| @@ -1,130 +1,339 @@ | ||
| 1 | -=== Passster - Password Protection === | |
| 2 | -Contributors: patrickposner | |
| 3 | -Tags: password protection, content protection, content restriction, captcha, membership, cookie restriction, members area, password protect | |
| 4 | -Requires at least: 6.0 | |
| 5 | -Tested up to: 6.2 | |
| 1 | +=== Passster - Password Protect Pages and Content === | |
| 2 | +Contributors: wpchill, silkalns | |
| 3 | +Tags: password protect, password, restrict content, sitewide, password protection | |
| 4 | +Requires at least: 6.5 | |
| 5 | +Tested up to: 7.1 | |
| 6 | 6 | Requires PHP: 7.2 |
| 7 | -Stable tag: 4.1.4 | |
| 7 | +License: GPLv2 or later | |
| 8 | +License URI: https://www.gnu.org/licenses/gpl-2.0.html | |
| 9 | +Stable tag: 4.3.16 | |
| 8 | 10 | |
| 9 | -Passster is the all-in-one password protection plugin for WordPress. | |
| 11 | +== Description == | |
| 12 | +## Password Protect Pages, Posts & Content in WordPress | |
| 10 | 13 | |
| 11 | -== Description == | |
| 14 | +Passster is an all-in-one plugin to password protect pages, content, or your entire site in seconds—quick, secure, and easy to use. | |
| 15 | +Passster offers three protection modes to cover every use case you may think of when it comes to password protecting your WordPress website. | |
| 12 | 16 | |
| 13 | -Passster is the all-in-one password protection plugin for WordPress. | |
| 17 | +https://www.youtube.com/watch?v=kjYklVLVFD8&list=PLM2tOjfhVrZdo_H26CV2I-UfdqpDWxo3D&index=4 | |
| 14 | 18 | |
| 15 | -It allows to protect your entire website, pages or posts, or just parts of it with a password. | |
| 19 | +### Passster Pro – Even more protection features when making a purchase | |
| 16 | 20 | |
| 17 | -There are three different types of password-protection that ships with Passster | |
| 21 | +**Multiple Passwords & Password Lists** | |
| 22 | +- Assign multiple passwords for different users. | |
| 23 | +- Create and manage large password lists for easy control. | |
| 18 | 24 | |
| 19 | -**Area protection** | |
| 25 | +**Quick & Bulk Edit for Password Protection** | |
| 26 | +- Use WordPress **Quick Edit** and **Bulk Edit** to protect multiple pages instantly. | |
| 20 | 27 | |
| 21 | -Areas are sections of a page you like to protect with a password. | |
| 28 | +**Unlock Content by User Role or Email** | |
| 29 | +- Automatically grant access to specific users or email addresses. | |
| 22 | 30 | |
| 23 | -You add the content that should be unlocked, configure your password and you get a shortcode in return to be used in a page or post. | |
| 31 | +**Password Expiration & Usage Limits** | |
| 32 | +- Set passwords to expire after a number of uses, first use, or by a time limit (hours, days, weeks). | |
| 33 | +- Track which passwords were used and when they will expire. | |
| 24 | 34 | |
| 25 | -There is also a block to select created areas directly from within the Block Editor. | |
| 35 | +**Generate Unlock Links** | |
| 36 | +- Create encrypted unlock links so users can access content without entering a password. | |
| 37 | +- Automatically shorten links with **Bit.ly** for easy sharing. | |
| 26 | 38 | |
| 27 | -**Page protection** | |
| 39 | +**WooCommerce Protection & Sales** | |
| 40 | +- Protect WooCommerce pages, products, and checkout with a password. | |
| 41 | +- Sell access to protected content—generate and email passwords automatically after purchase. | |
| 28 | 42 | |
| 29 | -Edit a page, activate the protection and add a password - that's it the password protection is set up. | |
| 43 | +**Detailed Password Usage Statistics** | |
| 44 | +- Track when and how often passwords are used. | |
