Limit Login Attempts Reloaded

Reloaded version of the original Limit Login Attempts plugin for Login Protection by a team of WordPress developers. GDPR compliant.

WPMeta Score

Did you know?

Plugin Popularity 2.7
Author Activity 1.0
  • 👷🏻 This plugin is actively maintained and contributors are really committed to it!
  • 📢 Reliable plugin.. 11 total updates and 11 in last 12 months. That's great track record.
  • 🏂 Super good!! 94.27% users from more than 400,000 active installs are on the latest version!
  • 🎖 Plugin ranks 17,099 amongst 50,000+ plugins.
  • ❤️ Mindblowing! More than 704,070 people use plugins from this team.
  • 📥 Seems like a popular plugin - 478 people download this plugin everyday.
  • 👨‍👨‍👧‍👧 One man show!! Only a single contributor for this plugin.
  • 🎂 This plugin celebrated it's 3rd anniversary 2 months ago.


Limit the number of login attempts that possible both through the normal login as well as using the auth cookies.
WordPress by default allows unlimited login attempts either through the login page or by sending special cookies. This allows passwords (or hashes) to be cracked via brute-force relatively easily.
Limit Login Attempts Reloaded blocks an Internet address from making further attempts after a specified limit on retries has been reached, making a brute-force attack difficult or impossible.


  • Limit the number of retry attempts when logging in (per each IP). This is fully customizable.
  • Limit the number of attempts to log in using authorization cookies in the same way.
  • Informs the user about the remaining retries or lockout time on the login page.
  • Optional logging and optional email notification.
  • Handles server behind the reverse proxy.
  • It is possible to whitelist/blacklist IPs and Usernames.
  • Sucuri Website Firewall compatibility.
  • XMLRPC gateway protection.
  • Woocommerce login page protection.
  • Multi-site compatibility with extra MU settings.
  • GDPR compliant. With this feature turned on, all logged IPs get obfuscated (md5-hashed).

Upgrading from the old Limit Login Attempts plugin

  1. Go to the Plugins section in your site’s backend.
  2. Remove the Limit Login Attempts plugin.
  3. Install the Limit Login Attempts Reloaded plugin.

All your settings will be kept in tact!

Many languages are currently supported in Limit Login Attempts Reloaded plugin but we welcome any additional ones.
Help us bring Limit Login Attempts Reloaded to even more cultures.

Translations: Bulgarian, Brazilian Portuguese, Catalan, Chinese (Traditional), Czech, Dutch, Finnish, French, German, Hungarian, Norwegian, Persian, Romanian, Russian, Spanish, Swedish, Turkish

Plugin uses standard actions and filters only.

Based on the original code from Limit Login Attemps plugin by Johan Eenfeldt.