Fixora Disable XML-RPC

Fixora Disable XML-RPC

Details
View on WordPress

Fixora Disable XML-RPC helps you disable xml-rpc, disable xmlrpc abuse, and reduce pingback exposure on your WordPress site.

  • Disable XML-RPC entirely — turns off XML-RPC and blocks direct access to xmlrpc.php (unless Jetpack is allowed).
  • Blocked-attempt log — records blocked XML-RPC requests (time, remote IP, and method name only). View the count and recent entries under Settings Fixora Disable XML-RPC. Stores up to the last 50 entries in a single option.
  • Remove X-Pingback and pingback link discovery — when protection is active.
  • Pingback-only mode — blocks only pingback.ping while leaving other XML-RPC methods available.
  • Allow Jetpack — optional checkbox so Jetpack can keep using XML-RPC when the plugin is active.
  • Admin status check — requests xmlrpc.php from the settings screen and reports whether it appears blocked.

This plugin does not provide firewall lists or additional hardening beyond the features above.

Details

Plugin code:
fixora-disable-xml-rpc
Plugin version:
1.0.1
Outdated:
No
WP version:
6.4 or higher
PHP version:
7.4 or higher
Test up to WP version:
7.1.2
Total installations:
0
Last updated:
2026-10-05
Rating:
Times rated:
0
disable-xml-rpc
disable-xmlrpc
pingback
xmlrpc