Fixora Disable XML-RPC Wordpress Plugin - Rating, Reviews, Demo & Download
Plugin Description
Fixora Disable XML-RPC helps you disable xml-rpc, disable xmlrpc abuse, and reduce pingback exposure on your WordPress site.
- Disable XML-RPC entirely — turns off XML-RPC and blocks direct access to
xmlrpc.php(unless Jetpack is allowed). - Blocked-attempt log — records blocked XML-RPC requests (time, remote IP, and method name only). View the count and recent entries under Settings Fixora Disable XML-RPC. Stores up to the last 50 entries in a single option.
- Remove X-Pingback and pingback link discovery — when protection is active.
- Pingback-only mode — blocks only
pingback.pingwhile leaving other XML-RPC methods available. - Allow Jetpack — optional checkbox so Jetpack can keep using XML-RPC when the plugin is active.
- Admin status check — requests
xmlrpc.phpfrom the settings screen and reports whether it appears blocked.
This plugin does not provide firewall lists or additional hardening beyond the features above.
Screenshots
Settings → Fixora Disable XML-RPC: choose the protection mode (Off, Disable XML-RPC entirely, or Block only pingback.ping), optionally allow Jetpack, and review the blocked-attempt log and status check on one screen.
Blocked XML-RPC attempts log showing the time, remote IP address, and XML-RPC method of recent blocked requests (up to the last 50 entries).
XML-RPC status check: the “Check xmlrpc.php now” button requests your site’s xmlrpc.php and reports whether it appears blocked.
