BLACK FRIDAY
Save 59% on PageForge Annual $191/year $485/year
Claim 59% Off →
Version Locker: Disable Updates, Rollback and Downgrade icon
Actively maintained Tested with WP 7.1 #7 in Automatic updates

Version Locker: Disable Updates, Rollback and Downgrade

Disable automatic updates for plugins and themes, downgrade WordPress core to a specific version, roll back any update, or delay new releases.

Active installs100+100+ tier
Downloads · 30d329▲ +7.2% vs prev. 30d
Rating5/51 reviews
Health score71/100Good
All-time downloads1.2KSince Jan 2026
Support resolved—No recent threads
RequiresWP 6.0PHP 7.0+
Downloads · 7d76▼ -3.8% week over week
Our verdict

Solid choice

Version Locker: Disable Updates… is a solid plugin choice in 2026, with a few things worth checking first. It runs on 100+ sites, is rated 5/5 and was last updated 1 month ago, and scores 71/100 on our health check.

  • Tested with the latest WordPress (7.1)
  • Small user base (100+ active installs)
  • Very few reviews so far

How does it stack up?

Side-by-side on installs, updates, ratings & support

Daily downloads

132740Jul 8Aug 21Oct 5
Yesterday11
Daily average (1y)4
Peak day54Aug 12, 2026
Last 12 months1.2K

Download spikes usually follow a new release — each site that auto-updates counts as a download.

Rankings

Where Version Locker: Disable Upd… stands today

WordPress.org search rankings

Live position in the plugin search, top 100
KeywordPositionCompeting pluginsCategory
Automatic updates #36 9,064 Best Automatic updates plugins →
disable updates #28 6,862 Best disable updates plugins →
Downgrade #3 321 Best Downgrade plugins →
rollback #5 638 Best rollback plugins →
Update Manager >100 4,095 Best Update Manager plugins →

Version adoption

Share of active sites per release.

  • 1.3100.0%

Rating breakdown

★★★★★★★★★★ 5 from 1 reviews

  • 5★100.0%
  • 4★0.00%
  • 3★0.00%
  • 2★0.00%
  • 1★0.00%

About Version Locker: Disable Updates, Rollba…

From the official readme · v1.3.1

Description

Version Locker is an update manager that lets you disable automatic updates in WordPress and keep any plugin, theme, or WordPress core itself on the version you are running today.

Turn off updates for one plugin, for every plugin at once, for themes, or for WordPress core. Once something is locked it will not update automatically, and the one-click update button is withheld until you unlock it. Every switch is reversible in one click.

Stop Automatic Updates, Without Losing Track of Them

Most plugins that disable updates simply hide them, and six months later you have no idea how far behind you are.

Version Locker still shows you the update it is holding, including the new version number and whether it is a major, minor, or patch release. You can add a note explaining why something is pinned, and set a date for the lock to release itself.

Downgrade WordPress Core to a Specific Version

Pick the release you want and Version Locker offers it under Dashboard > Updates. Nothing is installed until you start it there yourself, and once the site is on that release, further core updates are held back.

You can downgrade WordPress to an earlier version, or hold WordPress on the version you have tested, without editing files over FTP or hunting for an old ZIP. Only releases published on WordPress.org are offered, and the package always comes from WordPress.org in your site’s own language.

Going backwards across a major version has to be confirmed first, because WordPress upgrades the database as it goes and cannot migrate it back.

Who This Is For

  • Agencies and freelancers managing client sites.
  • Anyone running a customized or patched plugin.
  • Production and eCommerce sites that update on a schedule.
  • Sites on older PHP or an older WordPress version.

