های فعال

-

نگارش وردپرس

وردپرس 6.0+

تست شده از نسخه

وردپرس 6.9.4

نگارش PHP

PHP 7.4+

نسخه ها

1 نسخه