Cypress North Password Policy
by cypressnorth 0 (0 reviews)

Cypress North Password Policy

NIST-aligned password policy with HIBP breach checking, layered failed-login lockout, and an audit log.

Cypress North Password Policy ranks #58,706 among WordPress.org plugins with 0+ active installations, is #3,612 of 4,596 in the Security category, and was last updated Sep 1, 2026. Data from WordPress.org, refreshed twice daily — see methodology.

Compatible with WP 7.1.2
v1.0.1 Current Version v1.0.1
Updated 3 weeks ago Last Update on 01 Sep, 2026
Refreshed 14 hours ago Last Refreshed on
#3,612 of 4,596 in Security Actively maintained
View on WordPress.org
Rank
#58,706
No change
Active Installs
0+
-100%
KW Avg Position
19
2 worse
Downloads
199
+2 today
Support Resolved
0%
No change
Rating
0%
Review 0 out of 5
0 (0 reviews)

Next Milestone 10

Total Progress 20%
0+ 10+
38,966
Ranks to Climb
-
Growth Needed
8,000,000
Active Installs
Pro

Unlock Exact Install Count

See the precise estimated active installs for this plugin, calculated from real-time ranking data.

  • Exact install estimates within tiers
  • Track install growth over time
  • Milestone progress predictions
Upgrade to Pro
Need 8 more installs to reach 10+

Rank Changes

49,188 54,121 59,054 63,986 68,919 16-09-2026 17-09-2026 18-09-2026 19-09-2026 20-09-2026 21-09-2026 22-09-2026 23-09-2026
49,188 54,121 59,054 63,986 68,919 08-09-2026 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026 17-09-2026 18-09-2026 19-09-2026 20-09-2026 21-09-2026 22-09-2026 23-09-2026
Current #58,706
Change
Best #

Upgrade to Pro

Unlock 30-day and 90-day rank history charts with a Pro subscription.

Upgrade Now

Active Installs Growth

Active Installs 0,000,000+
Growth +0.0%
Peak 0,000,000

Downloads Growth

0 10 16-09-2026 17-09-2026 18-09-2026 19-09-2026 20-09-2026 21-09-2026 22-09-2026 23-09-2026
0 10 08-09-2026 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026 17-09-2026 18-09-2026 19-09-2026 20-09-2026 21-09-2026 22-09-2026 23-09-2026
Downloads
Growth
Peak

Upgrade to Pro

Unlock 30-day, 90-day, and yearly download history charts with a Pro subscription.

Upgrade Now

Reviews & Ratings

0.0
0 reviews
Overall 0%
5
0 (0%)
4
0 (0%)
3
0 (0%)
2
0 (0%)
1
0 (0%)

Frequently Asked Questions

Common questions about Cypress North Password Policy

No. WordPress core stores password hashes; this plugin stores additional one-way hashes of prior passwords for the password-history check, computed with the same wp_hash_password function core uses. No plaintext is persisted.
No. The Have I Been Pwned check uses k-anonymity: the plugin sends only the first five characters of the SHA-1 hash of the password to api.pwnedpasswords.com, and matches the returned suffix list locally. The plaintext never leaves your site. If the HIBP API is unreachable, the rule fails open so password changes are not blocked by an outage.
No. WordPress's strength meter continues to work as before. This plugin enforces its rules at form submission rather than redrawing the meter.
No. 2FA is a separate concern and is handled by purpose-built plugins. This plugin focuses strictly on password strength, lockout, and the surrounding compliance flows.
When a threshold is crossed, the user receives the same generic "invalid credentials" error that any other failed login produces — the locked state is deliberately not disclosed. Admins unlock locked IPs or usernames from Settings → Password Policy → Tools, or via WP-CLI.
Yes, one: wp cnpp unlock --ip=<ip> and/or --user=<id-or-login> releases an active lockout and clears the failed-attempts counter for the supplied identifier. Both flags can be combined in one invocation. A broader CLI surface (stats, settings export, log query) is on the roadmap for a future release.
Not in 1.0. Both plugins use their own registration and password-change paths that don't fire the core WordPress filters this plugin hooks into. Explicit integration is planned for 2.0.
A POT template ships in languages/cn-password-policy.pot. Once the plugin is listed on WordPress.org, translations are accepted via translate.wordpress.org. The plugin declares Text Domain: cn-password-policy and Domain Path: /languages so WordPress's translation loader picks up .mo files automatically.

Sign In / Register

You need to sign in or register to use this feature.