What It Does

  • Lock an individual plugin or theme at the version it is on, including against another admin who tries to update it.
  • Turn off all plugin updates, all theme updates, or core updates with one switch, so you can freeze a whole site before a migration, an audit, or a busy trading period.
  • Roll back a plugin or theme to any earlier version still published on WordPress.org, from inside your dashboard. No FTP, no hunting for old ZIP files.
  • Downgrade WordPress core to a specific version, or hold it on the one you have tested.
  • Hold new releases for a set number of days before WordPress offers or installs them. Let other people find the bugs first. It only ever delays an update, it never starts one.
  • Block new plugin and theme installs, including ZIP uploads.
  • Lock anything you newly install, automatically.
  • Save your locks and settings to a file and load them on another site. You see exactly what will change before anything is applied.
  • See the version each item is pinned at and how far behind you have fallen, major, minor, or patch, with an “update available” indicator that does not bring the update button back.
  • Add a note to any lock, and set it to unlock itself on a date.
  • Lock and unlock without a page reload, in bulk, with search and filtering across your plugins and themes.
  • Activity log showing who changed what and when, with CSV export.
  • Works on Multisite.

How It Works

Version Locker uses WordPress filters to hide update notices and refuse update attempts. Locking never touches your files: nothing is added, changed, or removed on disk.

The one exception is Roll Back, which only runs when you ask for it. It downloads the version you pick from WordPress.org and replaces the installed files, exactly as a normal update would. You are warned and asked to confirm first.

No account, no API key, no external service. Nothing is sent anywhere.

Installation

  1. Install through the WordPress Plugins screen, or upload the folder to /wp-content/plugins/
  2. Activate the plugin
  3. Go to Tools > Version Locker
  4. Toggle the lock on anything you want to keep where it is

Frequently asked questions

How do I stop WordPress from updating plugins automatically?

Install Version Locker and go to Tools > Version Locker. Toggle the lock on any plugin to hold it at its current version, or turn on “Disable all plugin updates” in the Settings tab to stop every plugin update at once. Both are reversible at any time.

How do I disable automatic updates for just one plugin?

Lock that single plugin from the Plugins tab. Every other plugin keeps updating as normal. Locks are per item, so you are not forced into an all-or-nothing choice.

Can I disable WordPress core updates?

Yes. The Settings tab has a separate switch for core updates, which also turns off core auto-updates. It is independent of your plugin and theme locks.

How do I downgrade WordPress to a specific version?

Go to Tools > Version Locker > Settings and choose the release you want under “Hold WordPress on”. Version Locker then offers that exact version under Dashboard > Updates, and you start the change there yourself. Nothing is downloaded or installed until you do. Once the site is on that release, further core updates are held back so it stays there.

How do I roll back WordPress core after an update broke my site?

Pick the version that was working from the same dropdown, then run the update from Dashboard > Updates. WordPress reinstalls that release using its own update routine, so it behaves exactly like a normal core update. Take a database backup first: the files move backwards, but a database that has already been upgraded does not.

Can I use this instead of WP Downgrade?

Yes. If WP Downgrade is already holding a version on your site, Version Locker detects it, tells you which version it found, and pre-selects the same release so you only have to press Save. You get the same specific core version control, plus plugin and theme locks, rollback, an activity log, and a delay window in the same plugin.

Is it safe to downgrade WordPress across a major version?

It can break a site, so Version Locker will not do it silently. WordPress upgrades the database as it goes and has no reverse migration, which means going from, say, 7.x back to 6.x can leave the database ahead of the code. That move is refused until you confirm you have a working backup. Moving back within the same major version, such as a patch or minor release, does not carry that risk.

Can I delay WordPress updates instead of blocking them?

Yes. Set a waiting period in days and every new release is held for that long before WordPress offers or installs it. It only ever delays an update. It never starts one, and it never switches on auto-updates for a site that had them off.

How do I go back to an older version of a plugin?

Lock the plugin, then use the roll back link on its row. You will see every version WordPress.org still publishes, older than the one you have installed. Pick one, confirm, and Version Locker reinstalls it and pins the plugin there so the update you are stepping away from does not come straight back. Take a database backup first: rolling back replaces files, but it cannot undo database changes a newer version already made.

Can I delay updates instead of blocking them completely?

Yes. Set a waiting period in the Settings tab and every new release is held for that many days before WordPress offers it. Each release gets its own window. This only delays updates. It never starts one, and it never turns on auto-updates for a site that had them off.

