{"id":379174,"date":"2026-10-06T01:10:49","date_gmt":"2026-10-06T01:10:49","guid":{"rendered":"https:\/\/wordpress.org\/plugins\/admin-watch\/"},"modified":"2026-10-09T04:00:03","modified_gmt":"2026-10-09T04:00:03","slug":"adminwatch-central","status":"publish","type":"plugin","link":"https:\/\/wol.wordpress.org\/plugins\/adminwatch-central\/","author":23575159,"comment_status":"closed","ping_status":"closed","template":"","meta":{"version":"1.1.0","stable_tag":"1.1.0","tested":"7.1.3","requires":"6.4","requires_php":"7.4","requires_plugins":null,"header_name":"Admin Watch Central","header_author":"Web Studio WA","header_description":"See who can change your WordPress website, review recent privileged-user logins, Site Health and broken URLs from one simple dashboard.","assets_banners_color":"fafcfc","last_updated":"2026-10-09 04:00:03","external_support_url":"","external_repository_url":"","donate_link":"","header_plugin_uri":"","header_author_uri":"https:\/\/webstudiowa.com.au\/","rating":0,"author_block_rating":0,"active_installs":0,"downloads":406,"num_ratings":0,"support_threads":0,"support_threads_resolved":0,"author_block_count":0,"sections":["description","installation","faq","changelog"],"tags":{"1.0.0":{"tag":"1.0.0","author":"webstudiowadev","date":"2026-10-06 01:10:25","revision":3729812},"1.0.1":{"tag":"1.0.1","author":"webstudiowadev","date":"2026-10-06 04:41:00","revision":3730006},"1.0.2":{"tag":"1.0.2","author":"webstudiowadev","date":"2026-10-06 08:01:58","revision":3730258},"1.1.0":{"tag":"1.1.0","author":"webstudiowadev","date":"2026-10-09 04:00:03","revision":3735841}},"upgrade_notice":[],"ratings":[],"assets_icons":{"icon-128x128.png":{"filename":"icon-128x128.png","revision":3729811,"resolution":"128x128","location":"assets","locale":"","width":128,"height":128},"icon-256x256.png":{"filename":"icon-256x256.png","revision":3729811,"resolution":"256x256","location":"assets","locale":"","width":256,"height":256}},"assets_banners":{"banner-1544x500.png":{"filename":"banner-1544x500.png","revision":3730258,"resolution":"1544x500","location":"assets","locale":"","width":1544,"height":500},"banner-772x250.png":{"filename":"banner-772x250.png","revision":3730258,"resolution":"772x250","location":"assets","locale":"","width":772,"height":250}},"assets_blueprints":{},"all_blocks":[],"tagged_versions":["1.0.0","1.0.1","1.0.2","1.1.0"],"block_files":[],"assets_screenshots":{"screenshot-1.png":{"filename":"screenshot-1.png","revision":3729811,"resolution":"1","location":"assets","locale":"","width":1440,"height":1100},"screenshot-2.png":{"filename":"screenshot-2.png","revision":3729811,"resolution":"2","location":"assets","locale":"","width":1425,"height":1484},"screenshot-3.png":{"filename":"screenshot-3.png","revision":3729811,"resolution":"3","location":"assets","locale":"","width":1440,"height":1100},"screenshot-4.png":{"filename":"screenshot-4.png","revision":3729811,"resolution":"4","location":"assets","locale":"","width":1440,"height":1100},"screenshot-5.png":{"filename":"screenshot-5.png","revision":3729811,"resolution":"5","location":"assets","locale":"","width":1440,"height":1100},"screenshot-6.png":{"filename":"screenshot-6.png","revision":3729811,"resolution":"6","location":"assets","locale":"","width":1440,"height":1100}},"screenshots":{"1":"Admin Watch Central dashboard showing Site Health, privileged-user access, active sessions, recent logins and 404 activity.","2":"Users &amp; Access showing roles, recent login data, password-change visibility, password-strength estimates and supported MFA status.","3":"Active Sessions using current WordPress session state.","4":"404 Monitor showing aggregated missing URLs, hit counts and last-seen times.","5":"Settings for 404 monitoring, retention and privacy controls.","6":"About &amp; Support with product, developer, privacy and support information."