This plugin simply disables only the XML-RPC API Pingback Methods used by hackers on a WordPress site, providing an easy and simple way to disable/ena …
As of April 2026, Simple XML-RPC Pingback Disabler is a WordPress rpc plugin with 10 active installations and a 0/5 rating0. It has been downloaded 1.1K+ times in total. Requires WordPress 4.8+ and PHP 5.6+. Available on WordPress.org since 2020. Last updated 4 years ago — may have compatibility concerns. Top alternative: Disable XML-RPC Pingback.
XML-RPC is a remote procedure call (RPC) protocol, a feature included in WordPress, which enables data to be transmitted. It uses HTTP as the transport mechanism, and XML to encode its calls.
Unless you use remote technologies and mobile applications to update your WordPress site, you might not be familiar with XML-RPC. For the uninitiated, you can use xmlrpc.php to establish a remote connection to WordPress, and make updates to your site without directly logging in to your WordPress system.
XML-RPC is indeed useful for enabling remote connections between various external applications and WordPress. On the other hand, disabling this feature can help improve your site’s security.
The problem is that xmlrpc.php poses a security risk. It…
| WordPress | 4.8+ requiredTested up to 5.7.15 |
| PHP | 5.6+ required |
Plugin data sourced from WordPress.org. Analysis and metrics by PluginSift.