| 45 | +- View first usage date, IP (optional), and browser details. | |
| 30 | 46 | |
| 31 | -It will protect the entire page for you but will still display the header and footer of your website, so it fits perfectly with any kind of theme. | |
| 47 | +## Quick Comparison (Free vs. Pro) | |
| 32 | 48 | |
| 49 | +### Free Version: | |
| 50 | +✔ Protect sections of pages using shortcodes or blocks. | |
| 51 | +✔ Secure entire pages and posts. | |
| 52 | +✔ Automatically protect child pages with a single click. | |
| 53 | +✔ Lock down your entire site with a password. | |
| 54 | +✔ Unlock protected content without refreshing the page. | |
| 55 | +✔ Customize the design, labels, and descriptions of the password form. | |
| 56 | +✔ Use cookies to grant access across multiple protected areas. | |
| 33 | 57 | |
| 34 | -**Global Protection** | |
| 58 | +### Pro Version: | |
| 59 | +✔ Everything in the free version, plus: | |
| 60 | +✔ Protect content with **multiple passwords** or password lists. | |
| 61 | +✔ Quickly set up password protection via Quick Edit or Bulk Edit. | |
| 62 | +✔ Protect content using **Google reCAPTCHA or hCAPTCHA**. | |
| 63 | +✔ Unlock protected content by **user role or email**. | |
| 64 | +✔ Set passwords to **expire** based on usage limits or time intervals. | |
| 65 | +✔ Generate encrypted **unlock links** for seamless access. | |
| 66 | +✔ Track and prevent **concurrent password sharing**. | |
| 67 | +✔ Secure **WooCommerce products and store pages**. | |
| 68 | +✔ Sell access to protected content via **WooCommerce integration**. | |
| 69 | +✔ Detailed statistics on password usage and lists. | |
| 35 | 70 | |
| 36 | -Navigate to Passster -> Settings -> Global Protection, activate the protection, select a page and optionally exclude pages from the protection. | |
| 71 | +Get it now on [passster.com/](https://passster.com/) | |
| 37 | 72 | |
| 38 | -Once configured all visitors will be redirected to that page and need to provide the correct password to further navigate through your website. | |
| 73 | +### Documentation | |
| 39 | 74 | |
| 40 | -Perfect for membership-like websites without all the configuration hustle you experienced before. | |
| 75 | +Learn more about this plugin [in our official documentation](https://passster.com/kb/) | |
| 41 | 76 | |
| 42 | -= Features = | |
| 77 | +== Support == | |
| 78 | +* Free users: [Ask in our forum](https://wordpress.org/support/plugin/content-protector/) | |
| 79 | +* Pro users: [Get priority help](https://passster.com/contact-us/?utm_source=wordpress.org&utm_medium=web&utm_campaign=description&utm_term=contact+us) | |
| 43 | 80 | |
| 44 | -**Free** | |
| 81 | +== Frequently Asked Questions == | |
| 45 | 82 | |
| 46 | -The free version of Passster offers all the power you need to password-protect your website. | |
| 83 | += Can I use Passster in multiple languages = | |
| 84 | +All primary texts and information can be modified from the admin area of Passster. | |
| 85 | +The plugin is fully translatable in your language. There are only en_EN and de_DE at the moment, but you can easily add your preferred language as a .po/.mo. | |
| 86 | +It’s also fully compatible with WPML and Polylang. | |
| 47 | 87 | |
| 48 | -* Password-Protect sections of your page with areas and add them via shortcode or block | |
| 49 | -* Password-Protect entire pages or posts | |
| 50 | -* Automatically password-protect child pages with a single click | |
| 51 | -* Password-Protect your entire website with a password | |
| 52 | -* Use Ajax to unlock protected areas without a reload | |
| 53 | -* Change the design, labels and descriptions globally, per area, per page or per block | |
