Manage XML-RPC


You can now disable XML-RPC to avoid Brute force attack for given IPs or can even enable access for some IPs. XML-RPC on WordPress is actually an API that gives developers who build mobile apps, desktop apps and other services, the ability to talk to a WordPress site. The XML-RPC API that WordPress provides gives developers, a way to write applications (for you) that can do many of the things that you can do when logged into WordPress via the web interface.


Block XML-RPC by following way.

  • Disable, pingback.extensions.getPingbacks and Unset X-Pingback from HTTP headers, that will block bots to access specified method.
  • Disable/Block XML-RPC for all users.


  • screenshot-1.png


  1. Upload the plugin files to the /wp-content/plugins/ directory, or install the plugin through the WordPress plugins screen directly.
  2. Activate the plugin through the ‚Plugins‘ screen in WordPress
  3. Use the ‚XML-RPC Settings‘ screen to configure the plugin.


Do I need to take a backup of my existing .htaccess file

Yes, it’s preferable to take a backup of existing .htaccess file.

What if .httaccess file doesn’t have writeable permission?

You can copy and paste new rule in your .htaccess file from plugin setting page.


18. Januar 2023
After directly activating this plugin, the backend is no longer available and can’t deactivate it or access the backend again This error appears Service UnavailableThe server is temporarily unable to service your request due to maintenance downtime or capacity problems. Please try again later.
19. Mai 2018
it might disable xml-rpc but it does not enable it. I have been unable to post to my wordpress, i whitelisted the ip using this plugin, it didn’t help at all
3. September 2016
simply works. I don’t use jetpack and I don’t care about ping backs… but I hate the staggering amount of xmlrpc attacks I’ve been seeing the past few months. This plugin can elegantly turn the URL into a 403 for the would-be attacker. Thanks!
Alle 4 Rezensionen lesen

Mitwirkende & Entwickler

„Manage XML-RPC“ ist Open-Source-Software. Folgende Menschen haben an diesem Plugin mitgewirkt:


Übersetze „Manage XML-RPC“ in deine Sprache.

Interessiert an der Entwicklung?

Durchstöbere den Code, sieh dir das SVN Repository an oder abonniere das Entwicklungsprotokoll per RSS.



  1. Fixed bugs and conducted compatibility checks with the latest WordPress version 6.7.1.
  2. Resolved warnings and errors identified during the compatibility assessment.


  • Beta release with basic testing.