WordPress users and one-click login
List, add, and manage WordPress users from the dashboard, see when each one last logged in, and open WP Admin with one click.
Avaloi can read and manage the users inside WordPress itself, and open WP Admin for you without a password. Open your site, then User management. The WordPress users tab shows the users of the environment you are looking at (live and staging each have their own). These are WordPress users, not the people who use the Avaloi dashboard. For those, open the Site access tab or see Give someone access to one site.
Open WP Admin with one click
- Open your site, then User management.
- In WP Admin auto-login, choose Open WP Admin.
A new tab opens WordPress admin, signed in as the WordPress user with your email. The link works once and expires after 60 seconds. When your site has a primary domain, the link uses it, so WordPress keeps you signed in. If no WordPress user has your email, choose Add me as an administrator, then open WP Admin again.
Find a user
The table lists each user's name, username, email, role, last login, and status. Search by name, username, or email, filter by role, and use the refresh button to read the list again.
- Active: signed in during the last 90 days.
- Inactive: last signed in more than 90 days ago.
- Never signed in: no sign-in since Avaloi started recording them.
Last login comes from the Avaloi MU plugin, which keeps the last 200 sign-in attempts on each environment.
Add a user
- Choose Add user.
- Enter the email and pick a role. The username is optional.
- Choose Add user.
The new user signs in with a password reset email or, if it is you, with WP Admin auto-login. Avaloi never sees WordPress passwords.
Change a role, send a password reset, or log in as someone
Open the three dot menu on a user's row:
- Log in as this user opens WP Admin as that user, with the same single-use link.
- Send password reset email asks WordPress to email the user a link to choose a new password.
- Change role replaces the user's role.
- Delete removes the user. Pick another user to receive their posts and pages, then type the username to confirm. The last administrator of a site cannot be deleted.
Each action runs as a job and shows up on the User activity tab with who did it.
Limits
- The user list and the login history wait up to 10 seconds. If WordPress is slower, the screen says so and fills in when the job finishes.
- The login link works once and expires after 60 seconds.
- The login history keeps the last 200 attempts per environment.
Quick answers
The list says WordPress is slow to answer. The site took longer than 10 seconds. The list appears on its own when the job finishes.
My login link says it is invalid. Links work once and expire after 60 seconds. Start the login again.
Does a WordPress user get access to the Avaloi dashboard? No. WordPress users live inside the site. Dashboard access comes from a site role on the Site access tab.
Why does a user show Never signed in? Avaloi records sign-ins from the moment the MU plugin is on the site. Older sign-ins are not known.
API
GET /v1/environments/{id}/wp-usersPOST /v1/environments/{id}/wp-usersPATCH /v1/environments/{id}/wp-users/{user_id}with{"role": "editor"}DELETE /v1/environments/{id}/wp-users/{user_id}?reassign={other_user_id}&confirm=truePOST /v1/environments/{id}/wp-users/{user_id}/password-resetGET /v1/environments/{id}/wp-login-eventsPOST /v1/environments/{id}/wp-admin-login
Related
Still stuck?
Email [email protected] with your site name and what you tried, or send us a message.