Description
BAAR MFA is a powerful and easy-to-use WordPress plugin to enforce multi-factor authentication for users. Whether you are securing a blog, e-commerce site, or client portal — BAAR MFA makes it effortless to protect your users and data.
Key Features:
– 🔐 TOTP via BAAR Authenticator App (Free)
– ❓ Security Questions (Knowledge-Based Authentication)(Free)
– 🛟 Recovery Codes (For fallback access)(Free)
– ⚙️ Fully customizable settings and email templates(Free)
– 📊 Built-in Reports for user activity and MFA status (Free)
– 📩 OTP via Email (Requires SMTP) (Premium)
– 🔔 Push Notifications via BAAR App (Premium)
– 🎨 White Label Branding (Premium)
– 🧑💼 Role-based and user-specific enforcement(Premium)
The plugin supports TOTP registration with BAAR IGA Authenticator App available in Google Play Store and Apple App Store
In this version, users can configure up to 5 users through the BAAR IGA app.
External Services
This plugin connects to the following external services:
https://pushnotifications.baariga.com — Used for:
-
QR code generation for TOTP setup.
-
TOTP verification during login.
-
Tenant creation and management for handling MFA data.
Upon installation, the plugin sends the site name and user email address to pushnotifications.baariga.com for registration with BAAR Cloud. This is required to generate the QR Code for MFA setup.
Additionally, the plugin includes a support form accessible via the Support tab. This form connects to https://stage-store.baarconnect.com/contact-form-external to facilitate assistance and respond to user queries related to the plugin.
All API communication is performed securely over HTTPS. No sensitive user data beyond the required authentication-related data. These external services are essential for providing the MFA functionalities and licensing validation.
Privacy Policy
This plugin communicates with the BAAR Cloud service to generate MFA QR codes. As part of the registration process, it transmits the WordPress site name (used as tenant name) and the administrator’s email address to BAAR Cloud servers. This happens only if the users gives consent to register.
No other personal data is collected or stored by this plugin.
For more details, please review our full privacy policy:
https://store.baar.ai/privacy-policy
Terms and Conditions
By using this plugin and its associated cloud services, you agree to the following:
- Terms of Use: https://store.baar.ai/terms-and-condition
Plugin Store – The Best Plugin Management SaaS
Screenshots
Installation
-
Upload the plugin folder to the /wp-content/plugins/ directory or install from the WordPress plugin repository.
-
Activate the plugin through the ‘Plugins’ menu in WordPress.
-
On first activation, the setup wizard will guide you to configure MFA settings.
-
You’re ready to go!
FAQ
-
Does the plugin work without configuring SMTP?
-
No. For sending recovery codes via Email, make sure your site is configured with SMTP to deliver emails.
-
What happens if a user loses access to their primary MFA method?
-
They can use one-time Recovery Codes (generated after TOTP setup) to log in and reconfigure their method.
-
Can I limit MFA setup to specific user roles only?
-
Yes. You can choose to enforce MFA for all users, no users, or only specific roles or individual users from the settings tab.
-
What happens when the grace period expires and a user hasn’t set up MFA?
-
Access will be restricted based on your selected action — either block the user completely or limit dashboard access until MFA is configured.
-
Can users select their preferred MFA method?
-
Yes. In the Premium version, users can override the admin-enforced method and choose their preferred MFA option from their profile settings.
-
Is it possible to turn off MFA for individual users?
-
Yes. Users can opt out if the admin allows it in the settings. This feature is available in the Premium version.
-
What MFA methods are supported?
-
TOTP (via BAAR Authenticator App), Push Notification (Premium), OTP via Email(Premium), and Security Questions. More methods are coming soon.
Reviews
There are no reviews for this plugin.
Contributors & Developers
“BAAR MFA” is open source software. The following people have contributed to this plugin.
ContributorsTranslate “BAAR MFA” into your language.
Interested in development?
Browse the code, check out the SVN repository, or subscribe to the development log by RSS.
Changelog
1.0.0
- Initial release of BAAR MFA plugin.






