[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fs2bXCCNud4cgYt493a4br1fTDKha60aEUIsPajWVju0":3},{"slug":4,"display_name":4,"profile_url":5,"plugin_count":6,"total_installs":7,"avg_security_score":8,"avg_patch_time_days":9,"trust_score":10,"computed_at":11,"plugins":12},"axtolab","https:\u002F\u002Fprofiles.wordpress.org\u002Faxtolab\u002F",2,0,100,30,94,"2026-08-25T06:51:50.686Z",[13,34],{"slug":14,"name":15,"version":16,"author":4,"author_profile":5,"description":17,"short_description":18,"active_installs":7,"downloaded":19,"rating":7,"num_ratings":7,"last_updated":20,"tested_up_to":21,"requires_at_least":22,"requires_php":23,"tags":24,"homepage":30,"download_link":31,"security_score":8,"vuln_count":7,"unpatched_count":7,"last_vuln_date":32,"fetched_at":33},"axtolab-ai-connector","Axtolab AI Connector","1.0.3","\u003Cp>Axtolab AI Connector for WordPress connects your WordPress site to AI agents like Claude, ChatGPT, and any MCP-compatible tool. AI agents can safely create drafts, edit content, manage media, work with taxonomies, and integrate with Yoast SEO — all through a secure gateway with per-connection tool access, sensitive-action consent, and \u003Cstrong>Roll Back \u002F Undo\u003C\u002Fstrong> on every write.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>How it works:\u003C\u002Fstrong> The plugin adds a REST API gateway to your WordPress site. A lightweight MCP server runs on your local machine and translates AI tool calls into WordPress REST requests. The plugin enforces per-connection permissions and allow \u002F ask first \u002F block consent for sensitive actions, validates requests, captures every write into a Roll Back \u002F Undo changelog, and logs actions.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Roll Back \u002F Undo on every write\u003C\u002Fstrong> — every AI-driven change captures a before\u002Fafter snapshot. Revert any tool call with one click from the Logs & Roll Back admin page.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Sensitive-action consent\u003C\u002Fstrong> — choose whether publishing, trash\u002Fdelete\u002Frestore, WooCommerce price\u002Fcoupon updates, and AI image actions run automatically, ask first, or are blocked for each connection.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Content Management\u003C\u002Fstrong> — Create, edit, and manage posts, pages, and custom post types. Clone existing content as drafts. View and restore revisions. Generate shareable preview links.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Media Library\u003C\u002Fstrong> — Upload images from URL, local file, or drag-and-drop portal. Search and browse existing media. Set featured images. Insert, replace, and remove inline images.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WooCommerce Tools\u003C\u002Fstrong> — When WooCommerce is active, list products and orders, update product prices, bulk-adjust prices, and create guarded coupons with Roll Back capture.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Stock Photos\u003C\u002Fstrong> — Search and import free stock photos from Unsplash and Pexels with automatic attribution.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Yoast SEO\u003C\u002Fstrong> — Read SEO and readability scores. Update focus keyphrase, SEO title, and meta description. Preview rendered meta tags.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Authors & Taxonomies\u003C\u002Fstrong> — Assign authors from an allowlist. Create and assign categories, tags, and custom taxonomy terms.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Per-connection privilege model\u003C\u002Fstrong> — every MCP connection authenticates as a WordPress user via Application Password. The connection’s capability set determines which AI tools can be called; the user’s WP role determines which objects they can act on. Both layers must allow an action for it to succeed. The plugin never creates WordPress users — admins create the Application Password under their own (or a dedicated) WordPress profile and paste it into the connection wizard. Sensitive-action behavior controls can require approval or block actions after the tool permission check passes. Allowlist-driven content type and taxonomy controls. Rate limiting on authentication endpoints.