{"id":375836,"date":"2026-10-05T03:08:48","date_gmt":"2026-10-05T03:08:48","guid":{"rendered":"https:\/\/wordpress.org\/plugins\/accountdock-multi-user-login-account-switcher\/"},"modified":"2026-10-05T03:08:35","modified_gmt":"2026-10-05T03:08:35","slug":"yee-account-switcher","status":"publish","type":"plugin","link":"https:\/\/lmo.wordpress.org\/plugins\/yee-account-switcher\/","author":22038057,"comment_status":"closed","ping_status":"closed","template":"","meta":{"version":"1.3.1","stable_tag":"1.3.1","tested":"7.1.3","requires":"6.8","requires_php":"7.4","requires_plugins":null,"header_name":"Yee Multi-User Account Switcher","header_author":"addonsorg","header_description":"Add verified accounts to one browser and switch between their active WordPress sessions.","assets_banners_color":"a73362","last_updated":"2026-10-05 03:08:35","external_support_url":"","external_repository_url":"","donate_link":"","header_plugin_uri":"","header_author_uri":"","rating":0,"author_block_rating":0,"active_installs":0,"downloads":178,"num_ratings":0,"support_threads":0,"support_threads_resolved":0,"author_block_count":0,"sections":["description","installation","faq","changelog"],"tags":{"1.3.1":{"tag":"1.3.1","author":"addonsorg","date":"2026-10-05 03:08:35","revision":3728004}},"upgrade_notice":[],"ratings":[],"assets_icons":{"icon-128x128.png":{"filename":"icon-128x128.png","revision":3728004,"resolution":"128x128","location":"assets","locale":"","width":128,"height":128},"icon-256x256.png":{"filename":"icon-256x256.png","revision":3728004,"resolution":"256x256","location":"assets","locale":"","width":256,"height":256}},"assets_banners":{"banner-1544x500.png":{"filename":"banner-1544x500.png","revision":3728004,"resolution":"1544x500","location":"assets","locale":"","width":1544,"height":500},"banner-772x250.png":{"filename":"banner-772x250.png","revision":3728004,"resolution":"772x250","location":"assets","locale":"","width":772,"height":250}},"assets_blueprints":{},"all_blocks":[],"tagged_versions":["1.3.1"],"block_files":[],"assets_screenshots":{"screenshot-1.png":{"filename":"screenshot-1.png","revision":3728004,"resolution":"1","location":"assets","locale":"","width":1045,"height":863}},"screenshots":{"1":"The toolbar account menu with avatars, the active account, saved accounts, and the add-account action.","2":"The responsive account manager with one account per row.","3":"The standard WordPress login screen used to authenticate an additional account."}},"plugin_section":[],"plugin_tags":[239250,602,6578,3749,286],"plugin_category":[38,45],"plugin_contributors":[234546],"plugin_business_model":[],"class_list":["post-375836","plugin","type-plugin","status-publish","hentry","plugin_tags-account-switcher","plugin_tags-login","plugin_tags-multiple-accounts","plugin_tags-user-switching","plugin_tags-woocommerce","plugin_category-authentication","plugin_category-ecommerce","plugin_contributors-addonsorg","plugin_committers-addonsorg"],"banners":{"banner":"https:\/\/ps.w.org\/yee-account-switcher\/assets\/banner-772x250.png?rev=3728004","banner_2x":"https:\/\/ps.w.org\/yee-account-switcher\/assets\/banner-1544x500.png?rev=3728004","banner_rtl":false,"banner_2x_rtl":false},"icons":{"svg":false,"icon":"https:\/\/ps.w.org\/yee-account-switcher\/assets\/icon-128x128.png?rev=3728004","icon_2x":"https:\/\/ps.w.org\/yee-account-switcher\/assets\/icon-256x256.png?rev=3728004","generated":false},"screenshots":[{"src":"https:\/\/ps.w.org\/yee-account-switcher\/assets\/screenshot-1.png?rev=3728004","caption":"The toolbar account menu with avatars, the active account, saved accounts, and the add-account action."}],"raw_content":"<!--section=description-->\n<p>Account Dock lets a signed-in user add other accounts through the normal WordPress login screen, then switch between those verified sessions from the toolbar or account manager.<\/p>\n\n<p>It is useful for customers, store managers, support teams, editors, administrators, and developers who regularly work with more than one account on the same site.<\/p>\n\n<h4>Main features<\/h4>\n\n<ul>\n<li>Add up to five accounts after each account completes the normal WordPress authentication flow.<\/li>\n<li>Switch directly from the WordPress toolbar with an avatar, display name, username, and active-account indicator.