| 54 | -* Use a cookie to automatically unlock different password-protected areas and pages with the same password | |
| 88 | += Where do I report security bugs found in this plugin? = | |
| 55 | 89 | |
| 90 | +Please report security bugs found in the source code of the Passster plugin through the [Patchstack Vulnerability Disclosure Program](https://patchstack.com/database/vdp/9e5fb73f-e810-474a-a64f-c86081aa9b46). The Patchstack team will assist you with verification, CVE assignment, and notify the developers of this plugin." | |
| 56 | 91 | |
| 57 | -**Passster Pro** | |
| 92 | +== Screenshots == | |
| 93 | +1. Passster Password Form | |
| 94 | +2. Passster Settings Area General | |
| 95 | +3. Passster Settings Area Design | |
| 96 | +4. Passster Protected Areas | |
| 97 | +5. Passster Protected Areas in page edit | |
| 98 | +6. Passster Password Lists - Pro only | |
| 99 | +7. Passster Statistics - Pro only | |
| 58 | 100 | |
| 59 | -Passster Pro introduces several awesome features to bring protection to a whole new level. | |
| 101 | +== Installation == | |
| 60 | 102 | |
| 61 | -[youtube https://youtu.be/ihZc10pSKbg] | |
| 103 | +Passster is simple to install: | |
| 62 | 104 | |
| 63 | -Additionally to all free features, the pro version includes: | |
| 105 | +1. Download the .zip' | |
| 106 | +2. Unzip | |
| 107 | +3. Upload the directory to your '/wp-content/plugins' directory | |
| 108 | +4. Go to the plugin management page and enable the Passster Plugin | |
| 109 | +5. Browse to Settings > Passster | |
| 110 | +6. Customise your settings and your good to go! | |
| 64 | 111 | |
| 65 | -* Password-Protect your content with multiple passwords or password lists (large sets of passwords) | |
| 66 | -* Quickly setup password-protection via quick editing or bulk editing pages and posts | |
| 67 | -* Protect your content with Google reCAPTCHA (v2/v3) or hCAPTCHA | |
| 68 | -* Automatically unlock password-protected content by user role or user e-mail | |
| 69 | -* Expire passwords by first time usage, after a number of usages or by interval (hours, days, weeks, months) | |
| 70 | -* Create and share unlock links to unlock protected content automatically (optionally shorten them with Bit.ly) | |
| 71 | -* Track and block concurrent password usages and prevent password sharing | |
| 72 | -* Password-Protect WooCommerce products and the store page | |
| 112 | +== Changelog == | |
| 113 | += 4.3.16 - 18.09.2026 = | |
| 114 | +* Added: Post Type Level Protection: password-protect an entire post type at once. | |
| 115 | +* Fixed: Unlock link redirects on archive pages. | |
| 73 | 116 | |
| 117 | += 4.3.15 - 10.09.2026 = | |
| 118 | +* Fixed: Compatibility issue with some page builders. | |
| 74 | 119 | |
| 75 | -Paired with exceptional support directly from the developer, regular updates and feature integrations, and extensive documentation you can't go wrong with Passster Pro. | |
| 120 | += 4.3.14 - 03.09.2026 = | |
| 121 | +* Fixed: Security update. | |
| 122 | +* Fixed: Minor admin UI improvements. | |
| 76 | 123 | |
| 77 | -Get it now on [patrickposner.dev/passster/](https://patrickposner.dev/passster/) | |
| 124 | += 4.3.13 - 02.09.2026 = | |
| 125 | +* Fixed: Security update. | |
| 78 | 126 | |
| 79 | -**Documentation** | |
| 127 | += 4.3.12 - 01.09.2026 = | |
| 128 | +* Fixed: Security update. | |
| 80 | 129 | |
| 81 | -I regularly optimize the documentation and release extensive tutorials on how to use Passster in a multitude of use-cases. | |
| 130 | += 4.3.11 - 25.08.2026 = | |
| 131 | +* Fixed: Some Design settings were not being applied to the password form. | |
| 82 | 132 | |
| 83 | -Learn more on [patrickposner.dev/passster/docs](https://patrickposner.dev/passster/docs/) | |
