Entryway – WP Login & Logout Redirect
Explore Entryway – WP Login & Logout Redirect vulnerabilities across all versions. Currently tracking 1 known vulnerabilities, including severity, impact, and patch status.
Vulnerability Records

Entryway – WP Login & Logout Redirect
Author
Md Aminur Islam
Entryway – WP Login and Logout Redirect gives you full control over where users land after they sign in or out of your site — from a simple pair of default URLs to powerful per-role redirect rules. On top of that, it records login activity in a searchable audit log, alerts you by email when important users sign in, and lets you see (and force out) everyone currently logged in. Everything is managed from a fast, modern settings screen built with React — no page reloads, instant feedback, and a clean design that feels right at home in your WordPress admin. 🔀 Smart Redirect Rules Go beyond one-size-fits-all redirects. Build an ordered list of rules and send different users to different places: Target users by role, specific user, or capability — combine multiple conditions in one rule (all must match). Rules are evaluated top to bottom; the first match wins — reorder them with drag and drop. Each rule sets its own login and/or logout destination. Toggle rules on and off without deleting them. Personalize destination URLs with placeholders: {{username}}, {{user_slug}} and {{website_url}} — one click copies a placeholder to your clipboard. 🎯 Default Redirects Set a site-wide login redirect URL and logout redirect URL used whenever no rule matches. Leave a field empty to keep the WordPress default (dashboard after login, homepage after logout). Works with WooCommerce login too. 📋 Audit Log Know exactly who signed in, when, and from where: Records logins, logouts, failed logins and forced logouts with IP address, browser and OS. At-a-glance stat cards plus a searchable, filterable event table. Automatic cleanup — keep events for 7, 30 or 90 days, or forever. Delete single entries or clear the whole log at any time. Logging is off until you enable it. 👥 Logged-in Users A live view of every active session on your site: See who is currently logged in, their role, when they signed in and when the session expires. Inspect each user’s individual sessions (device, browser, IP). Force logout a single session, a user, a selection of users — or everyone at once (with an option to keep yourself logged in). 📧 Email Notifications Get an instant email when a user with a role you watch (e.g. Administrator) signs in. Receive a daily, weekly or monthly digest summarizing login activity. Send notifications to any address — defaults to the site admin email. 🕐 Last Login Column Every user’s most recent login date and time appears in a sortable column on the Users → All Users screen. Privacy When audit logging is enabled, each event stores the user’s IP address and browser. Alert and digest emails include this login metadata and are sent only to the configured notification address (the site admin email by default). Notifications are off until you opt in. Support If you find this plugin useful, consider supporting its development through a donation.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C