Will this stop the update notification badge in my admin menu?

Locked items are removed from the counts WordPress uses for the update badge, so the number reflects only the updates you can actually apply. Version Locker still shows you the held update on its own screen, including the new version number, so nothing is hidden from you.

Does locking a plugin make my site insecure?

It can, if you lock something and forget about it. That is why every lock records the version it was pinned at, shows how far behind you have fallen with a major, minor, or patch badge, and can be given a date to unlock itself. Locking is meant to delay an update you have not tested yet, not to avoid updating forever.

Does this modify plugin or theme files?

Locking does not. It only uses WordPress filters to control update behavior, so your files are left exactly as they are. Roll Back is the exception, and it only runs when you ask for it. Choosing a version and confirming the warning replaces the installed files with that release, the same way an update does.

Will locked items still show update available?

Yes. The Plugins and Themes tabs show an “update available” indicator with the new version number for locked items, but the update is held and the update button will not appear until you unlock.

Can I still update a locked item?

Yes, just unlock it first. Updates work normally once unlocked.

What is the difference between locking one item and turning off all updates?

Locking targets specific items. The site-wide switches turn off ALL plugin updates, ALL theme updates, or core updates at once.

Does “Disable all plugin updates” stop someone uploading a plugin ZIP by hand?

No. The site-wide switches only stop WordPress update checks: update notices, one-click updates, and auto-updates. A plugin uploaded by hand from Plugins > Add New > Upload Plugin is treated by WordPress as an install, so an update or downgrade ZIP will still install. To stop that, lock the specific plugin or turn on “Block plugin installs”. Files changed directly on the server over FTP, SSH, or cPanel cannot be blocked by any plugin, because WordPress does not run during a direct file copy.

Can I copy my settings to another site?

Yes. Export your locks and settings to a file from the Settings tab, then import that file on another site. Nothing is applied on upload: you first see which locks would be added or removed and which settings would change. An imported file can only change Version Locker’s own settings, and locks for items not installed on the receiving site are skipped.

Does this work on Multisite?

Yes. Each site keeps its own list of locks, so what one site shows as locked is its own business. Protection works across the whole network, though, because it has to. Plugin and theme files exist once and are shared by every site, so a lock set on any single site stops those files being updated from anywhere, including Network Admin. Without that, one site could overwrite the version another site deliberately kept.

Does it slow my site down?

No. Version Locker does no work at all on front-end page views. Its data is only read when WordPress is deciding about updates, which happens in the admin and on cron, never when a visitor loads a page.

Changelog

Adds holding WordPress core on a release you choose, so you can downgrade WordPress to a specific version or stay on the one you have tested. Moving back across a major version now asks you to confirm first, because the database cannot be migrated back. Tested with WordPress 7.1. Your locks and settings are preserved on upgrade.

1.3.1

Added

  • Hold WordPress core on a chosen release. Pick a version and it is offered under Dashboard > Updates; nothing is installed until you start it there yourself. Once the site is on the pinned release, further core updates are held back. Only releases published on WordPress.org are accepted, and the package always comes from WordPress.org in your site’s own language.
  • Going backwards across a major release now has to be confirmed. WordPress upgrades the database as it goes and cannot migrate it back, so a move like 7.x to 6.x can break a site. That move is refused until you tick the box saying you have a working backup, and the confirmation is tied to the exact version you picked.
  • Arriving from WP Downgrade? If that plugin is holding a version on this site, Version Locker says so and pre-selects the same release, so you only have to press Save.

Changed

  • Core auto-updates are switched off while a release is pinned. Reaching a chosen version unattended, in the background, is not what pinning asks for.
  • The release list offers only versions WordPress.org still considers secure, newest first. The version you are running and any version you have already pinned are always listed, even if they are marked insecure.

