Pair the official app with one WordPress site at a time. The phone receives an API session for that site. Documents never move to a WPsigner cloud.
Option A: QR code (recommended)
Section titled “Option A: QR code (recommended)”- On the computer, open WPsigner → Mobile App (the page title is WPsigner App).
- Confirm the site is HTTPS. Without SSL the Generate button stays disabled.
- Click Generate QR code. The code expires after 5 minutes.
- On the phone, install WPsigner on Google Play (iOS coming soon), finish onboarding, then tap Scan QR.
- Point the camera at the code. The phone shows a 3-digit confirmation code that is not encoded in the QR.
- Check that the same three digits appear in WordPress.
- Click Approve this phone.
If the approval window times out, generate a new QR. You can fall back to a WordPress password from the same screen on the phone.
Option B: WordPress username and password
Section titled “Option B: WordPress username and password”- In the app, choose Or sign in with WordPress.
- Enter the site URL (
https://yoursite.com/), your WordPress username, and password. - The user must be allowed to use signatures on that site.
Use an application password if your host blocks XML-RPC or you prefer not to type the main password on a phone.
After you connect
Section titled “After you connect”- The inbox lists documents from that WordPress site.
- The app logo comes from WPsigner → Mobile App → App logo (website logo, WPsigner company logo, or a custom upload).
- Sessions last 90 days by default. Tick Do not expire app sessions for my account to keep the device until you revoke it.
- Open Connected devices on the same admin page to revoke a lost phone. A site allows up to 8 paired devices per user.
Permissions on the phone
Section titled “Permissions on the phone”| Permission | Why |
|---|---|
| Camera | Scan the wp-admin QR |
| Network | Reach https://yoursite.com/wp-json/insigner/v1/… |
The host PIN used to leave kiosk mode is stored hashed on WordPress, never in the app. See In-person / kiosk.
If pairing fails
Section titled “If pairing fails”| Symptom | What to check |
|---|---|
| Generate QR is disabled | Enable HTTPS / a valid SSL certificate |
| QR expires immediately | Generate again; you have 5 minutes to scan and approve |
| Confirmation codes do not match | You scanned an old code — generate a new QR |
| “Could not connect” | Firewall or security plugin blocking /wp-json/insigner/v1/app* |
| Login with password fails | Username/password, user capability, and that the REST API is reachable |
Related: Troubleshooting · Privacy — mobile app