Skip to content

Limit sharing of protected-directory logins

Use Leech Protection for an already password-protected directory.

Where Tools → Security → Leech Protection

Before you start

  • Set up Directory Privacy and working authorised users first.
  • Choose a sensible login threshold and a safe redirect/notification destination.

Steps

  1. 1

    Open Leech Protection and browse to the protected folder.

  2. 2

    Review the allowed login count within the period shown by the form. This is intended to detect shared credentials, not to manage WordPress user accounts.

  3. 3

    Set the redirect and alert options offered. Review any option that disables compromised accounts before enabling it.

  4. 4

    Enable/save only after checking the scope. Return to the same folder’s settings to review or change the protection later.

  5. 5

    Click Edit beside that folder rather than clicking its name, which navigates into it.

    Choose Edit on the intended protected directory.

Check it worked

  • Confirm legitimate users can still access the directory.
  • Monitor alerts and investigate before permanently removing users or changing passwords.