Password bcrypt
Replaces wp_hash_password and wp_check_password with PHP 5.5's password_hash and password_verify.
Plugin info
Maintenance & Compatibility
Maintenance score
Possibly abandoned • Last updated 3449 days ago • 3 reviews
Is Password bcrypt abandoned?
Possibly abandoned (last update 3449 days ago).
Compatibility
Similar & Alternatives
Explore plugins with similar tags, and compare key metrics like downloads, ratings, updates, support, and WP/PHP compatibility.
Description
wp-password-bcrypt is a WordPress plugin to replace WP’s outdated and insecure
MD5-based password hashing with the modern and secure bcrypt.
It is written by roots.io people.
This plugin requires PHP >= 5.5.0 which introduced the built-in
password_hash and
password_verify functions.
See Improving WordPress Password Security
for more background on this plugin and the password hashing issue.
Installation
- Upload the plugin files to the
/wp-content/plugins/password-bcryptdirectory, or install the plugin through the WordPress plugins screen directly. - Activate the plugin through the ‘Plugins’ screen in WordPress
Frequently Asked Questions
Manual installation as a must-use plugin
If you don’t use Composer, you can manually copy wp-password-bcrypt.php into your mu-plugins folder.
We do not recommend using this as a normal (non-MU) plugin. It makes it too easy to disable or remove the plugin.
Review feed
Important plugin!
Simply the best
Screenshots
Changelog
1.0.3
- Check for another password plugin.
1.0.2
- Added license file, excuse me.
1.0.1
- This is the WordPress-stlye version of the original roots wp-password-bcrypt plugin