WordPress One-Time Login Link: Simple Setup That Expires,
Sometimes you need to give someone access to a protected page. But sending a password is not always the right move. Passwords can be forwarded, reused, or shared without your knowledge. A WordPress one-time login link solves this problem in a different way. It creates a special URL that opens your protected content once, then expires on its own.

This approach works well for welcome emails, VIP content, or client previews. The recipient clicks the link and lands directly on the page. There is no password form and nothing to copy or paste. In this guide, you will learn how to create a WordPress one-time login link. We will use the Password Protect WordPress Pro plugin for the full setup. You will also learn how to verify that the link really stops working after one use.
🔐 What Is a WordPress One-Time Login Link?
A WordPress one-time login link is a special URL tied to a password-protected page. Anyone who opens the page through that link gets in directly. No password is required. After the first use, the link expires automatically.
Here is how it works behind the scenes. The link is connected to a password with a usage limit. When you set that limit to 1, the password works exactly once. The quick access link inherits the same rule. Once someone uses it, both the password and the link stop working.
That means you keep control over your protected content at all times. If the link leaks or gets forwarded, it is already useless. The next visitor sees the standard password form instead.
The link is also tied to the underlying password protection itself. If you delete or change that password, the link becomes invalid right away. In other words, you can revoke access even after sending the link out. This gives you a level of control that shared passwords cannot match.
📄 When Should You Use a WordPress One-Time Login Link?
A WordPress one-time login link makes sense whenever password sharing creates friction or risk. Some scenarios come up again and again for WordPress site owners. Here are the most common ones, drawn from real use cases.
Welcome emails for new subscribers. Instead of sending both a password and a link, you include one access link. New subscribers click straight through to your content. There is nothing to copy and paste, and nothing to lose in their inbox.
Exclusive event access. For VIP-only events or special announcements, single-use links feel more personal. Each recipient gets access that cannot be passed along to others. This keeps your exclusive content genuinely exclusive.
Client previews. If you show work-in-progress pages to clients, access links remove a common annoyance. Clients view the page without remembering credentials. When the review is done, the link is already expired.
Frequent access to premium content. Subscribers who visit protected pages often can skip repeated password entry. You maintain security while improving their experience. Fresh links can be generated whenever needed.
In each case, the goal is the same. You want someone in, once, without handing over a reusable secret. That is exactly what a WordPress one-time login link delivers.
🔗 How Do You Create a WordPress One-Time Login Link?
You create a WordPress one-time login link in three stages. First, protect the page with a password. Second, set the usage limit to 1. Third, copy the quick access link and share it. The whole process takes place inside your WordPress dashboard.
Before you start, install and activate the plugin. You need both the Lite version from WordPress.org and the Pro version. Once both are active, the password protection options appear in your Pages and Posts lists.
How Do You Password Protect the Page?
Go to the page or post you want to protect. Open it in an incognito window first. You will notice anyone can access it. To lock it down, click Password Protect under the Password Protection column.
In the pop-up window, click Password Protect this page. The plugin automatically generates a strong password for that content. From this moment, visitors see a password form instead of the page.
This first stage is the foundation of the whole setup. The access link you create later depends on this password protection. Without it, there is nothing for the link to bypass.
How Do You Set the Usage Limit to 1?
Now configure the one-time setting. In the same password pop-up, hover over the Action column. Click Edit, set the Usage Limit to 1, and click Save. This limits the password, and its access link, to a single use.
Next, find the Access Link icon in that same column. Click it to copy the quick access link for your protected content. This is the URL you share with your intended recipient.
The Usage Limit field accepts more than one option:
- Set it to 1 – the link works exactly once.
- Enter a higher number – the link allows that many visits.
- Leave it blank – unlimited password usage.
How Do You Test That the Link Expires?
Testing takes less than a minute. Open the link in an incognito window. The content loads right away, with no password form. This confirms the access link works as expected.
Now go back to the Password Protect tab and refresh it. You will see the link has already expired. If someone tries to use it again, they will be asked for the password instead. Your WordPress one-time login link did its job and retired itself.
This quick test is worth doing before you send any link to a real recipient. It confirms the usage limit is active. It also shows you exactly what the recipient will experience on their end. Once verified, your WordPress one-time login link is ready to share.
⚙️ Can You Use Your Own Password Instead?
Yes. The plugin also lets you create a custom password with the same one-time behavior. This gives you full control over the password value, its usage limit, and its expiration date.
Switch to the New Password tab in the password pop-up. Enter your password in the New Password field. Set the Usage Limit to 1 for the same one-time effect. You can also set a Password Expiry date. The password then stops working after a certain time. Leave it blank for no expiry.
The expiry date adds a second layer of control on top of the usage limit. Even if nobody clicks the link, it stops working after the chosen date. This is useful for time-sensitive content like event pages or limited previews.
Click Submit to save your settings. Your custom password now has its own quick access link, ready to share. Open it in an incognito window and the content loads right away. Refresh the Password Protect tab afterwards. The link shows as expired and will not work a second time.
Both approaches deliver the same result: a working WordPress one-time login link. The automatic method is faster. The custom method adds an expiration date and your own password value. Pick the one that matches your workflow. For more configuration details, check the PPWP documentation.
❓ Frequently Asked Questions
What is a WordPress one-time login link?
It is a special URL that opens a password-protected page once, then expires automatically.
Does the link work after it expires?
No. Once used, the link stops working. Visitors see the standard password form instead.
Do I need both the Lite and Pro versions of the plugin?
Yes. Install and activate both versions to access the quick access link and usage limit features.
Can the link allow more than one use?
Yes. Set the Usage Limit to any number, or leave it blank for unlimited password usage.
Can I set my own password for a WordPress one-time login link?
Yes. Use the New Password tab to create a custom password with its own usage limit.
Can the password expire on a specific date?
Yes. Set a Password Expiry date, or leave the field blank for no expiration.
What happens if I change the underlying password?
The access link tied to that password becomes invalid, which lets you revoke access at any time.
A WordPress one-time login link gives you a clean way to share protected content. There is no password to send and nothing left behind after use. Set the usage limit to 1, copy the access link, and share it with confidence. Your protected page stays protected, before and after the visit.