Zum Inhalt springen
WordPress.org

Deutsch

  • Themes
  • Plugins
  • News
  • Support
  • Über
    • Learn WordPress
    • Documentation (en)
    • Foren
    • Developers (en)
    • WordPress.tv
  • Meetups
  • Mitmachen
  • FAQ
  • Hol dir WordPress
Hol dir WordPress
WordPress.org

Plugin Directory

Multidots Passkey Login – Passwordless Login for WordPress

  • Plugin einreichen
  • Meine Favoriten
  • Anmelden
  • Plugin einreichen
  • Meine Favoriten
  • Anmelden

Multidots Passkey Login – Passwordless Login for WordPress

Von MULTIDOTS Inc
Herunterladen
  • Details
  • Rezensionen
  • Entwicklung
Support

Beschreibung

Multidots Passkey Login – Passwordless Authentication brings next-generation login security to WordPress.

Give your users a secure and modern login experience with passkeys — the new standard for passwordless authentication supported by all major browsers and devices.

With Multidots Passkey Login, users can log in using biometric authentication (Face ID, Touch ID), Windows Hello, or a device PIN—no passwords are required.

This creates a fast, secure, and phishing-resistant login experience that works seamlessly across desktop and mobile.

Built for Flexibility:

  • Instantly works for existing WordPress users after registering a passkey.
  • Simple yet powerful admin settings to manage login behavior and security.
  • Built on the FIDO2/WebAuthn standard trusted by Apple, Google, and Microsoft.

Perfect for publishers, WooCommerce stores, agency clients, and high-security use cases.

Key Features

🔐 Secure & Seamless Login

  • Passwordless login with Touch ID, Face ID, or security keys.
  • Works instantly for existing users after passkey registration.

📝 Easy User Registration.

  • Register a passkey for existing users without one.
  • Create new users directly with passkey registration.

⚙️ Flexible Admin Settings

  • Enable/Disable passkey login with one click.
  • Control session timeout for added security.
  • Multiple authentication options: QR code scan, Chrome guest mode, iCloud Keychain, etc.
  • Limit number of passkeys per user (e.g., max 2 credentials).

🎨 Frontend Integration
Shortcodes included:

  • [mdlogin_passkey_login] → Displays a Login with Passkey button.
  • [mdlogin_passkey_register] → Displays passkey registration form.

🛡️ Security Requirements

  • Requires HTTPS for secure operation

Why Choose the Multidots Passkey Login Plugin

  • Passwordless Security: Strong protection against phishing and stolen credentials.
  • User-Friendly: Log in with a single tap or scan—no passwords to remember.
  • Enterprise-Grade Standards: Built on FIDO2/WebAuthn protocols used by major platforms.
  • Cross-Device Compatibility: Works on iOS, Android, macOS, and Windows.
  • Trusted Developer: Created by Multidots, a WordPress VIP Gold Agency.

How It Works

  • Activate Plugin – Enable Passkey Login from settings.
  • User Registers a Passkey – through profile settings
  • Login Without Passwords – Users authenticate via Touch ID, Face ID, or a security key.
  • Admin Controls – Adjust login methods and session policies

Our Other Plugins

  • Sync Product From Amazon
  • Smart Post Sync
  • Better By Default
  • Centralized Content Management for WordPress Multisite Networks
  • MD Governance
  • Salsi Sync

Contact Us

Free plugin: Need Technical Help? – Click here
Pro Plugin: PRE-SALE Questions – Click here

Screenshots

FAQ

What is a Passkey?

A passkey is a secure credential stored on your device (like Face ID, fingerprint, or PIN). It’s used to log into websites without needing to remember or type a password.

Do passkeys work on mobile devices?

Yes! Passkeys work across mobile and desktop. Users can log in using their built-in biometrics or unlock methods.

Is this plugin compatible with WordPress Multisite?

Yes. It works smoothly with multisite setups.

Do I need SSL/HTTPS for this plugin?

Yes. HTTPS is required for secure operation of passkeys.

Does it work with existing WordPress accounts?

Yes. Any user can register a passkey and log in without a password.

Can I keep normal username/password login active?

Yes. Traditional login remains unless the admin disables it.

What devices and browsers are supported?

Passkeys are supported on all major browsers (Chrome, Safari, Edge) and devices (iOS, Android, macOS, Windows).

Can I limit the number of passkeys per user?