| 133 | += 4.3.10 - 21.08.2026 = | |
| 134 | +* Fixed: Various password validation and unlock reliability improvements. | |
| 84 | 135 | |
| 85 | -== Support == | |
| 136 | += 4.3.9 - 13.08.2026 = | |
| 137 | +* Fixed: Security issue (thanks to WPScan). | |
| 138 | +* Fixed: Block editor freezing when selecting a block built with page builders like Spectra. | |
| 139 | +* Changed: Hid noisy Freemius notices (opt-in reminder, premium activation, plan upgrade messages). | |
| 140 | +* Changed: Updated Freemius SDK to 2.13.4. | |
| 86 | 141 | |
| 87 | -The free support is exclusively limited to the wordpress.org support forum. | |
| 142 | += 4.3.8 - 03.08.2026 = | |
| 143 | +* Fixed: Security issue. | |
| 144 | +* Fixed: Block editor freezing on pages built with Elementor. | |
| 145 | +* Changed: Improved Protected Content block toolbar performance on pages with many blocks. | |
| 88 | 146 | |
| 89 | -Any kind of email priority support, customization, and integration help need a valid premium license. | |
| 147 | += 4.3.7 - 27.07.2026 = | |
| 148 | +* Fixed: Security issue (thanks to Pierre Rudloff). | |
| 90 | 149 | |
| 91 | -=== CODING STANDARDS MADE IN GERMANY === | |
| 150 | += 4.3.6 - 23.07.2026 = | |
| 151 | +* Added: "Show Password" label is now customizable from the General settings tab. | |
| 152 | +* Fixed: Per-page form text being used even when "Overwrite Defaults" is disabled. | |
| 153 | +* Fixed: Instruction text showing as garbled characters when using the Protected Area block. | |
| 154 | +* Fixed: Security issues (thanks to Revanth Hari Narayana Matte). | |
| 92 | 155 | |
| 93 | -The plugin is coded with **modern PHP** and **WordPress standards** in mind. It’s fully OOP coded. | |
| 156 | += 4.3.5 - 02.06.2026 = | |
| 157 | +* Fixed: hCaptcha cookie not being recognized on subsequent page loads. | |
| 158 | +* Fixed: Unlock links with special characters in instructions could cause encoding errors. | |
| 159 | +* Fixed: Pass parameter being lost during global protection redirect. | |
| 94 | 160 | |
| 95 | -It’s highly extendable for developers through several actions and filter hooks. | |
| 161 | += 4.3.4 - 08.05.2026 = | |
| 162 | +* Fixed: Replaced non-functional license activation button on free version with installation guide for Passster PRO. | |
| 163 | +* Fixed: Category lock not showing password form on regular post category archive pages. | |
| 96 | 164 | |
| 97 | -Passster keeps your website performance in mind. Every script is **loaded conditionally**, and all input and output data is secured. | |
| 165 | += 4.3.3 - 03.04.2026 = | |
| 166 | +* Changed: Enhance PS_Rest_Handler to allow public access to additional Passster endpoints for guest users. | |
| 98 | 167 | |
| 168 | += 4.3.2 - 30.03.2026 = | |
| 169 | +* Fixed: Category lock for WooCommerce products and categories. | |
| 170 | +* Changed: Page refresh on unlock is now on by default. Inline unlock can be enabled via Advanced → Unlock Behaviour. | |
| 99 | 171 | |
| 100 | -=== MULTI-LANGUAGE === | |
| 172 | += 4.3.1 - 20.03.2026 = | |
| 173 | +* Fixed: Password label should not be visible, it's there for accessibility reasons. | |
| 174 | +* Fixed: Password label is now translatable. | |
| 175 | +* Fixed: Missing loading animation. | |
| 101 | 176 | |
| 102 | -All primary texts and information can be modified from the admin area of Passster. | |
| 177 | += 4.3.0 - 20.03.2026 = | |
| 178 | +* Changed: Refactor settings display and added statistics page. | |
| 179 | +* Added: Category lock. | |
| 180 | +* Added: Passter Protected Area Gutenberg wrapper block. | |
| 103 | 181 | |
