{"id":10764,"date":"2026-06-23T09:26:07","date_gmt":"2026-06-23T07:26:07","guid":{"rendered":"https:\/\/mybox.com\/help\/?post_type=manual_kb&#038;p=10764"},"modified":"2026-06-23T09:26:08","modified_gmt":"2026-06-23T07:26:08","slug":"how-to-check-recent-logins-in-wordpress","status":"publish","type":"manual_kb","link":"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/","title":{"rendered":"How to check recent logins in WordPress"},"content":{"rendered":"\n<div class=\"translation-block translation-block-merged\">\n<p class=\"wp-block-paragraph\">WordPress does not include a full login history screen by default. This means you can manage users from the WordPress admin area, but you cannot automatically see a complete list of recent successful and failed login attempts.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Checking recent logins is useful when you want to confirm who accessed the website, investigate unexpected activity, or review whether an administrator account was used recently.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 ez-toc-wrap-left counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<span class=\"ez-toc-title-toggle\"><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/#Why_login_history_is_not_visible_by_default\" >Why login history is not visible by default<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/#Check_recent_logins_with_a_WordPress_plugin\" >Check recent logins with a WordPress plugin<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/#What_login_records_can_show\" >What login records can show<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/#Check_active_sessions_in_WordPress\" >Check active sessions in WordPress<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/#Check_server_access_logs\" >Check server access logs<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/#Successful_logins_vs_failed_login_attempts\" >Successful logins vs. failed login attempts<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-7\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/#What_to_do_if_you_notice_suspicious_login_activity\" >What to do if you notice suspicious login activity<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-8\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/#Practical_notes\" >Practical notes<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-9\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-check-recent-logins-in-wordpress\/#Summary\" >Summary<\/a><\/li><\/ul><\/nav><\/div>\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Why_login_history_is_not_visible_by_default\"><\/span>Why login history is not visible by default<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<\/div>\n\n<div id=\"mybox-1553003884\" class=\"mybox-content mybox-entity-placement\"><div class=\"early-access-banner-inpost\">\r\n  <div class=\"banner-left-inpost\">\r\n    <div class=\"icon-box-inpost\">\r\n      <img decoding=\"async\" src=\"https:\/\/mybox.com\/help\/wp-content\/uploads\/2026\/02\/square-info-icon.svg\" alt=\"Info\">\r\n    <\/div>\r\n    <div class=\"text-box-inpost\">\r\n      <span class=\"label-inpost\"><span class=\"translation-block translation-block-banner-text\">Early access<\/span><\/span>\r\n      <h4><span class=\"translation-block translation-block-banner-text\">Still need help?<\/span><\/h4>\r\n      <p><span class=\"translation-block translation-block-banner-text\">Contact our customer service team.<\/span><\/p>\r\n    <\/div>\r\n  <\/div>\r\n\r\n  <div class=\"banner-right-inpost\">\r\n    <a href=\"https:\/\/panel.mybox.com\/helpdesk2\/v\/list\/\" class=\"banner-button-inpost\"><span class=\"translation-block translation-block-banner-text\">Message us<\/span><\/a>\r\n  <\/div>\r\n<\/div><\/div>\n\n<div class=\"translation-block translation-block-merged\"><p class=\"wp-block-paragraph\">WordPress creates a user session when someone logs in with valid account details. The user can then access the website based on their assigned role, such as Administrator, Editor, Author, or Subscriber.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">However, WordPress does not keep a detailed visible login report in the admin dashboard by default. To review login activity clearly, you usually need to use a plugin or check server logs.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Check_recent_logins_with_a_WordPress_plugin\"><\/span>Check recent logins with a WordPress plugin<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The simplest way to check recent logins is to install an activity log plugin.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">One example is <strong>Simple History<\/strong>, a WordPress plugin that records user activity such as logins, content changes, plugin updates, and other important events inside the website. According to its WordPress.org listing, Simple History tracks user logins and other meaningful WordPress changes.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To use a plugin like Simple History:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Log in to your WordPress admin area.<\/li>\n\n\n\n<li>Go to <strong>Plugins<\/strong>.<\/li>\n\n\n\n<li>Select <strong>Add New Plugin<\/strong>.<\/li>\n\n\n\n<li>Search for <strong>Simple History<\/strong>.<\/li>\n\n\n\n<li>Install the plugin.<\/li>\n\n\n\n<li>Activate the plugin.<\/li>\n\n\n\n<li>Open the plugin\u2019s activity log screen from the WordPress dashboard.<\/li>\n\n\n\n<li>Review recent login entries.<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">Depending on the plugin, login records may include details such as the username, date, time, IP address, and whether the login was successful.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"What_login_records_can_show\"><\/span>What login records can show<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">A login record can help you understand account activity on the website.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">It may show:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>which user account was used<\/li>\n\n\n\n<li>when the login happened<\/li>\n\n\n\n<li>whether the login was successful or failed<\/li>\n\n\n\n<li>which IP address made the request<\/li>\n\n\n\n<li>whether other WordPress changes happened after the login<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">This information is especially useful when more than one person manages the same website.