ncdLabs Site Access Policies
ncdLabs Site Access Policies

ncdLabs Site Access Policies

0/5 (0 ratings) — active installs Updated Aug 10, 2026
Security Dashboard — protection status, recommendations, and quick actions.

Security Dashboard — protection status, recommendations, and quick actions.

ncdLabs Site Access Policies is a policy-based access layer for WordPress. Protect entire sites, domain names, and URL paths with passwords, passkeys, and WordPress users — without server configuration.

Included in Free

  • Unlimited policies with drag-and-drop ordering
  • Exact and wildcard domain name/path matching
  • Password, passkey, and WordPress login authentication
  • User, role, and capability authorization (boolean authz trees)
  • Secure sessions, audit log, simulator, analyzer, and recovery

Optional Premium companion (sold separately)

Advanced capabilities (access groups, custom appearance profiles, SSO/IdP, SCIM, agency multisite tools, and more) are provided by a separate Premium plugin you download from ncdLabs after purchase. The Free plugin never locks included code behind a license key.

Product page: https://ncdlabs.com/ncdlabs-site-access-policies/

Privacy

By default this plugin does not contact external servers. Language packs are handled by WordPress’s normal translation updates — this plugin does not call WordPress.org on activation. Optional integrations you configure yourself (identity providers, SIEM webhooks, cloud backups) send only the data required for that service. Password hashes and private keys are never transmitted to cloud backups.

WordPress Tools Export / Erase Personal Data includes plugin records linked to the requested user (sessions, passkeys, authorized-user links, access-group memberships, and audit events). Audit events are anonymized rather than deleted so security retention remains intact. Shared policies and vault credentials belonging to other users are never erased.

Full notice: https://ncdlabs.com/products/ncdlabs-site-access-policies/privacy/