| 104 | -The plugin is fully translatable in your language. There are only en_EN and de_DE at the moment, but you can easily add your preferred language as a .po/.mo. | |
| 182 | += 4.2.29 - 12.02.2026 = | |
| 183 | +* Fixed: Password validation and unlock link generation failing when the password contains the % character. | |
| 105 | 184 | |
| 106 | -It’s also fully compatible with WPML and Polylang. | |
| 185 | += 4.2.28 - 02.02.2026 = | |
| 186 | +* Fixed: Nonce validation failing for logged-in users when fetched via REST endpoint. | |
| 107 | 187 | |
| 108 | -== Screenshots == | |
| 109 | -1. Passster Password Form | |
| 110 | -2. Passster Areas | |
| 111 | -3. Passster Settings | |
| 112 | -3. Passster Customizer Options | |
| 188 | += 4.2.27 - 27.01.2026 = | |
| 189 | +* Fixed: Prevent nonce from being cached. | |
| 190 | +* Fixed: Page protect children option. | |
| 113 | 191 | |
| 114 | -== Installation == | |
| 192 | += 4.2.26 - 16.01.2026 = | |
| 193 | +* Fixed: Security update | |
| 115 | 194 | |
| 116 | -Passster is simple to install: | |
| 195 | += 4.2.25 - 14.01.2026 = | |
| 196 | +* Fixed: Passster protected events do not show up in The Events Callendar REST requests. | |
| 197 | +* Changed: Prevent nonce from being cached. | |
| 198 | +* Fixed: Security update | |
| 117 | 199 | |
| 118 | -1. Download the .zip' | |
| 119 | -1. Unzip | |
| 120 | -1. Upload the directory to your '/wp-content/plugins' directory | |
| 121 | -1. Go to the plugin management page and enable the Passster Plugin | |
| 122 | -1. Browse to Settings > Passster | |
| 123 | -1. Customise your settings and your good to go! | |
| 200 | += 4.2.24 - 12.01.2026 = | |
| 201 | +* Fixed: Vulnerability in passster shortcode. | |
| 202 | +* Fixed: Fix allowing hashed in unlocking page url. | |
| 124 | 203 | |
| 125 | -== Changelog == | |
| 204 | += 4.2.23 - 08.01.2026 = | |
| 205 | +* Fixed: Bug preventing password validation. | |
| 126 | 206 | |
| 207 | += 4.2.22 - 05.01.2026 = | |
| 208 | +* Fixed: Vulnerability in passster shortcode. | |
| 209 | + | |
| 210 | += 4.2.21 - 18.12.2025 = | |
| 211 | +* Fixed: Vulnerability in passster shortcode. | |
| 212 | + | |
| 213 | += 4.2.20 - 22.10.2025 = | |
| 214 | +* Fixed: Security update | |
| 215 | + | |
| 216 | += 4.2.19 - 02.10.2025 = | |
| 217 | +* Fixed: Vulnerability in passster shortcode. | |
| 218 | + | |
| 219 | += 4.2.18 - 15.09.2025 = | |
| 220 | +* Added: null alt attribute to ps-loader image for better accessibility compliance. | |
| 221 | +* Changed: Made password form input IDs unique per protected area to prevent duplicate IDs when using multiple forms on the same page. | |
| 222 | + | |
| 223 | += 4.2.17 - 22.07.2025 = | |
| 224 | +* Fixed: Users with allowed roles can now access other pages when global restriction is active and the password page is excluded for them. | |
| 225 | + | |
| 226 | += 4.2.16 - 09.07.2025 = | |
| 227 | +* Changed: Allow HTML & shortcodes in instructions. | |
| 228 | + | |
| 229 | += 4.2.15 - 17.03.2025 = | |
| 230 | +* Added: Support for Turnstile captcha. | |
| 231 | + | |
| 232 | += 4.2.14 - 25.02.2025 = | |
| 233 | +* Fixed: Unlock link was not working properly. | |
| 234 | + | |
| 235 | += 4.2.13 - 03.02.2025 = | |
| 236 | +* Fixed: Global protection page was not being protected even if "Activate Protection" was on. | |
| 237 | + | |
| 238 | += 4.2.12 - 20.12.2024 = | |
| 239 | +* Changed: Security update - Updated Freemius SDK | |
| 240 | + | |
| 241 | += 4.2.10 - 11.12.2024 = | |
| 242 | +* Changed: Updated upsells information | |
| 243 | + | |
| 244 | += 4.2.9 - 10.12.2024 = | |
| 245 | +* Added: Settings upsells | |
| 246 | + | |
| 247 | += 4.2.8 - 06.12.2024 = | |
| 248 | +* Changed: Readme update | |
| 249 | + | |
| 250 | += 4.2.7 = | |
