Iptanus File Upload

Front-end file uploads for WordPress

Let visitors upload files from any page, post or sidebar widget — into your Media library, or straight to Dropbox, Google Drive, OneDrive, Amazon S3 or an FTP server.

Iptanus File Upload

What it does

A form on any page

One shortcode, or a Gutenberg block. Add your own fields, filter by size, extension or user role, and run several forms in the same post.

Files go where you need

The Media library, a NextGEN gallery, an FTP server or a cloud account. Large files upload in chunks, past the server’s own limit.

You see what arrives

A file browser and activity log in the dashboard, email notifications on upload, and a viewer your logged-in users can see too.

What it looks like

The upload form, as a visitor sees it
The Iptanus File Upload form as a visitor sees it: a file field with Select Files and Upload Files buttons, a subfolder chooser, a consent question, and a progress bar
The default form. Fields, buttons, labels and colours are all configurable.

Set-up and reference

Install it
  1. Install the plugin with the WordPress auto-installer, or download the .zip file from wordpress.org and install it from the Plugins section of your Dashboard.Or copy the wordpress_file_upload directory into the wp-content/plugins directory of your site yourself.
  2. Activate the plugin from the Plugins section of your Dashboard.
Put it on a page
  1. For an upload form, go to Dashboard / Settings / Iptanus File Upload and follow the instructions in Uploader Instances.[wordpress_file_upload]Or put the shortcode straight into the contents of any page.
  2. For a list of uploaded files, follow the instructions in Uploaded File List Instances instead.[wordpress_file_upload_browser]Or put the shortcode straight into the contents of any page.
Once it is running
  1. Open the page in your browser and you will see the upload form, or the list of files.
  2. View what has arrived from the Uploaded Files item in the Dashboard menu.
  3. Change the upload directory, or any other setting, from the small edit button at the top-left corner of the upload form.It opens the plugin options in a new window. If nothing appears, allow pop-up windows for your site.
  4. Full documentation of the plugin options is in the Options section below.

A handy Getting Started guide can be found here.

You can download the free version of the plugin by pressing the FREE version button below, or you can go for the professional version that offers multiple file uploads, captcha and much more by pressing the PRO version button. Professional licences are one-off, and their updates never expire.

Free versionPro version

The plugin offers many options for the two shortcodes, so that they can be tailored to any requirements. These options are available in the following links:

From version 2.4.1 filters and actions are supported in order to allow programmers to integrate Iptanus File Upload plugin with other plugins, extend its capabilities or perform advanced operations.

A detailed list of the plugin’s filters and actions can be found in this article.

The plugin is translated in the following languages:

Portuguese
kindly provided by Rui Alao
German
French
kindly provided by Thomas Bastide of omicronn.fr
Serbian
kindly provided by Andrijana Nikolic of webhostinggeeks.com
Dutch
kindly provided by Ruben Heynderycx
Chinese
kindly provided by Yingjun Li
Spanish
kindly provided by Marton
Italian
kindly provided by Enrico Marcolini marcuz.it
Polish
Swedish
kindly provided by Leif Persson marcuz.it
Persian
kindly provided by Shahriyar Modami chabokgroup.com
Greek

Translations in other languages are more than welcome!.

The plugin requires to have Javascript enabled in your browser. For Internet Explorer you also need to have Active-X enabled.

Please note that old desktop browsers or mobile browsers may not support all of the above features. In order to get full functionality use the latest versions of browsers, supporting HTML5, AJAX and CSS3.

You can read the Privacy Policy and Terms of Service of the plugin in the following links:

You can also read the Google Drive Privacy Policy and Terms of Service of the plugin in the following links:

Release notes

153 versions · 847 changes

What changed in each version. Grouped by major release — these entries carry no dates.