Yes. The admin can set how many passkeys each user can register.

How do I troubleshoot conflicts with other plugins?

Disable other plugins one by one to identify conflicts. If the issue persists, contact our support team for assistance.

How do I get support if I face an issue?

You can post your queries on the WordPress.org support forum for the plugin.

Rezensionen

CSP policy Injection, no option to disable.

frankpanduh 3. Februar 2026 1 Antwort
Fair warning to save you a headache, this plugin injects a CSP policy that will break your main policy. Don’t use this till they add a disable CSP mode. grep -R „Content-Security-Policy“ wp-content/plugins/ wp-content/plugins/multidots-passkey-login/multidots-passkey-login.php:                header(„Content-Security-Policy: $csp“); wp-content/plugins/multidots-passkey-login/multidots-passkey-login.php:                header(„Content-Security-Policy: $csp“);

Works perfectly

jf9xcsdd 2. Oktober 2025
Installed, selected method for login-authentification, added mac-fingerprint, works!
Alle 2 Rezensionen lesen

Mitwirkende und Entwickler

„Multidots Passkey Login – Passwordless Login for WordPress“ ist Open-Source-Software. Folgende Menschen haben an diesem Plugin mitgewirkt:

Mitwirkende
  • MULTIDOTS Inc

Übersetze „Multidots Passkey Login – Passwordless Login for WordPress“ in deine Sprache.

Interessiert an der Entwicklung?

Durchstöbere den Code, sieh dir das SVN-Repository an oder abonniere das Entwicklungsprotokoll per RSS.

Änderungsprotokoll

1.1 – 16.10.2025

  • Implemented comprehensive input sanitization and validation across all user inputs.
  • Added rate limiting to prevent brute force attacks and abuse.
  • Enhanced session security with improved management and metadata protection
  • Integrated full CSRF token validation to prevent cross-site request forgery.
  • Applied multiple security headers to mitigate common web vulnerabilities.
  • Minor bug fixes and code refactoring for better maintainability

1.0.0

  • Initial release

Meta

  • Version 1.1
  • Zuletzt aktualisiert vor 5 Monaten
  • Aktive Installationen weniger als 10
  • WordPress-Version 6.0 oder höher
  • Getestet bis 6.8.5
  • PHP-Version 8.1 oder höher
  • Sprache
    English (US)
  • Schlagwörter
    authenticationloginpasskeypasswordless
  • Erweiterte Ansicht

Bewertungen

3 von 5 Sternen.
  • 1 5-Sterne-Rezension 5 Sterne 1
  • 0 4-Sterne-Rezensionen 4 Sterne 0
  • 0 3-Sterne-Rezensionen 3 Sterne 0
  • 0 2-Sterne-Rezensionen 2 Sterne 0
  • 1 1-Sterne-Rezension 1 Stern 1

Your review

Alle Rezensionen anzeigen

Mitwirkende

  • MULTIDOTS Inc

Support

Möchtest du etwas mitteilen? Brauchst du Unterstützung?

Support-Forum anzeigen

  • Über
  • News
  • Hosting (engl.)
  • Datenschutz
  • Showcase (engl.)
  • Themes
  • Plugins
  • Vorlagen
  • Learn
  • Support
  • Entwicklung (engl.)
  • WordPress.tv ↗
  • Mitwirken (engl.)
  • Veranstaltungen
  • Spenden (engl.) ↗
  • Five for the Future (engl.)
  • WordPress.com ↗
  • Matt (engl.) ↗
  • bbPress (engl.) ↗
  • BuddyPress (engl.) ↗
WordPress.org
WordPress.org

Deutsch

  • Das X-Konto (früher Twitter) von WordPress.org besuchen
  • Das Bluesky-Konto von WordPress.org besuchen
  • Das Mastodon-Konto von WordPress.org besuchen
  • Das Threads-Konto von WordPress.org besuchen
  • Die Facebook-Seite von WordPress.org besuchen
  • Das Instagram-Konto von WordPress.org besuchen
  • Das LinkedIn-Konto von WordPress.org besuchen
  • Das TikTok-Konto von WordPress.org besuchen
  • Den YouTube-Kanal von WordPress.org besuchen
  • Das Tumblr-Konto von WordPress.org besuchen
Code ist Poesie.
The WordPress® trademark is the intellectual property of the WordPress Foundation.