Some links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.
To make selected WordPress content available only to registered users, enable user registration, create accounts with the least-privileged role they need, and apply a restriction rule that checks whether a visitor is logged in. Use role or capability rules when groups need different access, and membership rules when access is tied to a paid plan. WordPress’s built-in Private setting is usually for users who can edit private content, while Password Protected uses one shared password rather than individual accounts.
Choose the access model first
The correct method depends on who should be allowed in and why.
| # | Preview | Product | Price | |
|---|---|---|---|---|
| 1 |
|
Top tools to use for your WordPress membership Website. : Membership plugins | $5.99 | Buy on Amazon |
| 2 |
|
WishList Member Plugin Owner's Guide (Making Money With WordPress) | $6.99 | Buy on Amazon |
| 3 |
|
Million-Dollar Membership Site | $1.29 | Buy on Amazon |
| Requirement | Suitable approach | Important limitation |
|---|---|---|
| Only users with editing access should see a post or page | WordPress Private visibility | It is not ordinary subscriber-only access; users who can edit private posts may also change or publish them. |
| Any authenticated account should see selected content | Login-state restriction plugin | Confirm which account roles are included and configure registration and login separately. |
| Different groups need different content | Role- or capability-based rules | Your roles and capabilities must match the authorization you intend to grant. |
| Access is sold as a subscription or tier | Membership rules | Create the memberships and define what each level can access, including what unauthorized visitors see. |
| Only part of a page should be members-only | Protected block or partial-content rule | Check the block’s front-end output in the active theme and editor. |
| Downloads or media must be private | URI/file protection with the required server configuration | Hiding a link or embedding protected media does not necessarily protect the original file URL. |
Configure registration and least-privilege accounts
Enable registration
- In the WordPress dashboard, open Settings > General.
- Enable Anyone can register.
- Set New User Default Role to the lowest role that can use the protected content, commonly Subscriber. Do not make members Editors or Administrators merely to make private content visible.
- Save the changes and decide how users will receive login details and reset forgotten passwords.
WordPress’s visibility documentation explains that private content is shown only to logged-in users with the necessary editing permission. Users who can edit a private post may be able to modify it or make it public, so the built-in setting is a poor fit for a general registered-member area. See WordPress content visibility documentation.
Quick wins for a faster PC:
Fix the driver behind crashes, sound loss and screen glitchesFind Drivers →Clear out junk files and repair common Windows errorsFree Scan →Apply a login or role restriction
Whole posts and pages
A restriction plugin can add a control to the post or page editor that allows content for logged-in users, selected roles, or selected capabilities. For a simple “any registered user” area, choose a login-state condition. For staff, customers, or other groups, choose a role or capability condition instead. The WordPress.org Restrict plugin documents login and user-access restrictions.
Membership products and tiers
If registration alone is not enough—for example, annual, monthly, or tiered paid access—use membership rules. MemberPress describes rules that protect individual content, groups of content, and content assigned to a membership level. Its documentation is at Protect Content With MemberPress and Rules Overview. Configure both the allowed membership and the response for visitors who do not qualify.
Only a section of a page
For a public article with a members-only section, use a protected block or conditional-content control rather than hiding the entire page. MemberPress documents protected Gutenberg blocks and a not-logged-in message option at Protect Gutenberg Blocks With MemberPress. Verify the logged-out rendering after publishing, because editor and theme output can affect how a block appears.
Set the visitor experience
Choose what an unauthorized visitor should see: a login form, a short explanation, a registration link, or a redirect to a membership page. Keep the message specific enough to explain the next step without exposing the protected material. Check the selected plugin’s current settings and version because labels and redirect behavior can change.
The Tool Desk
Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →Outbyte Driver Updater FREEFix the driver behind crashes, sound loss and screen glitchesFind Drivers →Test authorization correctly
- Open the protected URL in a private or logged-out browser window. Confirm that the complete protected section is unavailable and that the expected message, form, or redirect appears.
- Sign in with a normal Subscriber-level test account. Confirm that allowed content appears and that restricted roles remain blocked.
- Test each role or membership level you created, including an expired or unauthorized account if your system supports one.
- Repeat the checks after clearing page and object caches. A cached page must not deliver member-only HTML to logged-out visitors.
- Do not rely on an Administrator session. MemberPress states that its rules are ignored for users with administrative rights, so an admin can make an incorrect rule appear to work.
Protect files, media, and alternate URLs
A page restriction controls the page response; it does not automatically prove that every asset referenced by that page is private. Test the original image, video, PDF, or download URL while logged out. If it still loads, configure the plugin’s URI or file-protection feature and meet its server requirements. MemberPress documents custom URI rules and related server requirements in its Rules Overview.
Rank #3
Kadence Memberships specifically warns that restricting embedded media does not protect the original file URL stored on the server. Review its current documentation at Membership Plugin – Kadence Memberships, then test direct URLs from a separate browser session.
Common mistakes and fixes
- Using Private for subscribers: switch to a login-state restriction rule instead of granting members editing privileges.
- Assuming registration equals authorization: registration only creates an account; the content rule still has to include that account’s role or membership.
- Testing as an administrator: use a non-admin account and a logged-out session.
- Protecting a link but not the file: test the direct URL and add URI/file protection where required.
- Forgetting partial content: protect the actual block or conditional section and inspect the rendered page, not only the editor.
- Leaving roles too powerful: remove editing or publishing capabilities that members do not need.
Recommended setup for a basic registered-user area
- Enable registration and set the default role to Subscriber.
- Install a maintained restriction plugin that supports logged-in conditions.
- Set the selected pages or posts to require a logged-in user.
- Configure a clear login or registration response for logged-out visitors.
- Test with a private browser window and a non-admin account.
- Check every downloadable or embedded asset by its original URL.
The Bottom Line
For ordinary members-only pages, use individual WordPress accounts plus a login-state restriction rule, not the built-in Private setting. Add role, capability, or membership rules only when access differs between users, and always test with a non-admin account and direct file URLs.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.
Recommended Free Tools

