Manage WordPress users and single sign-on
Add or remove WordPress accounts and enter wp-admin without sharing passwords.
Where Apps โ WordPress โ Toolkit โ Users
What this is for
- Review WordPress accounts.
- Add a user with the appropriate role.
- Use single sign-on for support access.
Before you start
- Confirm the person's identity, email address and required WordPress role.
- Search the existing list first so the same person does not receive a duplicate account.
Take care
Administrator access is highly privileged. Use it only when the user must manage plugins, themes, settings or other accounts.
Steps
-
1
Open Toolkit and choose Users.
-
2
Search for the account before creating a duplicate.
-
3
Select Add user and enter a unique username and working email address.
-
4
Assign the least-privileged role that supports the person's work.
-
5
Use Single sign on to access wp-admin as the selected account where authorised.
-
6
Remove dormant accounts and immediately review access after staff changes.
Check it worked
- The user appears once with the intended email address and role.
- If single sign-on was used, the WordPress dashboard identifies the correct site and user.
What the controls do
| Control | What it means |
|---|---|
| Role | The WordPress permission level assigned to the user. |
| Single sign-on | Opens wp-admin without revealing or resetting the user's password. |
| User menu | Account-specific actions such as edit, reset or remove. |