=== Marketingbende Tiny Fix: Disable XML-RPC Authentication ===
Contributors: marketingbende
Tags: xmlrpc, authentication, security
Requires at least: 5.0
Tested up to: 6.9
Requires PHP: 7.4
Stable tag: 1.0.0
License: GPLv2 or later
License URI: https://www.gnu.org/licenses/gpl-2.0.html

Blocks username and password authentication attempts made through WordPress XML-RPC.

== Description ==

Marketingbende Tiny Fix: Disable XML-RPC Authentication is a small, single-purpose WordPress plugin. Activate it and the fix is applied immediately.

* Disable XML-RPC Authentication: Blocks username and password authentication attempts made through WordPress XML-RPC.

The free WordPress.org plugin is fully functional without a license key, account, payment, or external service.

== Optional Pro Add-on ==

An optional Pro add-on may be available separately outside WordPress.org for EUR 1 as a one-time lifetime unlock. It is not required for the free fix to work.

* Disable XML-RPC Authentication: Standalone Pro package for Disable XML-RPC Authentication: installs independently, includes the working fix, reports Pro status to the free plugin when present, and adds an admin control to pause the Pro fix without uninstalling.

Support, setup help, consulting, and custom compatibility work are not included.

== Installation ==

1. Upload this plugin folder to the /wp-content/plugins/ directory, or upload the ZIP through Plugins > Add New > Upload Plugin.
2. Activate the plugin through the Plugins screen.
3. Deactivate the plugin to revert its behavior.

== Risk Notes ==

* Disable XML-RPC Authentication: Medium. Legacy apps that log in through XML-RPC will stop working.

== Changelog ==

= 1.0.0 =
* Initial generated version.