<\/li>\n<li>Return to the same path and query string after switching from the toolbar.<\/li>\n<li>Manage accounts on a responsive account page with clear switch and remove actions.<\/li>\n<li>Use the <code>[account_dock]<\/code> shortcode to display a link to the account manager.<\/li>\n<li>Show a Manage accounts link on the WooCommerce My Account dashboard when WooCommerce is active.<\/li>\n<li>Preserve the Remember Me choice for each saved account.<\/li>\n<li>Validate expiration, cookie signatures, user identity, and server-side session revocation before every switch.<\/li>\n<li>Revoke a saved session when that account is removed.<\/li>\n<li>Revoke all sessions saved by Account Dock on this browser when the user logs out.<\/li>\n<\/ul>\n\n<p>Account Dock never stores passwords, creates custom database tables, sends telemetry, or allows switching to an account that has not authenticated on the current browser.<\/p>\n\n<p>Only one account is active at a time across the site's tabs. Reload other open tabs after switching. Use separate browser profiles when accounts must remain active simultaneously.<\/p>\n\n<h3>Privacy<\/h3>\n\n<p>Account Dock stores essential browser cookies only after a user explicitly adds an account. The cookies contain WordPress-signed session credentials and a signed Remember Me preference. They are HttpOnly, use SameSite=Lax, and use the Secure flag when the site is accessed through HTTPS.<\/p>\n\n<p>The plugin does not collect analytics or send account credentials to the plugin author.<\/p>\n\n<p>Account avatars are rendered through the WordPress <code>get_avatar()<\/code> function. Depending on the site's avatar configuration, the visitor's browser may request an avatar from Gravatar and disclose normal connection information, such as the IP address and browser headers. The avatar URL uses a one-way hash derived by WordPress rather than sending the email address as plain text.<\/p>\n\n<p>Gravatar service: https:\/\/gravatar.com\/\nAutomattic privacy policy, which covers Gravatar: https:\/\/automattic.com\/privacy\/<\/p>\n\n<p>Site owners should describe Account Dock's essential cookies and configured avatar provider in their own privacy and cookie notices where required.<\/p>\n\n<h3>Security<\/h3>\n\n<p>Account actions use POST requests and WordPress nonces. Before switching, Account Dock verifies the signed authentication cookie, expected user ID, expiration, and server-side WordPress session token. Removing an account revokes the session token saved for that account.<\/p>\n\n<p>Account Dock is a convenience tool for authenticated sessions, not an additional authentication factor. Use HTTPS in production and follow normal WordPress account-security practices.<\/p>\n\n<!--section=installation-->\n<ol>\n<li>Upload the plugin ZIP through Plugins &gt; Add New Plugin &gt; Upload Plugin, or install Account Dock from the plugin directory.<\/li>\n<li>Activate Account Dock.<\/li>\n<li>Sign in to the first account.<\/li>\n<li>Open the account menu in the toolbar and choose Add another account.<\/li>\n<li>Complete the normal WordPress login form for the additional account.<\/li>\n<li>Select an authenticated account from the toolbar or Manage accounts page.<\/li>\n<\/ol>\n\n<p>Optional: add <code>[account_dock]<\/code> to any post, page, or compatible widget area to show a Manage accounts link.<\/p>\n\n<!--section=faq-->\n<dl>\n<dt id=\"can%20account%20dock%20switch%20to%20any%20site%20user%3F\"><h3>Can Account Dock switch to any site user?<\/h3><\/dt>\n<dd><p>No. An account appears only after it has successfully authenticated on the current browser. Knowing a user ID, username, or email address is not enough to switch to that account.<\/p><\/dd>\n<dt id=\"does%20account%20dock%20store%20passwords%3F\"><h3>Does Account Dock store passwords?<\/h3><\/dt>\n<dd><p>No. Passwords are handled by the normal WordPress login flow. Account Dock stores WordPress-signed session credentials in host-only HttpOnly cookies. These credentials are sensitive and should be protected like any logged-in browser session.<\/p><\/dd>\n<dt id=\"what%20does%20remember%20me%20do%3F\"><h3>What does Remember Me do?<\/h3><\/dt>\n<dd><p>When Remember Me is selected during login, the saved account remains available after the browser closes until its original WordPress session expires or is revoked. Without Remember Me, the saved account uses a browser-session cookie. Browser session-restore features can sometimes preserve session cookies.