Offboarding guide

How to remove agency access from WordPress

Last updated: August 2026

How to remove agency access from WordPress: open WordPress admin, find the agency, and remove their access. It takes effect immediately and needs no password change, because the agency was never using your login.

When to remove WordPress access

Step-by-step

  1. WordPress admin → Users.
  2. Select the agency user.
  3. Delete or downgrade the role.
  4. Confirm.

What happens after you remove access

Removal is immediate. The agency's people can no longer see or act on WordPress sites, and you don't need to change any passwords — they were never using your login. Your ownership of the assets is unaffected; only the granted access is withdrawn.

How to avoid access debt for good

Stale access piles up because removal is manual and easy to forget — that's how ghost admins end up haunting an account years later. With HandItSafe, your client sees every agency with access to WordPress in one panel, removes anyone in a single tap, and every grant and removal is logged with a date — so offboarding is provable and nothing is left behind.

FAQ

Removing WordPress access — questions

Do I need to change my password after removing the agency from WordPress?

No. Because the agency was added through official partner/user access — never your login — removing them is instant and complete. There's no password to change.

How do I know the agency really lost access to WordPress?

After removing them, they should no longer see your account in their own dashboard. The agency user appears under Users with the right role.

What is access debt?

It's the stale access former agencies, freelancers and staff still hold long after they need it — the ghost admins that pile up when removal is manual and forgotten. Removing access at offboarding is how you avoid it.

Keep reading

Related guides

Skip the whole thing — send one link.

HandItSafe requests exactly this access in one link. No passwords. Your client keeps a panel to remove it anytime.