Skip to main content
MeteorGPLby WebbingApps
H

Magic Login Pro

Plugin
Watch 0 Star 0
Install

Passwordless login for WordPress. Streamline the login process by sending magic links to your users.

  • 0 stars
  • 0 watching
  • 0 downloads
  • License not declared

Versions 0

Newest first · every version scanned before publication
Show 49 versions not available yet

Releases named in the vendor’s changelog or on WordPress.org that the repository does not have yet.

  1. 2.8.1 Not available yet

    [Fixed] Missing text domains in several admin interface strings.

    Changelog entry

  2. 2.8 Not available yet

    [Added] Native honeypot protection for Magic Login forms.

    Changelog entry

  3. 2.7.1 Not available yet

    [Fixed] Settings import failing on some sites due to restricted MIME type filters when uploading JSON files.

    Changelog entry

  4. 2.7 Not available yet

    [Added] Friendly captcha.

    Changelog entry

  5. 2.6.3 Not available yet

    [Fixed] Resolved a spam validation issue when code-based login was enabled on the standard login form.

    Changelog entry

  6. 2.6.2 Not available yet

    [Added] Admin notice when placeholder encryption keys/salts are in use.

    Changelog entry

  7. 2.6.1 Not available yet

    [Updated] Dependencies.

    Changelog entry

  8. 2.6 Not available yet

    [Added] Elementor widgets for Magic Login and Registration forms.

    Changelog entry

  9. 2.5.1 Not available yet

    [Added] No-cache headers for magic login links to prevent caching issues.

    Changelog entry

  10. 2.5 Not available yet

    [New] QR Code Login – Users can now log in by scanning a QR code. Learn more about QR Code Login.

    Changelog entry

  11. 2.4.2 Not available yet

    [Improved] SMS login support to API.

    Changelog entry

  12. 2.4.1 Not available yet

    [Fix] Default sms registration message without using emoji.

    Changelog entry

  13. 2.4 Not available yet

    [New Feature] SMS Login – Now you can send magic login links via SMS. Learn More

    Changelog entry

  14. 2.3.6 Not available yet

    [Fixed] Ensure proper handling of email recipient for {{MAGICLINK}} integration.

    Changelog entry

  15. 2.3.5 Not available yet

    [Improved] {{MAGICLINK}} placeholder to support encoded values.

    Changelog entry

  16. 2.3.4 Not available yet

    [Improved] Enhanced login request handling with prioritized processing and added logging for headersent scenarios.

    Changelog entry

  17. 2.3.3 Not available yet

    [Improved] Two-factor compatibility.

    Changelog entry

  18. 2.3.2 Not available yet

    [Improved] Spam protection for AJAX requests.

    Changelog entry

  19. 2.3.1 Not available yet

    [Fixed] Resolved issue with Cloudflare Turnstile integration when AJAX is enabled.

    Changelog entry

  20. 2.3 Not available yet

    [Added] REST API. Now you can create magic login links via REST API.

    Changelog entry

  21. 2.2 Not available yet

    [Added] Registration feature.

    Changelog entry

  22. 2.1.3 Not available yet

    Improvements on the uninstallation process.

    Changelog entry

  23. 2.1.2 Not available yet

    Fix auto-login link when the recipient is specified in an array format.

    Changelog entry

  24. 2.1.1 Not available yet

    Tested with WP 6.5

    Changelog entry

  25. 2.1 Not available yet

    Added WooCommerce integration for a seamless checkout experience.

    Changelog entry

  26. 2.0.1 Not available yet

    Fix German language that breaks auto-login links.

    Changelog entry

  27. 2.0 Not available yet

    Add {{MAGICLINK}} support to all outgoing emails received by a single user.

    Changelog entry

  28. 1.9.1 Not available yet

    Added French translation.

    Changelog entry

  29. 1.9 Not available yet

    Added: AJAX support for login requests.

    Changelog entry

  30. 1.8.1 Not available yet

    Added: Styling for two-factor plugin.

    Changelog entry

  31. 1.8 Not available yet

    New feature: Token Validity - allows to specify how many times a token can be used.

    Changelog entry

  32. 1.7 Not available yet

    PHP 8.1: fix deprecated 'FILTERSANITIZESTRING'

    Changelog entry

  33. 1.6 Not available yet

    New feature: Auto Login Links

    Changelog entry

  34. 1.5.2 Not available yet

    Bug fix: token validation

    Changelog entry

  35. 1.5.1 Not available yet

    Fixed: redirection issue.

    Changelog entry

  36. 1.5 Not available yet

    Fixed: save tokens hashed in DB. Props @snicco

    Changelog entry

  37. 1.4.1 Not available yet

    Check user object to avoid notice.

    Changelog entry

  38. 1.4 Not available yet

    Added user-level disable controls.

    Changelog entry

  39. 1.3.1 Not available yet

    redirect-to parameter added to CLI command.

    Changelog entry

  40. 1.3 Not available yet

    Tested with WP 6.0

    Changelog entry

  41. 1.2.2 Not available yet Release date not stated

    Tested with WP 5.9

    Changelog entry

  42. 1.2.1 Not available yet Release date not stated

    New: Integrate with the standard login form.

    Changelog entry

  43. 1.2 Not available yet Release date not stated

    New: Magic Login Block - It's much easier to add and customize the login form in the block editor.

    Changelog entry

  44. 1.1.2 Not available yet Release date not stated

    Fix: Scheduled expired token cleanup

    Changelog entry

  45. 1.1.1 Not available yet Release date not stated

    Update Shared UI

    Changelog entry

  46. 1.1 Not available yet Release date not stated

    Tested with WP 5.8

    Changelog entry

  47. 1.0.2 Not available yet Release date not stated

    Update Shared UI

    Changelog entry

  48. 1.0.1 Not available yet Release date not stated

    Update Shared UI

    Changelog entry

  49. 1.0 Not available yet Release date not stated

    First release

    Changelog entry

Readme

License

Magic Login Pro

Passwordless login for WordPress. Streamline the login process by sending magic links to your users.

