Authenticator
View on WordPress.orgScores higher than 30% of indexed plugins
About
This plugin allows you to make your WordPress site accessible to logged in users only.
Security History
What It Does
Authenticator locks down an entire WordPress site so that only logged-in users can view any content. Visitors who are not authenticated are redirected to the login page, effectively turning a public WordPress install into a private, members-only environment.
Who It's For
This plugin is best suited for site owners running small private spaces such as internal company intranets, client portals, family sites, or closed community forums where everyone needs a WordPress account. It is a good fit when the requirement is simple: keep the public out, let logged-in users in.
Who Should Skip It
If you need any form of public content, SEO-friendly landing pages, registration flows, tiered membership levels, or paid subscriptions, this plugin is too blunt an instrument. Site owners running blogs, marketing sites, or WooCommerce stores should look elsewhere.
The Bottom Line
Authenticator does exactly one thing and does it well: it forces a login before any content is shown. With 1,000 installs and a 75.93/100 quality score, it is a tidy solution for small private sites, but anyone needing public content alongside private areas should choose a more capable membership plugin like Members.
Related Plugins
Pick Members when you need granular role and capability control rather than a simple site-wide lockout.
Pick WPS Hide Login when your goal is to obscure the wp-login URL to deter bots, not to restrict content visibility.
Pick Loginizer when brute-force protection and login hardening matter more than access restriction.
Pick this when you need a full security suite including malware scanning and a firewall, rather than a single access toggle.
Pick Security Optimizer when you want an all-in-one hardening plugin with login protection, firewall, and backup features.