=== HMDIA Login & Registration ===
Contributors: hmdiateam
Tags: login, registration, magic link, email otp, captcha
Requires at least: 6.4
Requires PHP: 7.4
Tested up to: 7.1.2
Stable tag: 2.0.90
License: GPLv2 or later
License URI: https://www.gnu.org/licenses/gpl-2.0.html

Create custom login, registration, password reset and account pages with flexible designs, email verification and spam protection.

== Description ==

HMDIA Login & Registration helps you create a sign-in and account experience that fits your site. Design login, registration, password reset and account pages; customize forms and emails; and verify new users with an email code or magic link. Built-in spam protection, optional CAPTCHA, redirects and page access controls give you more control while using WordPress user accounts.

The free plugin works on its own. Optional Pro adds advanced login and registration fields, two-factor authentication, passkeys and session tools. Separate add-ons extend traffic security, content submission and support.

= Free features =

* Login, registration, password reset and account pages.
* Customizable forms, emails and design controls, with a setup wizard.
* Optional email code or magic link verification for registrations.
* Password rules, redirects and selected-page access controls.
* Built-in honeypot; optional Google reCAPTCHA v3 or Cloudflare Turnstile.
* Contact forms with configurable fields, saved submissions and email notifications.

= Pro features =

* Two-factor authentication using an authenticator app, email, or SMS.
* Passkeys and recovery codes.
* Temporary Login Access.
* Advanced session management.
* Force User Logout
* Role-based redirects.
* Advanced login and registration fields.
* Additional account and registration options.

= Optional add-ons =

* HMDIA Traffic & IP Security: visitor analytics, sign-in activity and IP rules.
* HMDIA Post Submission: frontend content-submission forms.

These are separate plugins. The free plugin works without them. [Explore Pro and add-ons](https://hmdia.com/wp-login-registration/).

== External services ==

* Google reCAPTCHA v3: Optional spam checks send visitor IP and browser data to Google; verification also sends the challenge token and secret key. Service · Terms · Privacy
* Cloudflare Turnstile: Optional spam checks send visitor IP and browser data to Cloudflare; verification also sends the challenge token and secret key. Service · Terms · Privacy
* Twilio SMS (optional Pro add-on): When enabled, SMS delivery sends phone numbers, security-code messages and credentials to Twilio. Connection tests send credentials; SMS may incur charges. Service · Terms · Privacy
CAPTCHA may also run for suspicious sign-ins when the optional Traffic & IP Security add-on is configured.


== Installation ==

1. Install and activate HMDIA Login & Registration in WordPress.
2. Use the optional Setup Wizard or configure pages and forms in the plugin settings.
3. If purchased, install and activate the separate Pro add-on after Core.

== Frequently Asked Questions ==

= Does this replace WordPress users? =

No. It uses WordPress user accounts and authentication.

= Do I need Pro or CAPTCHA keys? =

No. Free features work without Pro. The honeypot requires no key; Google reCAPTCHA v3 and Cloudflare Turnstile are optional.

= Does uninstall delete my users or data? =

Uninstall cleanup is opt-in. Regular WordPress users are preserved. Separately enabling page cleanup can move verified plugin-created pages to Trash; deactivation does not delete them.


== Changelog ==

= 2.0.90 =
* Fixed an issue that prevented the Save button from appearing after editing Design Templates.

= 2.0.89 =
* Initial WordPress.org release.
* Explain when a security plugin blocks the new session after a password change; discard the rejected session token.