1.3.0

Added

  • Roll back to an earlier version. Reinstall any version still published on WordPress.org and pin the item there. Only packages served by WordPress.org over HTTPS are used. Items hosted elsewhere report that no rollback is available instead of failing part-way. The installed version is checked on disk afterwards, and if it does not match, nothing is locked and you are told.
  • A waiting period for new releases. Set a number of days and new releases are held for that long before WordPress offers or installs them. Waiting only delays an update. It never starts one, and it never turns on auto-updates for a site that had them off. Each release gets its own window, and releases are written to the activity log.
  • Lock profiles. Export your locks and settings as a file and import them on another site. Nothing is applied on upload: you first see which locks would be added or removed and which settings would change. An imported file can only change Version Locker’s own settings, and locks for items not installed on the receiving site are skipped.
  • Multisite: a lock set on any site now protects the files on every site. Plugin and theme files are shared by the whole network, so an update run from Network Admin could previously overwrite files a single site had pinned. What each site shows as locked is unchanged and still per site.

Performance

  • Locks and waiting-period data are no longer autoloaded. They are only read when WordPress is deciding about updates, which never happens on a front-end page view, so every visitor was loading data nobody read. On a site with fifty locked plugins that is about 16 KB per request. Existing sites are corrected automatically on upgrade.

Fixed

  • Locked items are no longer stripped out of the update data WordPress stores on disk. Previously the removal was written to the database, so deactivating Version Locker left genuine updates invisible for up to 12 hours. Locks are now applied when the data is read, which means unlocking or deactivating takes effect immediately.
  • Auto-updates now skip a locked item cleanly on Multisite instead of starting and then failing. A lock held by a single site was not visible to the network’s update run, so the update began and was stopped later, which reported a failed update rather than a skipped one.
  • Rolling back now tells you if the plugin could not be switched back on afterwards, instead of reporting success while it sits deactivated.
  • The rollback screen no longer lists versions newer than the one installed.
  • Saving settings now confirms that it saved. The notice depended on a value WordPress removes from the address bar while the page loads, so it usually never appeared.
  • The count of held updates now reads correctly when there is only one.
  • Deactivating the plugin now clears the cached plugin and theme update lists, so WordPress rebuilds them without this plugin’s filters in place.
  • Deactivation cleaned up a transient key that never existed while leaving the real ones behind.
  • The update filters no longer replace a missing update transient with an empty object. WordPress uses its absence to decide a fresh update check is due, and that signal was being hidden.
  • Keyboard focus no longer leaves the lock actions dimmed.

1.2.3 (2026-06-10)

Compatibility

  • Tested up to WordPress 7.0

Fixed

  • The “update available” indicator now works for locked plugins and themes. Previously the update payload was discarded, so locked items never showed a pending update. Update data is now preserved in a private bucket so the UI can display it while WordPress still withholds the update.
  • Audit log “Role” column and deleted-user names now display correctly (they were read from the wrong field and always showed blank).
  • Filter tabs (All / Locked / Unlocked / Updates) now work. They were bound to a selector that did not exist in the markup.
  • Success and error toasts now render (the notice container was missing from the page).
  • Themes-tab pagination buttons now work.
  • Confirmation prompts now fire for all dangerous toggles via a single data-confirm handler.
  • Reconciled the “Orphan Locks” auto-clean default so the Settings UI and the cleanup logic agree (locks are preserved by default).
  • “Auto-Lock Uploads” now works for both plugins and themes. It previously never locked an uploaded item because it relied on an identifier WordPress omits on install; the installed item is now resolved from the upgrader instance.

Removed

  • Email notifications have been removed entirely (service, settings, test-email tool, and related options). They depended on server SMTP, fired on update availability rather than on real attempts, and added maintenance weight. Legacy email options are cleaned up on uninstall.
  • Removed dead code: an unused delete-confirmation modal, an unreachable GET unlock handler, and the empty audit “Hash” column.
  • Replaced the custom global error handler with lightweight per-callback guards, relying on WordPress core fatal-error protection. Same crash safety, far less code.