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Two authentication methods\u003C\u002Fstrong> — Application Passwords (for Desktop AI clients) and OAuth 2.1 with PKCE (for Web AI clients like ChatGPT and Claude Web).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Upload Portal\u003C\u002Fstrong> — Drag-and-drop media uploads with time-limited tokens. No WordPress login required for the upload session.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Available MCP Tools\u003C\u002Fh4>\n\u003Cp>The connector exposes a categorized tool surface to MCP-compatible AI clients. All tools are documented and discoverable via the standard MCP \u003Ccode>tools\u002Flist\u003C\u002Fcode> JSON-RPC method.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Search & Discovery\u003C\u002Fstrong> — \u003Ccode>wp_find_content\u003C\u002Fcode> (filter + search), \u003Ccode>wp_list_content_types\u003C\u002Fcode>, \u003Ccode>wp_get_content\u003C\u002Fcode>, \u003Ccode>wp_site_info\u003C\u002Fcode>, \u003Ccode>wp_getting_started\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Content Authoring\u003C\u002Fstrong> — \u003Ccode>wp_create_draft\u003C\u002Fcode>, \u003Ccode>wp_update_content\u003C\u002Fcode>, \u003Ccode>wp_publish_content\u003C\u002Fcode>, \u003Ccode>wp_clone_content\u003C\u002Fcode>, \u003Ccode>wp_get_preview_link\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Trash & Revisions\u003C\u002Fstrong> — \u003Ccode>wp_trash_content\u003C\u002Fcode>, \u003Ccode>wp_restore_content\u003C\u002Fcode>, \u003Ccode>wp_list_revisions\u003C\u002Fcode>, \u003Ccode>wp_restore_revision\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Media\u003C\u002Fstrong> — \u003Ccode>wp_search_media\u003C\u002Fcode>, \u003Ccode>wp_get_media\u003C\u002Fcode>, \u003Ccode>wp_update_media\u003C\u002Fcode>, \u003Ccode>wp_set_featured_image\u003C\u002Fcode>, \u003Ccode>wp_upload_media_from_url\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Inline Images (Gutenberg-aware)\u003C\u002Fstrong> — \u003Ccode>wp_insert_inline_image\u003C\u002Fcode>, \u003Ccode>wp_replace_inline_image\u003C\u002Fcode>, \u003Ccode>wp_remove_inline_image\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Authors & Taxonomy\u003C\u002Fstrong> — \u003Ccode>wp_list_authors\u003C\u002Fcode>, \u003Ccode>wp_assign_author\u003C\u002Fcode>, \u003Ccode>wp_list_terms\u003C\u002Fcode>, \u003Ccode>wp_create_term\u003C\u002Fcode>, \u003Ccode>wp_assign_terms\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Yoast SEO\u003C\u002Fstrong> — \u003Ccode>wp_get_yoast_analysis\u003C\u002Fcode>, \u003Ccode>wp_update_yoast_metadata\u003C\u002Fcode>, \u003Ccode>wp_get_yoast_head_preview\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WooCommerce\u003C\u002Fstrong> — \u003Ccode>wp_woo_list_products\u003C\u002Fcode>, \u003Ccode>wp_woo_get_product\u003C\u002Fcode>, \u003Ccode>wp_woo_update_product_price\u003C\u002Fcode>, \u003Ccode>wp_woo_bulk_update_prices\u003C\u002Fcode>, \u003Ccode>wp_woo_list_orders\u003C\u002Fcode>, \u003Ccode>wp_woo_get_order\u003C\u002Fcode>, \u003Ccode>wp_woo_create_coupon\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Stock Photos\u003C\u002Fstrong> — \u003Ccode>wp_search_stock_photos\u003C\u002Fcode>, \u003Ccode>wp_import_stock_photo\u003C\u002Fcode> (Unsplash + Pexels with auto-attribution)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Image Providers\u003C\u002Fstrong> — \u003Ccode>wp_generate_image\u003C\u002Fcode>, \u003Ccode>wp_list_image_providers\u003C\u002Fcode>, \u003Ccode>wp_confirm_image\u003C\u002Fcode> with site-owner supplied provider API keys\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Upload Portal\u003C\u002Fstrong> — \u003Ccode>wp_create_upload_session\u003C\u002Fcode>, \u003Ccode>wp_get_upload_session\u003C\u002Fcode> (drag-and-drop with time-limited tokens)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Connection Introspection\u003C\u002Fstrong> — \u003Ccode>wp_get_my_capabilities\u003C\u002Fcode> returns the calling connection’s capability groups, named preset (if any), and the resolved tool list — letting AI agents plan work without trial-and-error.