12 releases · 5.0.0 – 5.1.10 5 carry a security fix
  • Fixed bug where emails could not be sent after the release of the previous version.
  • Verified compatibility with latest 7.0 WordPress version.
  • Added uploadid length check in wfu_ajax_action_send_email_notification().
  • Added wfu_params_*, wfu_gst_* and wfu_userstate_* in periodical cleanup.
  • Added Transient Options section in Maintenance Actions tab.
  • Fixed SQL injection issue CVSS 9.3 from Patchstack.
  • Fixed File Overwrite Race Condition when uploading files with the same filename concurrently.
  • Verified compatibility with latest 6.9 WordPress version.
  • Fixed bug where a file could not be downloaded from Uploaded Files Dashboard menu.
  • Fixed double-escaped HTML code of text when Pro version is deactivated. Pro
  • Added support for FTP over TLS (FTPS) uploads.
  • Fixed bug where the visual editor of the file viewer could not be invoked when there was no upload form on the same page. Pro
  • Fixed bug where alt text and description in NGG image was not stored because NGG modified its API. Pro
  • Fixed bug where the visual editor threw warnings for not finding personaldata when Personal Data were deactivated from the plugin's Settings in Dashboard.
  • Fixed bug where a fatal error was thrown when updating the Pro version of the plugin and the extensions had to be reloaded. Pro
  • Fixed bug where Link and Remotelink columns showed HTML code instead of links, due to excessive escaping. Pro
  • Modified Messenger activation workflow due to withdrawal of Send To Messenger plugin from Meta. Pro
  • Corrected bug where the upload form visual editor was not opening when Material UI theme was active.
  • Corrected bug where notification emails were not sent when Material UI theme was active.
  • Updated vendor libraries.
  • Removal of Post Method setting from free version.
  • Removal of curl_exec, file_get_contents and sockets from wfu_get_request() and wfu_post_request() of free version.
  • Improvements on how AJAX endpoint is provided.
  • Corrections to "Requires at least" value.
  • Replacement of eval() in minification function.
  • Corrected warning where translatable constants where loaded before the plugin textdomain was loaded.
  • Further security improvements for compliance with wordpress.org.
  • Added translation for all backend of the plugin.
  • Modified plugin code so that all echoed variables to HTML are escaped.
  • Modified code so that all input is sanitized, including all $_SERVER, $_COOKIE and $_SESSION input.
  • Plugin name changed to Iptanus File Upload.
80 releases · 4.0.0 – 4.25.3 21 carry a security fix
                                                                                                                                                                  32 releases · 3.0.0 – 3.11.0 4 carry a security fix
                                                                                                                                                                                                                                  29 releases · 2.0.1 – 2.7.6 5 carry a security fix

                                                                                                                                                                                                                                                                                            Every version on one page, without JavaScript: the full changelog.

                                                                                                                                                                                                                                                                                            Free and Pro

                                                                                                                                                                                                                                                                                            The free version does not expire and is not a trial. Pro adds nineteen features. The full comparison and the price are on one page.

                                                                                                                                                                                                                                                                                            See pricing

                                                                                                                                                                                                                                                                                            894 discussions

                                                                                                                                                                                                                                                                                            Most recent: October 2025

                                                                                                                                                                                                                                                                                            Questions answered by Iptanus and other users.

                                                                                                                                                                                                                                                                                            1. Hi there! Quick question for you and hopefully you came across this before. Any emails that are sent out to yahoo, gmail, windows, mac, anything like that, the hyperlink works great for the download file.

                                                                                                                                                                                                                                                                                              When I view the email in outlook, the link is not a hyperlink, but plain text. I looked up online and noticed a few people said when links aren’t turned into links in outlook, it’s because there wasn’t a carriage return after the url to turn it into a link. I don’t know if this is possible with this plugin? Right now the file url line looks like this.

                                                                                                                                                                                                                                                                                              %fileurl%%n%

                                                                                                                                                                                                                                                                                              I believe %n% means new line? Is there anyway for me to change that to be an actual carriage return? Or any other trick I could use? My client uses outlook 365 so they would like the link clickable in outlook as well. Thanks!

                                                                                                                                                                                                                                                                                              1. Hi Dan, %n% will be converted by the plugin into a line feed (LF), not a carriage return (CR). You can try the following:

                                                                                                                                                                                                                                                                                                Put the following hook in functions.php file of your theme:

                                                                                                                                                                                                                                                                                                if (!function_exists('wfu_before_email_notification_handler')) {
                                                                                                                                                                                                                                                                                                function wfu_before_email_notification_handler($changable_data, $additional_data) {
                                                                                                                                                                                                                                                                                                $changable_data["message"] = str_replace('%rn%', "\r\n", $changable_data["message"]);
                                                                                                                                                                                                                                                                                                return $changable_data;
                                                                                                                                                                                                                                                                                                }
                                                                                                                                                                                                                                                                                                add_filter('wfu_before_email_notification', 'wfu_before_email_notification_handler', 10, 2);
                                                                                                                                                                                                                                                                                                }

                                                                                                                                                                                                                                                                                                Use variable %rn% instead of %n% after the file url, e.g. %fileurl%%rn%. This will generate a CRLF after the url. This might work in Outlook, otherwise there is another way.