Added

  • Locks now store the version they were pinned at, who locked them and when, an optional note, and an optional auto-unlock date. The Plugins and Themes tabs show the pinned version alongside any available update with a major/minor/patch drift badge, and a per-lock editor lets you record a note and an expiry.
  • Auto-expiring locks: set an “auto-unlock on” date and the lock is released automatically (enforced immediately, cleaned up daily, and recorded in the audit log). Expiry dates are stored in UTC so they behave consistently across timezones.

Changed

  • The audit log is now stored in a dedicated database table instead of a single option. Writes are atomic, so concurrent admin actions can no longer drop entries. Existing logs are migrated automatically. Timestamps are stored in UTC and shown in the site’s timezone.
  • Lock storage moved from a flat list of slugs to a per-item record. Existing locks are migrated automatically on upgrade.

Security

  • Nonce verification now runs before the capability check when saving settings.
  • Authentication and authorization now run before any rate-limit state changes.

Other

  • Admin UI now follows the active admin color scheme via --wp-admin-theme-color.
  • Additional i18n coverage for JavaScript and audit strings.

1.2.2 (2026-01-24)

New

  • Theme locking: lock individual themes just like plugins
  • Site-wide switches: disable all plugin, all theme, or core updates at once
  • Quick toggle: lock or unlock without a page reload
  • Bulk lock/unlock: select multiple items and toggle them at once
  • Auto-lock for newly installed plugins (optional)
  • Live search and filter on plugins and themes tabs
  • Multisite support
  • Audit log now available on all sites (previously multi-admin only)
  • Audit log CSV export
  • Rate limiting on AJAX actions to prevent abuse

Improvements

  • Rebuilt with a proper class-based structure (autoloader, services, failsafe layer)
  • Error handling now catches bootstrap failures and shows a graceful admin notice instead of crashing
  • Improved input validation across all form submissions and AJAX handlers
  • Added VLOCKER_DISABLE_ALL constant as an emergency kill switch (define in wp-config.php)
  • PHP requirement lowered from 7.4 to 7.0
  • Uninstall behavior changed to safe-by-default. Data is now preserved on removal unless you opt in to deletion from the Settings tab

Security

  • Separate capability checks per tab (plugins, themes, settings)
  • AJAX nonce verification on all endpoints
  • CSV injection protection on audit log export

1.2.1

  • Initial release
  • Plugin locking only (no theme support)
  • Audit log for multi-admin sites only

Full changelog on WordPress.org →

Screenshots

The Plugins tab, showing locked items with the version they are pinned at and the update being held
The Plugins tab, showing locked items with the version they are pinned at and the update…
Rolling a plugin back to an earlier version published on WordPress.org
Rolling a plugin back to an earlier version published on WordPress.org
The Settings tab, with the waiting period and the site-wide update switches
The Settings tab, with the waiting period and the site-wide update switches
The activity log, showing who changed what and when
The activity log, showing who changed what and when

For developers

Is this your plugin? Show off the numbers.

Add a live badge to your site, docs or GitHub README. It updates on its own — no account needed.