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Post Type support\u003C\u002Fstrong> — Default allowlist accepts \u003Ccode>post\u003C\u002Fcode>, \u003Ccode>page\u003C\u002Fcode>, \u003Ccode>featured_item\u003C\u002Fcode>. To accept ANY registered public post type (e.g. WooCommerce \u003Ccode>product\u003C\u002Fcode>, EDD \u003Ccode>download\u003C\u002Fcode>, custom CPTs), set the allowlist to \u003Ccode>[\"*\"]\u003C\u002Fcode> in MCP Gateway settings. \u003Ccode>wp_list_content_types\u003C\u002Fcode> then expands the wildcard to the live list of public types on the site.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Audit Log\u003C\u002Fstrong> — every tool call is recorded with timestamp, source, and redacted parameters\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Rate Limiting\u003C\u002Fstrong> — per-IP token bucket on every authenticated endpoint\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>What’s Included\u003C\u002Fh4>\n\u003Cp>Axtolab AI Connector is \u003Cstrong>fully featured with no limits\u003C\u002Fstrong>. No publish limits, no connection caps, no feature gates.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Everything included free:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Create, edit, publish, and schedule content with AI agents\u003C\u002Fli>\n\u003Cli>Unlimited connections — connect Claude, ChatGPT, and any MCP agent\u003C\u002Fli>\n\u003Cli>Upload and manage media (URL, local file, drag-and-drop portal)\u003C\u002Fli>\n\u003Cli>Search and import stock photos (Unsplash, Pexels)\u003C\u002Fli>\n\u003Cli>Generate images through supported providers when you configure your own provider API key\u003C\u002Fli>\n\u003Cli>WooCommerce read\u002Fwrite tools for products, orders, prices, and coupons when WooCommerce is active\u003C\u002Fli>\n\u003Cli>Yoast SEO integration\u003C\u002Fli>\n\u003Cli>Both authentication methods (App Passwords, OAuth 2.1)\u003C\u002Fli>\n\u003Cli>All taxonomy and author management\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>The free core is feature-complete and useful on its own. Separate plugins may extend it, but no built-in feature in this WordPress.org package requires a license key.\u003C\u002Fp>\n\u003Ch4>Getting Started\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Install and activate the plugin\u003C\u002Fli>\n\u003Cli>Go to AI Connector > Connections in wp-admin\u003C\u002Fli>\n\u003Cli>Click “+ Add new connection” and follow the wizard — it walks you through creating an Application Password on your WordPress profile (or on a dedicated WP user if you prefer the production-grade setup), pasting it into the connection, and choosing what that connection can do\u003C\u002Fli>\n\u003Cli>Click the “Download Extension (.mcpb)” button on the setup page to grab the Claude Desktop bundle from GitHub Releases, then drag it into Claude Desktop’s Extensions panel — or connect a compatible client through MCP-over-HTTP\u003C\u002Fli>\n\u003Cli>Start using your AI agent with WordPress\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin connects to the following external services only when the corresponding feature is configured or used. Provider API keys are supplied by the site owner. The plugin does not send telemetry or analytics to Axtolab.\u003C\u002Fp>\n\u003Ch4>Claude (Anthropic) — OAuth Callback\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service:\u003C\u002Fstrong> Anthropic’s Claude products at https:\u002F\u002Fclaude.ai and https:\u002F\u002Fclaude.com\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Type:\u003C\u002Fstrong> OAuth 2.1 authorization-code callback redirect (no inbound network call from Anthropic during this step)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Endpoints (registered redirect URIs):\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>\u003Ccode>https:\u002F\u002Fclaude.ai\u002Fapi\u002Fmcp\u002Fauth_callback\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>https:\u002F\u002Fclaude.com\u002Fapi\u002Fmcp\u002Fauth_callback\u003C\u002Fcode>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When used:\u003C\u002Fstrong> When a logged-in WordPress administrator authorizes a Claude AI client to connect to their WordPress site via the plugin’s OAuth 2.1 flow. The plugin’s \u003Ccode>\u002Foauth\u002Fauthorize\u003C\u002Fcode> endpoint redirects the administrator’s browser to one of these URLs after consent.