| 251 | + | |
| 252 | +* WP 6.7 compatibility | |
| 253 | +* dependency updates | |
| 254 | +* PHP 8.3 compatibility | |
| 255 | +* make headline removable via design settings | |
| 256 | +* default tag for headlines is now <span> for SEO purposes | |
| 257 | +* fixed expiration with cookie usage (pro-only) | |
| 258 | + | |
| 259 | += 4.2.6.6 = | |
| 260 | + | |
| 261 | +* WP 6.6 compatiblity | |
| 262 | +* latest dependencies for the block editor | |
| 263 | +* fixed missing default value breaking design settings | |
| 264 | +* latest Freemius SDK upgrade | |
| 265 | + | |
| 266 | += 4.2.6.5 = | |
| 267 | + | |
| 268 | +* improved expiration for passwords with unlock links | |
| 269 | +* fixed escaping for redirect parameter | |
| 270 | +* several security improvements | |
| 271 | +* updated to 6.5 compatibility | |
| 272 | + | |
| 273 | += 4.2.6.4 = | |
| 274 | + | |
| 275 | +* exclude pagebuilders from rest restriction (frontend editing) | |
| 276 | + | |
| 277 | += 4.2.6.3 = | |
| 278 | + | |
| 279 | +* fixed components for WP 6.4.3 release (margin/radius) | |
| 280 | +* restrict Rest API access with global protection | |
| 281 | + | |
| 282 | += 4.2.6.2 = | |
| 283 | + | |
| 284 | +* added exception for sanitized array setting (exclude pages) | |
| 285 | + | |
| 286 | += 4.2.6.1 = | |
| 287 | + | |
| 288 | +* added hook to combine generated password with order | |
| 289 | +* improved sanitization on importer | |
| 290 | +* added russian + ukrainian translation | |
| 291 | +* SDK upgrade | |
| 292 | + | |
| 293 | += 4.2.6 = | |
| 294 | + | |
| 295 | +* WordPress 6.4 compatibility | |
| 296 | + | |
| 297 | += 4.2.5 = | |
| 298 | + | |
| 299 | +* WooCommerce email trigger after status complete | |
| 300 | +* added filter for generated password | |
| 301 | +* protected page optional for WooCommerce integration | |
| 302 | +* improved admin UI contrasts | |
| 303 | +* restructured design settings | |
| 304 | + | |
| 305 | += 4.2.4 = | |
| 306 | + | |
| 307 | +* WP 6.3 compatibility | |
| 308 | + | |
| 309 | += 4.2.3 = | |
| 310 | + | |
| 311 | +* some Freemius integration improvements | |
| 312 | + | |
| 313 | += 4.2.2 = | |
| 314 | + | |
| 315 | +* improved logout button markup | |
| 316 | +* added action after validating password list hash | |
| 317 | +* Freemius SDK update to 2.5.10 | |
| 318 | + | |
| 319 | += 4.2.1 = | |
| 320 | + | |
| 321 | +* improved admin UI with permanent sidebar | |
| 322 | +* improved value handling for margin/padding to avoid PHP notices | |
| 323 | +* added filter to validate payment before sending e-mail (pro-only) | |
| 324 | + | |
| 325 | += 4.2 = | |
| 326 | + | |
| 327 | +* selling and generating passwords with WooCommerce (pro-only) | |
| 328 | +* assign and manage multiple passwords lists (pro-only) | |
| 329 | +* hotfix editing areas with Oxygen Builder | |
| 330 | +* helper methods to automatically generate and add passwords to lists | |
| 331 | +* statistics for password usage + custom database table | |
| 332 | +* expiration statistics for passsword lists | |
| 333 | +* fixed area shortcode inspector controls | |
| 334 | +* GPDR friendly tracking implementation | |
| 335 | + | |
| 127 | 336 | = 4.1.4 = |
| 128 | 337 | |
| 129 | 338 | * reverted hcaptcha integration |
| 130 | 339 | * updated admin links to new URL structure |
| @@ -718,4 +927,9 @@ | ||
| 718 | 927 | Added required images for JQuery UI theme and fixed some i18n strings. |
| 719 | 928 | |
| 720 | 929 | = 1.0 = |
| 721 | 930 | Initial release. |
| 931 | + | |
| 932 | +== Upgrade Notice == | |
| 933 | + | |
| 934 | += 4.2.13 = | |
| 935 | +This resolved an issue with the "Activate Protection" option set for the Global protection page. | |