}},"plugin_section":[],"plugin_tags":[209026,257746,284604,151481,54447],"plugin_category":[],"plugin_contributors":[284605],"plugin_business_model":[],"class_list":["post-379174","plugin","type-plugin","status-publish","hentry","plugin_tags-404-monitor","plugin_tags-active-sessions","plugin_tags-login-monitoring","plugin_tags-site-health","plugin_tags-user-access","plugin_contributors-webstudiowadev","plugin_committers-webstudiowadev"],"banners":{"banner":"https:\/\/ps.w.org\/adminwatch-central\/assets\/banner-772x250.png?rev=3730258","banner_2x":"https:\/\/ps.w.org\/adminwatch-central\/assets\/banner-1544x500.png?rev=3730258","banner_rtl":false,"banner_2x_rtl":false},"icons":{"svg":false,"icon":"https:\/\/ps.w.org\/adminwatch-central\/assets\/icon-128x128.png?rev=3729811","icon_2x":"https:\/\/ps.w.org\/adminwatch-central\/assets\/icon-256x256.png?rev=3729811","generated":false},"screenshots":[{"src":"https:\/\/ps.w.org\/adminwatch-central\/assets\/screenshot-1.png?rev=3729811","caption":"Admin Watch Central dashboard showing Site Health, privileged-user access, active sessions, recent logins and 404 activity."},{"src":"https:\/\/ps.w.org\/adminwatch-central\/assets\/screenshot-2.png?rev=3729811","caption":"Users &amp; Access showing roles, recent login data, password-change visibility, password-strength estimates and supported MFA status."},{"src":"https:\/\/ps.w.org\/adminwatch-central\/assets\/screenshot-3.png?rev=3729811","caption":"Active Sessions using current WordPress session state."},{"src":"https:\/\/ps.w.org\/adminwatch-central\/assets\/screenshot-4.png?rev=3729811","caption":"404 Monitor showing aggregated missing URLs, hit counts and last-seen times."},{"src":"https:\/\/ps.w.org\/adminwatch-central\/assets\/screenshot-5.png?rev=3729811","caption":"Settings for 404 monitoring, retention and privacy controls."},{"src":"https:\/\/ps.w.org\/adminwatch-central\/assets\/screenshot-6.png?rev=3729811","caption":"About &amp; Support with product, developer, privacy and support information."}],"raw_content":"<!--section=description-->\n<p>Admin Watch Central gives WordPress administrators a clear view of who can make meaningful changes to a site. Review privileged-user access, recent logins, current sessions, password-change visibility, supported MFA status, Site Health, aggregated 404 activity and a lightweight Site Activity history. All Admin Watch Central screens require the existing WordPress <code>manage_options<\/code> capability.<\/p>\n\n<h3>Key Features<\/h3>\n\n<ul>\n<li>Privileged-user access visibility for roles that can make meaningful website changes.<\/li>\n<li>Latest successful login visibility after installation.<\/li>\n<li>A dedicated, searchable and paginated Active Sessions screen for eligible users.<\/li>\n<li>Lightweight Site Activity for successful logins, explicit logouts, grouped failed logins, user creation\/deletion, role and password changes, content changes, plugin\/theme activity, WordPress core updates and Admin Watch Central settings changes.<\/li>\n<li>Site Activity category, user and date filters, search, pagination and a five-item Dashboard preview.<\/li>\n<li>Site Activity recording and failed-login switches, 7\/30\/90-day retention and a confirmed clear-log control.<\/li>\n<li>Observed password-change dates and local password-strength estimates.<\/li>\n<li>Supported MFA status visibility without collecting MFA secrets.<\/li>\n<li>Site Health summary with a link to WordPress's native Site Health screen.<\/li>\n<li>Aggregated 404 monitoring with accurate daily and seven-day request totals.<\/li>\n<li>Privacy-conscious local operation with no telemetry, IP collection or password copies, and WordPress personal-data export\/erasure integration.<\/li>\n<\/ul>\n\n<p>404 request totals are maintained as small daily aggregates, so the Dashboard's today and seven-day totals remain accurate without retaining individual requests.