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Check_active_sessions_in_WordPress\"><\/span>Check active sessions in WordPress<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">WordPress also allows administrators to manage active sessions for user accounts.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To check this:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Log in to the WordPress admin area.<\/li>\n\n\n\n<li>Go to <strong>Users<\/strong>.<\/li>\n\n\n\n<li>Open the user account you want to review.<\/li>\n\n\n\n<li>Scroll to the account management section.<\/li>\n\n\n\n<li>Use <strong>Log Out Everywhere Else<\/strong> if you want to close other active sessions for that account.<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">This option does not show a full login history. It only helps you end other currently active sessions.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Check_server_access_logs\"><\/span>Check server access logs<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Server access logs can also help identify login-related activity. These logs record requests made to the website, including requests to the WordPress login page.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In the logs, you can look for requests related to:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><code>\/wp-login.php<\/code><\/li>\n\n\n\n<li><code>\/wp-admin\/<\/code><\/li>\n\n\n\n<li>repeated login attempts<\/li>\n\n\n\n<li>unusual IP addresses<\/li>\n\n\n\n<li>many requests in a short time<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Server logs are more technical than a WordPress plugin. They can show that someone accessed the login page, but they may not always clearly show whether a login was successful.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Successful_logins_vs_failed_login_attempts\"><\/span>Successful logins vs. failed login attempts<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">A successful login means someone entered valid account details and accessed WordPress.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A failed login attempt means someone tried to log in but did not enter valid credentials.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Failed login attempts are common on public WordPress websites. They do not always mean the website has been compromised. Repeated failed attempts from unknown IP addresses may indicate automated login attempts.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"What_to_do_if_you_notice_suspicious_login_activity\"><\/span>What to do if you notice suspicious login activity<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">If you see a login you do not recognize, review the account and recent website activity.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Check whether:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>the user account belongs to someone who should have access<\/li>\n\n\n\n<li>the login time matches expected activity<\/li>\n\n\n\n<li>the IP address is familiar<\/li>\n\n\n\n<li>new administrator accounts were created<\/li>\n\n\n\n<li>plugins or themes were changed<\/li>\n\n\n\n<li>website files were modified<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">If the activity looks unusual, reset administrator passwords, remove unused accounts, and enable two-factor authentication where possible.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Practical_notes\"><\/span>Practical notes<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">A plugin can only show login history from the moment it starts recording activity. If logging was not enabled before an event happened, older login activity may not be available inside WordPress.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For future visibility, keep an activity log plugin active and review it when needed. On busy websites, activity logs can grow over time, so it is useful to keep only the amount of history you actually need.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Summary\"><\/span>Summary<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">WordPress does not show a complete recent login history by default. To check recent logins, use an activity log plugin such as Simple History, review active user sessions, or inspect server access logs. For better account security, keep administrator access limited, remove unused users, and enable two-factor authentication when possible.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n<\/div>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"template":"","format":"standard","manualknowledgebasecat":[10,58],"manual_kb_tag":[1354,3484,4246,4247,4248,4249,4250,190,503,509],"class_list":["post-10764","manual_kb","type-manual_kb","status-publish","format-standard","hentry","manualknowledgebasecat-safety","manualknowledgebasecat-web-applications-cms","manual_kb_tag-access-logs","manual_kb_tag-failed-login-attempts","manual_kb_tag-activity-log","manual_kb_tag-simple-history","manual_kb_tag-successful-logins","manual_kb_tag-server-access-logs","manual_kb_tag-active-sessions","manual_kb_tag-wordpress","manual_kb_tag-recent-logins","manual_kb_tag-login-history"],"_links":{"self":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/10764","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb"}],"about":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/types\/manual_kb"}],"author":[{"embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/users\/1"}],"version-history":[{"count":1,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/10764\/revisions"}],"predecessor-version":[{"id":10765,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/10764\/revisions\/10765"}],"wp:attachment":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/media?parent=10764"}],"wp:term":[{"taxonomy":"manualknowledgebasecat","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manualknowledgebasecat?post=10764"},{"taxonomy":"manual_kb_tag","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb_tag?post=10764"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}