Active installs badge Rating badge Health score badge

Best Version Locker: Disable Updat… alternatives

All Automatic updates plugins →
Alternatives
Rank Plugin Active installs Rating Updated Health
1 Disable Updates – Updates Manager, Disable Automatic Updates, Disable All Updates Disable Updates Disable updates and automatic updates for WordPress core, plugins, and themes, with the… by Themeisle 9K+ ★★★★★★★★★★ 4.5 (24) 2 months ago 83
2 WP Auto Updater WP Auto Updater WP Auto Updater plugin enables automatic updates of WordPress Core, Themes, Plugins and… by thingsym 7K+ ★★★★★★★★★★ 4.6 (10) 4 months ago 67
3 Update Control Update Control This adds some options to your Settings > General page that let you tweak auto-updates. by George Stephanis 4K+ ★★★★★★★★★★ 4.4 (17) 4 months ago 67
4 WP Disable Automatic Updates WP Disable Automatic Updates This plugin allows you to disable all types of automatic Wordpress Updates very simply with… by Daniele De Rosa 2K+ ★★★★★★★★★★ 5 (3) 4 years ago 35
5 WP Automatic Updates WP Automatic Updates Configure WordPress automatic updates settings through backend options. Just install, setup… by Ankit Singla 400+ ★★★★★★★★★★ 5 (2) 8 years ago 34
6 Disable Automatic Updates – Enable/Disable core, plugins, themes, translation updates Disable Automatic Updates Control automatic updates feature. Enable or disable all types of automatic updates… by Md Jahidul Islam 100+ ★★★★★★★★★★ 2.3 (3) 8 years ago 24
8 Background Update Notification Email Address Background Update Notification Email Address Change the email address update notifications are sent to following an automatic background… by Kanuka Digital 100+ ★★★★★★★★★★ 5 (3) 11 years ago 32
9 Disable Updates – Selective Update Control Disable Updates – Selective Update Control Disable WordPress updates & restrict plugin installs, update visibility, and file-editor… by Modi Sahil 90+ ★★★★★★★★★★ 5 (1) 2 months ago 66
10 Auto Update Auto Update Keeps WordPress core, plugins, and themes updated automatically to reduce manual… by Valeriu Tihai 90+ ★★★★★★★★★★ No reviews 7 months ago 40
11 kanenas — Minor/Patch Auto-Updates kanenas — Minor/Patch Auto-Updates Adds an "Enable auto-updates minor/patch" option, allowing automatic updates only for minor… by kanenas 40+ ★★★★★★★★★★ No reviews 5 months ago 45

FAQ

Version Locker: Disable Updates, Ro…: quick answers

Straight answers, pulled from live WordPress.org data.

Live data from WordPress.org · checked Oct 6, 2026

Is Version Locker: Disable Updates… free?

Yes. Version Locker: Disable Updates… is free to download and use from the official WordPress.org plugin directory.

Is Version Locker: Disable Updates… safe to use in 2026?

Version Locker: Disable Updates… is a solid plugin choice in 2026, with a few things worth checking first. It runs on 100+ sites, is rated 5/5 and was last updated 1 month ago, and scores 71/100 on our health check.

How many websites use Version Locker: Disable Updates…?

Version Locker: Disable Updates… is active on 100+ WordPress websites and has been downloaded 1,183 times since it launched in January 2026. It was downloaded 329 times in the last 30 days.

Does Version Locker: Disable Updates… work with WordPress 7.1?

Yes. The developer has tested Version Locker: Disable Updates… up to WordPress 7.1.2, the latest release. It requires WordPress 6.0 or newer.

What PHP version does Version Locker: Disable Updates… need?

Version Locker: Disable Updates… requires PHP 7.0 or higher. Most hosts run PHP 8.x today, so it works on any modern WordPress hosting.

When was Version Locker: Disable Updates… last updated?

The latest version, 1.3.1, was released on September 2, 2026 (1 month ago).

Who makes Version Locker: Disable Updates…?

Version Locker: Disable Updates… is developed and maintained by Vishal Paswan.

What are the best alternatives to Version Locker: Disable Updates…?

The most popular alternatives to Version Locker: Disable Updates… are Disable Updates (9K+ installs), WP Auto Updater (7K+ installs) and Update Control (4K+ installs).

Powered by PageForge

Want thousands of pages that rank like these? Build them in an afternoon.

This directory runs on the same engine as PageForge. Turn any spreadsheet, CSV or API into thousands of fast, SEO-ready WordPress pages — with schema, internal links and AI-written copy baked in.

  • CSV, Google Sheets & API data sources
  • AI content, schema & internal links per page
  • Works with Elementor, Gutenberg, Yoast & Rank Math
  • Free on WordPress.org — no credit card
Sarah is here to help!
Hi there! 👋 Need help finding what you're looking for?
Sarah
Sarah
Online & Ready to Help
Hi there! 👋 Need help finding what you're looking for?

We'll use this to continue our conversation

Just now ✓ Verified

Join 500+ SEO Pros Scaling Their Strategy

Get exclusive programmatic SEO tactics, AI content workflows, and the latest PageForge updates delivered straight to your inbox. Stay ahead of the algorithm.

We care about your data in our privacy policy.