<\/p>\n\n<p>Login and password-change metadata is recorded only after Admin Watch Central observes the relevant event. MFA status is available only for supported authentication providers and may show \u201cNot detected\u201d when status cannot be reliably determined. Active Session counts are read from current WordPress core session state for eligible users and are not stored by Admin Watch Central.<\/p>\n\n<p>Site Activity begins when recording is enabled; existing login\/password timestamps are not backfilled into history. It stores known event types, user IDs, object references, bounded labels, UTC timestamps and allow-listed metadata. Account names are resolved from current WordPress accounts rather than copied into history. Failed attempts can retain a bounded attempted username or email address and are counted in 15-minute buckets, with at most 100 named groups plus an unnamed overflow group per bucket. Oversized identifiers and identifiers that are literal IP addresses are not retained. Retention defaults to 30 days, accepts only 7, 30 or 90 days, and uses daily WordPress Cron cleanup. Disabling recording preserves retained history until cleanup, erasure or a confirmed clear operation.<\/p>\n\n<p>Admin Watch Central does not create or store copies of passwords, password hashes or password history. Free does not collect, store, display, hash or anonymize IP addresses. It does not retain session tokens, session metadata, cookies, browser\/device history, request bodies, content snapshots, MFA secrets, referrers or telemetry. There are no external services, alerts, session-control actions, exports\/reports or redirect tools. WordPress's native privacy tools can export and erase this plugin's account metadata and retained activity linked to an account ID or its current failed-login username\/email identifier, without deleting the account. Advanced monitoring, actions, policies, reports and extended retention remain separate Pro planning.<\/p>\n\n<p>Site Activity is a lightweight operational history, not a forensic audit log. It observes supported native WordPress hooks; direct file\/database changes, expired session cookies, revisions, autosaves and metadata-only content changes are not treated as activity. Current valid sessions do not indicate real-time online presence. Network-wide multisite management is not supported.<\/p>\n\n<!--section=installation-->\n<ol>\n<li>Upload the <code>adminwatch-central<\/code> folder to <code>\/wp-content\/plugins\/<\/code> or install it through WordPress.<\/li>\n<li>Activate Admin Watch Central through the Plugins screen.<\/li>\n<li>Open Admin Watch Central from the administrator menu.<\/li>\n<\/ol>\n\n<!--section=faq-->\n<dl>\n<dt id=\"why%20does%20a%20user%20say%20%E2%80%9Cnot%20recorded%20yet%E2%80%9D%3F\"><h3>Why does a user say \u201cNot recorded yet\u201d?<\/h3><\/dt>\n<dd><p>Admin Watch Central only records successful logins after it is installed. It does not guess historic login activity.<\/p><\/dd>\n<dt id=\"does%20deactivation%20delete%20data%3F\"><h3>Does deactivation delete data?<\/h3><\/dt>\n<dd><p>No. Data is retained on deactivation. The optional delete-on-uninstall setting controls deletion when the plugin is removed.<\/p><\/dd>\n<dt id=\"does%20admin%20watch%20central%20monitor%20wordpress%20logins%3F\"><h3>Does Admin Watch Central monitor WordPress logins?<\/h3><\/dt>\n<dd><p>It records the latest successful login after observing WordPress's successful-login hook. When Site Activity is enabled, known login\/logout events are also retained within the configured activity retention period. Nothing is inferred about earlier activity.<\/p><\/dd>\n<dt id=\"can%20i%20see%20active%20wordpress%20sessions%3F\"><h3>Can I see active WordPress sessions?<\/h3><\/dt>\n<dd><p>Yes. The dedicated Active Sessions screen reads current valid WordPress sessions for privileged users, with search, role filtering and pagination. It does not store session details or provide session termination, IP, device or browser tracking.<\/p><\/dd>\n<dt id=\"does%20admin%20watch%20central%20store%20passwords%3F\"><h3>Does Admin Watch Central store passwords?