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent in redirect:\u003C\u002Fstrong> A one-time, short-lived OAuth authorization code plus the original \u003Ccode>state\u003C\u002Fcode> parameter. No personal data, no site content, no credentials.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.anthropic.com\u002Flegal\u002Fconsumer-terms\" rel=\"nofollow ugc\">Anthropic Consumer Terms\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.anthropic.com\u002Flegal\u002Fprivacy\" rel=\"nofollow ugc\">Anthropic Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>ChatGPT (OpenAI) — OAuth Callback\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service:\u003C\u002Fstrong> OpenAI’s ChatGPT custom-connector platform and OpenAI apps platform\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Type:\u003C\u002Fstrong> OAuth 2.1 authorization-code callback redirect (no inbound network call from OpenAI during this step)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Endpoints (registered redirect URIs):\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>\u003Ccode>https:\u002F\u002Fchatgpt.com\u002Fconnector_platform_oauth_redirect\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>https:\u002F\u002Fplatform.openai.com\u002Fapps-manage\u002Foauth\u003C\u002Fcode>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When used:\u003C\u002Fstrong> When a logged-in WordPress administrator authorizes ChatGPT (or an OpenAI Apps Platform client) to connect to their WordPress site via the plugin’s OAuth 2.1 flow. The plugin’s \u003Ccode>\u002Foauth\u002Fauthorize\u003C\u002Fcode> endpoint redirects the administrator’s browser to one of these URLs after consent.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent in redirect:\u003C\u002Fstrong> A one-time, short-lived OAuth authorization code plus the original \u003Ccode>state\u003C\u002Fcode> parameter. No personal data, no site content, no credentials.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fopenai.com\u002Fpolicies\u002Fterms-of-use\" rel=\"nofollow ugc\">OpenAI Terms of Use\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fopenai.com\u002Fpolicies\u002Fprivacy-policy\" rel=\"nofollow ugc\">OpenAI Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>GitHub Releases (Claude Desktop installer bundle download)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service:\u003C\u002Fstrong> GitHub Releases — the Axtolab AI Connector for WordPress (Free) public repository\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Type:\u003C\u002Fstrong> Static binary file download (HTTP GET, no inbound request from GitHub to the WordPress site)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Endpoint:\u003C\u002Fstrong> API host \u003Ccode>github.com\u003C\u002Fcode>, path \u003Ccode>\u002FAxtolab\u002Faxtolab-ai-connector-for-wordpress-free\u002Freleases\u002Flatest\u002Fdownload\u002Faxtolab-ai-connector.mcpb\u003C\u002Fcode> (HTTPS).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When used:\u003C\u002Fstrong> When a logged-in WordPress administrator clicks the “Download Extension (.mcpb)” button on the AI Connector setup page. The administrator’s browser is redirected to GitHub Releases to fetch the file. The plugin itself does not initiate an outbound request to GitHub; the user’s browser does, when they click the link. Filterable via \u003Ccode>axtolab_ai_connector_mcpb_download_url\u003C\u002Fcode> if a site owner wants to self-host the bundle.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> Standard HTTP browser request headers only. No WordPress site data, content, credentials, or telemetry is sent.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fdocs.github.com\u002Fen\u002Fsite-policy\u002Fgithub-terms\u002Fgithub-terms-of-service\" rel=\"nofollow ugc\">GitHub Terms of Service\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fdocs.github.com\u002Fen\u002Fsite-policy\u002Fprivacy-policies\u002Fgithub-general-privacy-statement\" rel=\"nofollow ugc\">GitHub Privacy Statement\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Local MCP clients (Claude Desktop, Cursor, Claude Code, VS Code)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service:\u003C\u002Fstrong> A local AI client running on the site administrator’s own computer.