                                                                                                                                                                                                                                                                                                Nickolas

                                                                                                                                                                                                                                                                                                1. Thank you very much for getting back to me! I placed the code in the functions file, and change the fileurl to have %rn% instead of %n%, and this is what is does in the email when sent.

                                                                                                                                                                                                                                                                                                  /uploaded-files/Test2(11).pdf%rn%

                                                                                                                                                                                                                                                                                                  Looks like the str_replace isn’t working.

                                                                                                                                                                                                                                                                                                    1. We actually have the pro version. I create a test page and stripped out most of the items in the shortcode and looks like still not replacing the rn with a carriage return. Here is a copy of that code. I stripped out the email name so people would not spam it 🙂

                                                                                                                                                                                                                                                                                                      Here is the code I put in the functions.php file.

                                                                                                                                                                                                                                                                                                      /* Allow file uploads using wordpress upload plugin to use a carriage return for creating hyperlinks in outlook/yahoo */

                                                                                                                                                                                                                                                                                                      if (!function_exists(‘wfu_before_email_notification_handler’)) {
                                                                                                                                                                                                                                                                                                      function wfu_before_email_notification_handler($changable_data, $additional_data) {
                                                                                                                                                                                                                                                                                                      $changable_data[“message”] = str_replace(‘%rn%’, “\r\n”, $changable_data[“message”]);
                                                                                                                                                                                                                                                                                                      return $changable_data;
                                                                                                                                                                                                                                                                                                      }
                                                                                                                                                                                                                                                                                                      add_filter(‘wfu_before_email_notification’, ‘wfu_before_email_notification_handler’, 10, 2);
                                                                                                                                                                                                                                                                                                      }

                                                                                                                                                                                                                                                                                                      And here is test file upload shortcode.

                                                                                                                                                                                                                                                                                                      [wordpress_file_upload notify=”true” notifyrecipients=”XXXXX@outlook.com” notifyheaders=”Content-type: text/html” notifymessage=”Dear Recipient,%n%%n% This is an automatic delivery message to notify you that a new file has been uploaded.%n%%n%Best Regards%n%%n%%fileurl%%rn%”]

                                                                                                                                                                                                                                                                                                      And here is what the email looks like.

                                                                                                                                                                                                                                                                                                      Dear Recipient, This is an automatic delivery message to notify you that a new file has been uploaded. Best Regards https://seaboardgraphics.com/wp-content/uploads/Test2.pdf%rn%

                                                                                                                                                                                                                                                                                                      Thank you so much for taking some of your valuable time to look at this. Much appreciated.

                                                                                                                                                                                                                                                                                                    2. Also notice even though the link is messed up with the %rn% at the end, the site did in fact still turn it into a hyperlink. Outlook/Yahoo won’t though. Just text, hmm.

                                                                                                                                                                                                                                                                                              1. Hi, there isn’t. However, some time ago I had done an implementation of PGP encryption on the uploaded files.

                                                                                                                                                                                                                                                                                                Regards

                                                                                                                                                                                                                                                                                                Nickolas

                                                                                                                                                                                                                                                                                            2. Bernardelli Daniele Giovanni

                                                                                                                                                                                                                                                                                              Hi, is it possible to constrain the availability of uploading a file after payment via PayPal or credit card of a user ? if yes how can I do ?
                                                                                                                                                                                                                                                                                              Regards
                                                                                                                                                                                                                                                                                              Daniele

                                                                                                                                                                                                                                                                                              1. Hi, maybe yes, provided that this information (whether the user has paid) is kept somewhere in user’s metadata. What plugin do you use for payment?

                                                                                                                                                                                                                                                                                                Regards

                                                                                                                                                                                                                                                                                                Nickolas

                                                                                                                                                                                                                                                                                            Ask a question

                                                                                                                                                                                                                                                                                            Answered by Iptanus, usually within a working day.

                                                                                                                                                                                                                                                                                            Ask a question

                                                                                                                                                                                                                                                                                            This site uses Akismet to reduce spam. Learn how your comment data is processed.

                                                                                                                                                                                                                                                                                            Scroll to Top