Easy, secure, and passwordless authentication for WordPress.

Streamline the login process by sending links to your users. No more passwords to remember, no more password resets, and no more password strength requirements.

Learn more about Magic Login

Key Features 🌟

  • Passwordless Authentication: No more forgotten passwords or complex requirements.
  • Magic Links: Secure, unique links sent directly to users' email inboxes.
  • Auto Login: Support for auto-login links in outgoing emails. It's useful when pending action from a user, such as reply a comment, complete the checkout, etc.
  • Native Honeypot Protection: Add a lightweight, no-CAPTCHA spam protection layer to Magic Login forms.Learn more
  • User-Friendly: Simplifies the login process for all users.
  • Enhanced Security: Reduces risks associated with weak passwords.
  • Tools: Export, import, and reset plugin settings easily from the admin panel or WP-CLI. Learn more

How does it work? 🪄

  1. User enters their email address.
  2. A unique magic link is sent to their inbox.
  3. Clicking the link authenticates and logs in the user.

PRO Features 🎩

Here are the premium features that come with Magic Login Pro:

  • SMS Login: Send magic login links via SMS. Learn more.
  • QR Code Login: Let users log in by scanning a QR code. Learn more.
  • Registration: Enable easy user registration directly from the login form or with a shortcode. Learn more.
  • CLI Command: Use WP-CLI to create login links, generate QR codes, export/import settings, and more. Learn more.
  • Brute Force Protection: Limit rate of login attempts and block IP temporarily.
  • Login request throttling: Limit login link generation for a certain period.
  • IP Check: Enhance the security by restricting users to log in from the same IP address that requested the link.
  • Domain Restriction: Allow only certain domains to use the magic link.
  • Login Email Customization: Customize login message by using email placeholders.
  • Login Redirect: Redirect users to a specific page right after login. You can also redirect different pages based on the user role.
  • WooCommerce Integration: Seamless checkout experience for returning customers. Learn more.
  • Easy Digital Downloads (EDD) Integration: Enhance the checkout experience with seamless magic login support. Learn more.
  • FluentCRM Integration: Send magic login links directly via FluentCRM. Learn more.
  • reCAPTCHA Integration: Safeguard your login and registration forms from spam with Google reCAPTCHA. Learn more.
  • Cloudflare Turnstile Integration: Enhance spam protection for your login and registration forms using Cloudflare Turnstile. Learn more.
  • Friendly Captcha Integration: Protect your login and registration forms from bots with privacy-friendly Friendly Captcha. Learn more.
  • API Support: Integrate Magic Login with your custom applications using the REST API.

By upgrading to Magic Login Pro you also get access to one-on-one help from our knowledgeable support team and our extensive documentation site.

Documentation

Our documentation can be found on https://handyplugins.co/docs-category/magic-login-pro/

Hook reference: https://handyplugins.co/docs/magic-login-hooks-doc/

What it adds

  • 1 block(s):
  • Integrates with WooCommerce

Installation

Manual Installation

  1. Upload the entire /magic-login directory to the /wp-content/plugins/ directory.
  2. Activate Magic Login through the 'Plugins' menu in WordPress.

Faq

What is passwordless authentication?

Passwordless authentication is an authentication method in which a user can log in to a computer system without entering (and remembering) a password.

Are the magic links secure?

Yes! In fact, we thought this is more secure than the regular login due to most of the users are using weak passwords. Since magic login generates a random token for a limited time frame it makes the links quite strong and secure.

When do login links expire?

It expires in 5 minutes by default. You can change TTL under the "Token Lifespan" on the settings page. Enter "0" to disable automatic expiration.

Why am I not getting login links?

Magic Login uses WordPress built-in mail functions. So, it depends on your configuration. We highly recommend to use an SMTP service for better email delivery.

How can I use a passwordless login form on any page?

You can use [magic_login_form] shortcode or block. Learn More.

Why are users redirected back to the page where they added the magic login form via shortcode?

This behavior occurs because the magic login form is designed to use the current page as the target redirection URL by default. It's a way to ensure a smooth user experience by bringing users back to the page they started from. However, if you wish to alter this behavior, you can easily do so by passing an empty redirect_to="" parameter within the shortcode. Learn More.

Can developers adjust honeypot timing?

Yes. Developers can use the magic_login_honeypot_config filter to adjust the minimum and maximum form age checks used by the native honeypot layer.

Screenshots

  1. Login Page
  2. Settings Page
  3. Login Email
  4. Login Block

Upgrade Notice

1.5

  • The tokens will be hashed before saving in meta with this version. Due to this change, existing tokens will not work right after the update.

1.0

First Release

Install

composer require meteorgpl-plugin/magic-login-pro

The vendor’s license checks are intact: activate the plugin in WordPress with a license key bought from the vendor.

License

The plugin declares no license. The code is redistributed under the license the vendor declared in the plugin’s own headers.

Artwork, fonts, media and documents that may be licensed separately are not redistributed; the licensing page explains what is replaced or removed, and the security tab lists it per version. Support and update entitlement come with the license you buy from the vendor.

Send feedback

What works, what does not, what is missing: a few words help.

Only if you would like a reply.

Taken in your browser, without this window. Passwords, what you typed into forms, keys and tokens are left out as grey blocks; you can hide more before sending. We keep screenshots for 90 days.

We store it with the page address, your language, window size, browser and IP address, and your e-mail address if you give one. The IP address and browser are deleted after 90 days. Privacy policy.

All languages