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When used:\u003C\u002Fstrong> When the site administrator installs the \u003Ccode>.mcpb\u003C\u002Fcode> bundle (downloaded from GitHub Releases via the AI Connector setup page) into a local AI client such as Claude Desktop. That client then connects inbound to the site’s REST API using credentials issued during setup. The plugin does not initiate any outbound network call to these clients.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> Only what the AI client requests through tool calls the administrator has approved. The plugin does not send unsolicited data.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Unsplash (Stock Photo Search)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Funsplash.com\u002F\" rel=\"nofollow ugc\">Unsplash\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Endpoint:\u003C\u002Fstrong> API host \u003Ccode>api.unsplash.com\u003C\u002Fcode>, path \u003Ccode>\u002Fsearch\u002Fphotos\u003C\u002Fcode> (HTTPS).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When used:\u003C\u002Fstrong> When an AI agent searches for stock photos via the stock photo tool\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> Search query, orientation preference\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Funsplash.com\u002Fterms\" rel=\"nofollow ugc\">Unsplash Terms\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Funsplash.com\u002Fprivacy\" rel=\"nofollow ugc\">Unsplash Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Pexels (Stock Photo Search)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.pexels.com\u002F\" rel=\"nofollow ugc\">Pexels\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Endpoint:\u003C\u002Fstrong> API host \u003Ccode>api.pexels.com\u003C\u002Fcode>, path \u003Ccode>\u002Fv1\u002Fsearch\u003C\u002Fcode> (HTTPS).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When used:\u003C\u002Fstrong> When an AI agent searches for stock photos via the stock photo tool\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> Search query, orientation preference\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.pexels.com\u002Fterms-of-service\u002F\" rel=\"nofollow ugc\">Pexels Terms of Service\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.pexels.com\u002Fprivacy-policy\u002F\" rel=\"nofollow ugc\">Pexels Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Google Imagen (AI Image Generation)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fcloud.google.com\u002Fvertex-ai\u002Fgenerative-ai\u002Fdocs\u002Fimage\u002Foverview\" rel=\"nofollow ugc\">Google Cloud AI\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Endpoint:\u003C\u002Fstrong> API host \u003Ccode>generativelanguage.googleapis.com\u003C\u002Fcode>, path \u003Ccode>\u002Fv1beta\u002Fmodels\u002Fimagen-3.0-generate-002:predict\u003C\u002Fcode> (HTTPS).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When used:\u003C\u002Fstrong> When an AI agent generates images using the Google Imagen provider and the site owner has configured a Google API key\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> Text prompt, aspect ratio, safety filter level\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fcloud.google.com\u002Fterms\" rel=\"nofollow ugc\">Google Cloud Terms\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fpolicies.google.com\u002Fprivacy\" rel=\"nofollow ugc\">Google Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>OpenAI (AI Image Generation)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fopenai.com\u002F\" rel=\"nofollow ugc\">OpenAI\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Endpoint:\u003C\u002Fstrong> API host \u003Ccode>api.openai.com\u003C\u002Fcode>, path \u003Ccode>\u002Fv1\u002Fimages\u002Fgenerations\u003C\u002Fcode> (HTTPS).