How Do I Hide My WordPress Site From Public View?
Lock your whole site or limit access to selected WordPress content.
Understanding WordPress visibility options
WordPress has no built-in switch for making an entire site private. You can limit access to single posts and pages with built-in visibility settings. For a full site lock, use a privacy plugin or a password tool from your web host.
The right method depends on who needs access. A site-wide lock suits a new site that is still being built. A private page can hold team notes. Membership tools can limit selected content to approved users.
- Whole site: Use a privacy plugin or host password tool.
- One page or post: Choose Private or Password protected.
- Member content: Set access rules for signed-in users or roles.
Privacy settings do not replace site security. Do not store passwords or payment details on hidden pages. Use strong sign-in details, update WordPress and plugins, and limit admin accounts.
Search visibility differs from access control. Asking search engines not to index a page does not block direct visits. Use a password or sign-in rule when access must be limited.
Making your entire WordPress site private
To hide your WordPress site while building, install a trusted privacy plugin. Check its update history, support notes, and user feedback first. Then set it to ask visitors to sign in before they can view the site.
Some plugins let you leave select paths open, such as the sign-in page. Test the rules in a private browser window while signed out. Try a basic user account too. These checks can reveal pages that stayed public by mistake.
A host password tool can be faster for a short build. It often blocks access before WordPress loads. Ask your host how the tool affects search crawlers and preview links. Remove the lock when the site is ready.
Do not rely on the search visibility setting to hide your WordPress site until ready. That setting asks search engines to skip indexing. It does not stop visitors who have a page address.
- Choose a site privacy plugin or host password tool.
- Set who may view the site and which paths stay open.
- Test access while signed out and with a basic account.
- Remove the restriction when the site is ready to launch.
If you ask, “How do I hide my WordPress site from public view?”, use a true access limit. Then test it outside your admin account.

Hiding specific posts and pages
To hide one page while keeping the rest of your site public, open it in the WordPress editor. Find the Visibility setting near the publish controls. Choose Private for access by approved site users. Choose Password protected when visitors should enter a shared password.
Private content works well for team updates, internal guides, and early drafts. Password protection can suit a short preview. It is less useful for a member area because readers can share the same password.
Check the saved page while signed out. A private page should not appear to the public. A password-protected page may still show its title and password prompt. Use another access tool if you need to block the full page view.
You can use the same settings for posts. Drafts are another option, but they are not a good way to share with approved readers. Usually, only users who can edit a draft can open it.
These settings control access to content, not every part of its design. Hiding a page title, header, or published date is a separate display task. It will not make a public page private.

Using plugins to hide content
Privacy and membership plugins add access rules beyond WordPress’s built-in settings. WP Private Content Plus and My Private Site are examples. Features can change over time, so check current support and settings before installing either one.
Look for controls that match your needs. These may include whole-site access, page rules, role-based access, or member-only sections. Some tools send visitors to a sign-in page. Others show a notice when users lack permission.
Install one plugin at a time. Test it on a staging copy if you have one. Check menus, search results, feeds, and direct links. A plugin may lock a page but leave its title visible in a menu or site search.
Avoid using several plugins for the same access rules. Their settings can clash and block the site owner. Keep a backup before major changes. Know how to turn off a plugin if its rules lock you out.
- Check for recent updates and clear support details.
- Test both public and signed-in views.
- Check that menus and search do not reveal restricted pages.
- Keep a backup and a way to regain access.
WordPress explains page visibility in its page editing documentation. Use that reference to check the built-in options before adding a plugin.
Controlling access with WordPress user roles
User roles set what each signed-in person can do. An Administrator can create private pages and manage site settings. Editors can view private pages, but cannot create new private pages unless they also have a role with that right.
Use the least access each person needs. Give an Editor the tools to review content, but avoid giving admin rights for convenience. A membership plugin may add its own roles or access rules.
Test each role with a separate account. Sign in as an Editor, then check the private page and its edit controls. Repeat the test for any member role your plugin adds.
This step catches gaps that a site owner may miss. Admins often have broad access, so their view does not show what a visitor or member can see.
Why keep a WordPress site private?
Privacy helps protect unfinished work from public view. It also gives a team a safe place to review pages before launch. During that time, staff can fix errors without sending visitors to an incomplete site.
Access rules can also support member-only content. Readers see only the pages that match their account. This makes content easier to manage as a site grows.
A private site is not a shield against every risk. It does not replace backups, strong passwords, safe plugin choices, or software updates. Treat privacy as one layer of care.
Keep a simple record of who needs access and why. Remove accounts when team members leave. Review the rules again before you open the site to everyone.
Best practices before you remove the privacy lock
Before launch, test the site as a visitor and as a signed-in user. Check direct page links, menus, search, and any member-only areas. Make sure public pages load without a sign-in prompt.
Then remove the site-wide lock or change the plugin rules. If you used a host password, turn it off in the host settings. Check search visibility settings too, since a request to skip indexing may remain after launch.
Keep access rules for pages that should stay private. Test those rules after launch, especially after plugin updates. A short check can catch a setting that changed or a new page that lacks the right limit.
Choose the smallest privacy tool that meets your needs. Use built-in page visibility for a few pages. Use a site-wide tool for a build, and role rules for a membership area. Clear rules are easier to test and maintain.
Step-by-step
- 01 Choose a privacy method
Use a site privacy plugin or a password tool from your host. Pick one that fits the access rules you need.
- 02 Set who can view the site
Set the sign-in or password rule, and choose any paths that should stay open.
- 03 Test visitor access
Check the site while signed out and with a basic user account. Try direct links as well as the home page.
- 04 Remove the lock when ready
Turn off the host password or change the plugin rule when the site is ready for public access. Keep any needed page-level limits in place.
Frequently asked questions
- How do I hide my WordPress site from public view?
- Use a privacy plugin or a password tool from your web host. Test the site while signed out to confirm visitors cannot open it.
- Can I make only one WordPress page private?
- Yes. Set the page to Private or Password protected in the editor’s visibility settings. Use a plugin if you need more detailed access rules.
- Does discouraging search engines make my WordPress site private?
- No. It asks search engines not to index the site, but it does not block direct visits. Use a password or sign-in rule to restrict access.
- Can Editors create private pages in WordPress?
- By default, Editors can view private pages but cannot create new ones. Administrators can create private pages and manage site settings.
- How can I test a private WordPress site?
- Open it in a private browser window while signed out. Also test with a basic user account and check direct page links, menus, and search.
Related reading
Why You Can’t Add Plugins in WordPress
Fix plugin errors, install tools, and keep your WordPress site tidy.
Which Database Does WordPress Use?
Understand WordPress databases, backups, table roles, and common fixes.
How Much Should I Charge for Web Design?
Set web design prices that cover your costs and fit each project.