Limit sharing of protected-directory logins
Use Leech Protection for an already password-protected directory.
Where Tools → Security → Leech Protection
Before you start
- Set up Directory Privacy and working authorised users first.
- Choose a sensible login threshold and a safe redirect/notification destination.
Steps
-
1
Open Leech Protection and browse to the protected folder.
-
2
Review the allowed login count within the period shown by the form. This is intended to detect shared credentials, not to manage WordPress user accounts.
-
3
Set the redirect and alert options offered. Review any option that disables compromised accounts before enabling it.
-
4
Enable/save only after checking the scope. Return to the same folder’s settings to review or change the protection later.
-
5
Click Edit beside that folder rather than clicking its name, which navigates into it.
Choose Edit on the intended protected directory.
Check it worked
- Confirm legitimate users can still access the directory.
- Monitor alerts and investigate before permanently removing users or changing passwords.