<\/h3><\/dt>\n<dd><p>No. It stores only an observed password-change date and a local strength estimate when a password is changed.<\/p><\/dd>\n<dt id=\"does%20admin%20watch%20central%20record%20ip%20addresses%3F\"><h3>Does Admin Watch Central record IP addresses?<\/h3><\/dt>\n<dd><p>No. Free does not collect or persist IP addresses in any form, for any event.<\/p><\/dd>\n<dt id=\"how%20do%20i%20control%20site%20activity%20data%3F\"><h3>How do I control Site Activity data?<\/h3><\/dt>\n<dd><p>Settings can disable all activity recording, disable grouped failed-login recording, choose 7, 30 or 90 days of retention, or clear retained Site Activity with an explicit confirmation. Clearing activity does not delete latest account metadata or 404 data. Deactivation preserves data. Delete-on-uninstall applies to all Admin Watch Central settings, account metadata and tables.<\/p><\/dd>\n<dt id=\"does%20admin%20watch%20central%20send%20data%20to%20web%20studio%20wa%3F\"><h3>Does Admin Watch Central send data to Web Studio WA?<\/h3><\/dt>\n<dd><p>No. Admin Watch Central works locally within WordPress and does not send telemetry to Web Studio WA.<\/p><\/dd>\n\n<\/dl>\n\n<!--section=changelog-->\n<h4>1.1.0<\/h4>\n\n<ul>\n<li>Added a dedicated, searchable and paginated Active Sessions screen.<\/li>\n<li>Added lightweight Site Activity with category, user and date filters, search and pagination.<\/li>\n<li>Added Dashboard Recent Activity and user-specific activity links.<\/li>\n<li>Added bounded failed-login aggregation without IP addresses.<\/li>\n<li>Added activity recording controls, 7\/30\/90-day retention and confirmed log clearing.<\/li>\n<li>Added monitoring for supported user, content, plugin, theme and confirmed automatic WordPress update events.<\/li>\n<li>Improved role-change activity accuracy and compatibility with WordPress admin notices.<\/li>\n<li>Extended WordPress privacy tools and optional uninstall cleanup to Site Activity.<\/li>\n<li>Preserved existing account metadata, 404 data and the administrator access model during upgrades.<\/li>\n<\/ul>\n\n<h4>1.0.2<\/h4>\n\n<ul>\n<li>Refined the Admin Watch Central product name for clearer presentation.<\/li>\n<li>Improved compatibility with third-party WordPress admin notices.<\/li>\n<li>Improved WordPress.org listing copy and discovery metadata.<\/li>\n<\/ul>\n\n<h4>1.0.1<\/h4>\n\n<ul>\n<li>Moved the Admin Watch Central admin menu higher for easier access.<\/li>\n<\/ul>\n\n<h4>1.0.0<\/h4>\n\n<ul>\n<li>Initial release.<\/li>\n<\/ul>","raw_excerpt":"Review privileged access, active sessions, Site Activity, Site Health and 404 errors from one WordPress dashboard.","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin\/379174","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin"}],"about":[{"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/types\/plugin"}],"replies":[{"embeddable":true,"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/comments?post=379174"}],"author":[{"embeddable":true,"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wporg\/v1\/users\/webstudiowadev"}],"wp:attachment":[{"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/media?parent=379174"}],"wp:term":[{"taxonomy":"plugin_section","embeddable":true,"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_section?post=379174"},{"taxonomy":"plugin_tags","embeddable":true,"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_tags?post=379174"},{"taxonomy":"plugin_category","embeddable":true,"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_category?post=379174"},{"taxonomy":"plugin_contributors","embeddable":true,"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_contributors?post=379174"},{"taxonomy":"plugin_business_model","embeddable":true,"href":"https:\/\/wol.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_business_model?post=379174"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}