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When used:\u003C\u002Fstrong> When an AI agent generates images using the OpenAI provider and the site owner has configured an OpenAI API key\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> Text prompt, image size, quality setting\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fopenai.com\u002Fpolicies\u002Fterms-of-use\" rel=\"nofollow ugc\">OpenAI Terms of Use\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fopenai.com\u002Fpolicies\u002Fprivacy-policy\" rel=\"nofollow ugc\">OpenAI Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>All API keys are stored encrypted using AES-256-CBC with WordPress security salts and are only decrypted at the time of the API call.\u003C\u002Fp>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>WordPress.org plugin support forum\u003C\u002Fstrong> — https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Faxtolab-ai-connector\u002F (please use this for general questions; replies are public so the next merchant searching for the same answer can find it).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Email support\u003C\u002Fstrong> — support@axtolab.com (for license, account, or anything sensitive).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Documentation\u003C\u002Fstrong> — https:\u002F\u002Faxtolab.com\u002Fdocs\u002Fai-connector-free\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Bug reports\u003C\u002Fstrong> — use the WordPress.org support forum for public issues or email support for sensitive reports.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>The same support entry points are also surfaced inside wp-admin: a “Need help?” footer on every Axtolab settings page, and “Settings · Support” \u002F “Email support · WordPress.org forum · Docs” rows on the Plugins admin row for this plugin.\u003C\u002Fp>\n","Let AI agents read, draft, edit, and publish WordPress with per-connection permissions, consent gates, and Roll Back.",267,"2026-06-18T21:44:00.000Z","7.0.2","6.2","7.4",[25,26,27,28,29],"ai","automation","chatgpt","claude","mcp","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faxtolab-ai-connector.1.0.3.zip",null,"2026-07-22T17:31:50.256Z",{"slug":35,"name":36,"version":37,"author":4,"author_profile":5,"description":38,"short_description":39,"active_installs":7,"downloaded":40,"rating":7,"num_ratings":7,"last_updated":41,"tested_up_to":21,"requires_at_least":42,"requires_php":23,"tags":43,"homepage":48,"download_link":49,"security_score":8,"vuln_count":7,"unpatched_count":7,"last_vuln_date":32,"fetched_at":33},"axtolab-ai-spend-monitor","Axtolab AI Spend Monitor","1.0.1","\u003Cp>WordPress 7.0 introduced the AI Client and the Connectors screen: you configure an AI provider API key once, and every plugin on your site can use it. What WordPress does not show you is \u003Cstrong>which plugin is spending your money\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>AI Spend Monitor records every call made through the WordPress AI Client and gives you a clear dashboard under \u003Cstrong>Axtolab \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> AI Spend Monitor\u003C\u002Fstrong>:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Per-plugin AI usage\u003C\u002Fstrong> — see exactly which plugins and themes make AI calls, with calls, prompt tokens, and completion tokens for each.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Estimated cost per plugin\u003C\u002Fstrong> — token counts are converted to an estimated USD cost using bundled list prices for popular OpenAI, Anthropic, and Google models.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Editable cost rates\u003C\u002Fstrong> — a “Cost rates” tab lets you adjust the per-model input\u002Foutput prices to match your provider plan or a price change. Saving re-estimates previously recorded calls too, so the whole dashboard reflects your rates. No code required.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Daily cost chart\u003C\u002Fstrong> — a 30-day view of your estimated AI spend, so a sudden spike is visible the day it happens, not when the invoice arrives.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Recent call log\u003C\u002Fstrong> — the latest AI calls with source, provider, model, and token counts.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>CSV export\u003C\u002Fstrong> — download the recorded calls for any period for accounting or review: source plugin, provider, model, tokens, and estimated cost per call.