Capveriq – Permission & Access Debugger
Download Capveriq – Permission & Access Debugger 1.0.1Description
At a glance
Looking for Capveriq – Permission & Access Debugger v1.0.1? It is available here as a free GPL download for WordPress — updated September 24, 2026 · requires WordPress 6.4+ & PHP 7.4+.
Capveriq helps WordPress administrators find out why a user cannot access an admin page or perform an action.
Instead of editing roles blindly, Capveriq inspects roles, effective capabilities, registered admin-menu requirements, mapped capabilities and temporary runtime permission traces.
Capveriq is a diagnostic tool and does not automatically modify user permissions.
The problem Capveriq is built for
You have probably seen these messages:
- “Sorry, you are not allowed to access this page.”
- “You do not have permission to perform this action.”
A menu item disappears. A plugin screen becomes unavailable. A user has what looks like the correct role and is still denied. Role editors show you capability checkboxes, but they do not tell you why the request failed.
Capveriq answers a different question: which capability did the page require, does this user have it, and did anything change the decision at runtime?
What Capveriq examines
- The capability registered by the admin menu or submenu entry for the requested page.
- The selected user’s roles, role-provided capabilities and directly assigned capabilities.
- Meta capability mapping through the WordPress
map_meta_capAPI. - Runtime capability results through the
user_has_capfilter. - Callbacks that other plugins and themes have registered on those permission hooks.
- Multisite and Super Admin context.
- Request context: wp-admin, frontend, AJAX, REST, cron, WP-CLI and Network Admin.
Honest diagnostics
Results use Confirmed, Likely, Possible or Unknown confidence labels. Capveriq does not present inference as proof. When evidence is insufficient it reports Inconclusive and recommends Live Trace.
Read-only by design
Capveriq never adds, removes or edits roles, capabilities or users. It reads, explains and reports.
Local only
Diagnostics run locally. Capveriq uses no external API, telemetry, remote fonts, account or licence key.
Features
- Access diagnosis for any user against any wp-admin URL.
- Admin menu and submenu capability detection from the live
$menuand$submenudata. - Core admin page analysis with a maintained fallback map.
- Plugin and custom admin page analysis.
- User capability inspector with search and All / Allowed / Denied / Direct / Inherited filters.
- Role capability inspector (read-only).
- Capability test tool with optional object ID and meta capability mapping.
- Temporary Live Trace for one selected user, with 5, 10 or 15 minute durations.
user_has_capandmap_meta_capobservation that never alters permission results.- Hook callback inventory with plugin, MU-plugin, theme, child theme and core classification.
- Denied admin access logging with retention and record limits.
- Request context detection including AJAX, REST, cron, WP-CLI and Network Admin.
- Multisite and Super Admin awareness.
- Privacy-safe diagnostic report export and a full system report.
- Diagnostic data cleanup tools and optional data removal on uninstall.
How It Works
- Open Capveriq > Diagnose Access.
- Select the affected user and paste the wp-admin URL they cannot open.
- Run the analysis. Capveriq reports the capability the page requires, whether the user has it, and where that capability comes from.
- If static analysis is not conclusive, start a Live Trace for that user.
- Ask the affected user to reproduce the problem while the trace is running.
- Return to Capveriq and review the captured capability checks, mapped capabilities and the callbacks registered on the relevant permission hooks.
- Export a privacy-safe report and share it with your developer or with the responsible plugin’s support team.
The trace expires automatically. Nothing about your site’s permissions is changed at any point.
Privacy
Capveriq stores diagnostic data in your own WordPress database and sends nothing to any external service.
Capveriq never stores passwords, cookies, authorization headers, API keys, application passwords, nonce values, payment data, POST form contents, private messages or any credential from wp-config.php.
Trace events record the capability being checked, the mapped capabilities, the result, the request path and context, and the classified source file where one can be determined. Absolute server paths are reduced to site-relative paths such as wp-content/plugins/example/file.php, so hosting account names and home directories are never displayed.
With Privacy-safe Reports enabled (the default), exported reports mask the site domain, identify users by ID rather than by email address, and exclude server paths, IP addresses and authentication information.
Trace sessions and denied access records are pruned automatically using the retention period you configure, while the denied log also respects its maximum record count. You can clear trace data, the denied access log or all diagnostic data at any time from Capveriq > Settings. Capveriq integrates with WordPress personal data export and erasure tools for diagnostic records associated with registered users, and removes those records when the related WordPress user is deleted. When Delete Data on Uninstall is enabled, all Capveriq tables and options are removed when the plugin is deleted.
Developers
Diagnostic data lives in three custom tables created with dbDelta():
{prefix}capveriq_sessions{prefix}capveriq_events{prefix}capveriq_denied
When Live Trace is off, Capveriq performs no debug_backtrace() calls, no reflection on hook callbacks and no trace database writes, and it loads no frontend CSS or JavaScript. Deep tracing runs only for requests made by the single selected target user while a session is active and within the configured event limit.
Known limitations
- Some plugins register admin menu pages conditionally, based on the currently logged-in administrator. Static menu inspection can therefore differ from the target user’s runtime menu. Capveriq says so instead of guessing, and recommends a Live Trace.
- Custom PHP can restrict access without using WordPress capability APIs at all. Such checks are invisible to any capability-based tool, including Capveriq.
- When capability state changes during
user_has_capprocessing, Capveriq reports that the state changed and lists the registered callbacks separately. It does not claim which callback was responsible.
Frequently asked questions
What is Capveriq – Permission & Access Debugger?
Capveriq – Permission & Access Debugger is a free WordPress plugin available under the GPL license. The current version is 1.0.1.
Is Capveriq – Permission & Access Debugger free to download?
Yes — Capveriq – Permission & Access Debugger 1.0.1 is a free GPL download with no hidden fees, no account needed, and no feature locked behind a paywall in this package.
How do I install Capveriq – Permission & Access Debugger 1.0.1?
Download the ZIP file from this page, then in your WordPress dashboard go to Plugins → Add New → Upload Plugin, choose the file, click Install Now, then Activate. The plugin works immediately after activation — no license key or extra setup is required for the core features.
What are the requirements for Capveriq – Permission & Access Debugger?
Capveriq – Permission & Access Debugger 1.0.1 requires WordPress 6.4 or higher and PHP 7.4 or higher. Most modern WordPress hosts already meet these versions. Running older versions may cause features to break, so update WordPress and PHP first if your site is behind.
When was Capveriq – Permission & Access Debugger last updated?
Version 1.0.1 was last updated on September 24, 2026. This page is refreshed automatically, so the download here always matches the newest version we have verified.
Is the Capveriq – Permission & Access Debugger download safe?
The file is sourced directly from the official WordPress.org repository — the same file the developer published. It is served unmodified, so what you install here is byte-identical to the official release.
Technical details
| Version | 1.0.1 |
|---|---|
| Last updated | September 24, 2026 |
| Requires WordPress | 6.4 or higher |
| Requires PHP | 7.4 or higher |
| Author | Muhammad Mujahid Sarfraz |
| Tags | access-control, capabilities, debugging, permissions, user-roles |
Download Capveriq – Permission & Access Debugger
Download Capveriq – Permission & Access Debugger WP PluginNote: if the download does not start, disable your ad blocker and try again.