Skip to content
ludicrousThe web development desk
Security & Ops

Security & Ops

Updates, credentials, logs and backups: the unglamorous work that decides how bad a bad day gets.

Security & OpsTwo-Factor for WordPress Admins Without Locking Yourself Out

WordPress administrator accounts cannot rely on a single defensive boundary when authentication spans both browser sessions and machine-to-machine interfaces.

Security & Ops currently holds 12 pages. They are dated 2007 to 2026. Nothing is filed here because it was popular. A page joins this section when it answers a question that came up while something was actually being built.

Every version, date and default quoted in this section is carried over from published documentation. None of it is estimated, and none of it is refreshed to look current. What this section does not do: rank tools against each other, publish sponsored recommendations, or update an old page’s figures so it reads as new.

Order here is chronological, most recent first. A page does not move up because it is being read more; it moves only when something newer is published. That makes the foot of the list the oldest material on the subject, which is worth knowing before you follow a setting or a command from it into a current install. The most recent of them is Two-Factor for WordPress Admins Without Locking Yourself Out, published 2026-09-29.

Everything in Security & Ops

Front page