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Spend notification\u003C\u002Fstrong> — optionally get one email per month when estimated sitewide AI spend passes a dollar amount you choose.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Zero configuration\u003C\u002Fstrong> — activate it and it starts recording. No API keys, no account, no setup.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How it works\u003C\u002Fh4>\n\u003Cp>The plugin listens to the WordPress AI Client’s lifecycle hooks. When any plugin calls the AI Client, the call’s token usage and model metadata are recorded in a local database table, and the calling plugin is identified automatically. Old records are pruned after 90 days (filterable).\u003C\u002Fp>\n\u003Ch4>Privacy\u003C\u002Fh4>\n\u003Cp>All data stays on your site. The plugin records token counts and metadata only — it does \u003Cstrong>not\u003C\u002Fstrong> store prompt or response content, and it does \u003Cstrong>not\u003C\u002Fstrong> send anything to any external service. There are no remote calls, no tracking, and no account requirement.\u003C\u002Fp>\n\u003Ch4>For developers\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ccode>aismon_usage_recorded\u003C\u002Fcode> — action fired after each recorded call.\u003C\u002Fli>\n\u003Cli>\u003Ccode>aismon_cost_rates\u003C\u002Fcode> — filter the model price table used for estimates.\u003C\u002Fli>\n\u003Cli>\u003Ccode>aismon_retention_days\u003C\u002Fcode> — filter the data retention window (default 90 days).\u003C\u002Fli>\n\u003Cli>\u003Ccode>aismon_dashboard_after_summary\u003C\u002Fcode> — action to render additional dashboard panels.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>AI Spend Monitor does \u003Cstrong>not\u003C\u002Fstrong> contact any external services. All data is recorded and stored locally in your WordPress database — no remote calls, no telemetry, no analytics.\u003C\u002Fp>\n\u003Cp>The token-to-USD cost estimates use a pricing table that ships with the plugin (no remote lookup). The table can be overridden via the \u003Ccode>aismon_cost_rates\u003C\u002Fcode> filter; see the developer notes in the description.\u003C\u002Fp>\n\u003Cp>The plugin does not send any data outside your WordPress site.\u003C\u002Fp>\n\u003Ch3>Privacy\u003C\u002Fh3>\n\u003Cp>AI Spend Monitor records the following data locally, in a custom database table with the standard WordPress table prefix:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>The source plugin or theme that made each AI call.\u003C\u002Fli>\n\u003Cli>The AI provider (e.g. OpenAI, Anthropic, Google) and model identifier (e.g. \u003Ccode>gpt-4o-mini\u003C\u002Fcode>).\u003C\u002Fli>\n\u003Cli>Token counts per call: prompt tokens, completion tokens, total tokens.\u003C\u002Fli>\n\u003Cli>A timestamp for each recorded call.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>The plugin does \u003Cstrong>not\u003C\u002Fstrong> store any of the following:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Prompt or response content.\u003C\u002Fli>\n\u003Cli>User identifiers, user emails, or user IP addresses.\u003C\u002Fli>\n\u003Cli>Any other personally-identifying information.\u003C\u002Fli>\n\u003Cli>Any visitor-facing data — the plugin only sees server-side AI calls made by other plugins or themes.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Recorded data is pruned automatically after 90 days. The retention window is filterable via \u003Ccode>aismon_retention_days\u003C\u002Fcode>. All recorded data, plugin options, and transients are removed when the plugin is uninstalled (see \u003Ccode>uninstall.php\u003C\u002Fcode>).\u003C\u002Fp>\n\u003Cp>No recorded data is sent to any external service. All processing happens on your own WordPress site.\u003C\u002Fp>\n","AI usage and cost tracking for the WordPress AI Client. See which plugins make AI calls, how many tokens they use, and what it costs.",209,"2026-06-16T00:37:00.000Z","7.0",[25,44,45,46,47],"cost","monitoring","tokens","usage","https:\u002F\u002Faxtolab.com\u002Fproducts\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faxtolab-ai-spend-monitor.1.0.1.zip"]