<\/p><\/dd>\n<dt id=\"does%20switching%20extend%20the%20login%20session%3F\"><h3>Does switching extend the login session?<\/h3><\/dt>\n<dd><p>No. Switching reuses the authenticated session and preserves its original expiration time.<\/p><\/dd>\n<dt id=\"what%20happens%20after%20a%20password%20reset%20or%20session%20revocation%3F\"><h3>What happens after a password reset or session revocation?<\/h3><\/dt>\n<dd><p>WordPress invalidates the affected session. Account Dock removes an invalid saved account the next time the list is checked.<\/p><\/dd>\n<dt id=\"does%20switching%20ask%20for%20two-factor%20authentication%20again%3F\"><h3>Does switching ask for two-factor authentication again?<\/h3><\/dt>\n<dd><p>No. Switching reuses a session that already completed authentication. Two-factor authentication, SSO, captcha, custom login, and security plugins should be tested on a staging site because some providers do not use the standard WordPress authentication hooks.<\/p><\/dd>\n<dt id=\"is%20it%20safe%20on%20a%20shared%20computer%3F\"><h3>Is it safe on a shared computer?<\/h3><\/dt>\n<dd><p>Anyone who can use the same unlocked browser while its sessions remain valid may switch to any saved account, including an administrator account. Do not save privileged accounts on shared devices. Use HTTPS and sign out when finished.<\/p><\/dd>\n<dt id=\"does%20it%20merge%20woocommerce%20customer%20data%20or%20carts%3F\"><h3>Does it merge WooCommerce customer data or carts?<\/h3><\/dt>\n<dd><p>No. Account Dock only changes the active WordPress identity. It does not merge carts, sessions, orders, addresses, subscriptions, or checkout data. Test the plugin with the store's cart, checkout, caching, and session extensions before production use.<\/p><\/dd>\n<dt id=\"does%20it%20support%20multisite%3F\"><h3>Does it support multisite?<\/h3><\/dt>\n<dd><p>Saved account lists are scoped to the current site URL and blog ID. Only members of the current site are accepted. Cross-domain and network-wide account lists are not supported.<\/p><\/dd>\n<dt id=\"what%20happens%20when%20the%20plugin%20is%20removed%3F\"><h3>What happens when the plugin is removed?<\/h3><\/dt>\n<dd><p>Account Dock creates no custom database tables or options. Sign out of saved accounts before deactivation when possible. Remaining browser cookies and WordPress sessions expire according to their normal session lifetime.<\/p><\/dd>\n\n<\/dl>\n\n<!--section=changelog-->\n<h4>1.3.0<\/h4>\n\n<ul>\n<li>Initial public release.<\/li>\n<li>Add up to five authenticated accounts and switch between valid sessions.<\/li>\n<li>Add toolbar and responsive account-manager interfaces with avatars.<\/li>\n<li>Preserve Remember Me and the current path and query string when switching.<\/li>\n<li>Add WooCommerce dashboard and shortcode entry points.<\/li>\n<\/ul>","raw_excerpt":"Add verified accounts to one browser and switch between their active WordPress sessions.","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin\/375836","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin"}],"about":[{"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/types\/plugin"}],"replies":[{"embeddable":true,"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/comments?post=375836"}],"author":[{"embeddable":true,"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wporg\/v1\/users\/addonsorg"}],"wp:attachment":[{"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/media?parent=375836"}],"wp:term":[{"taxonomy":"plugin_section","embeddable":true,"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_section?post=375836"},{"taxonomy":"plugin_tags","embeddable":true,"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_tags?post=375836"},{"taxonomy":"plugin_category","embeddable":true,"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_category?post=375836"},{"taxonomy":"plugin_contributors","embeddable":true,"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_contributors?post=375836"},{"taxonomy":"plugin_business_model","embeddable":true,"href":"https:\/\/lmo.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_business_model?post=375836"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}