[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fahAYviR99hQG42hhC6GxHMdcIUVJGlFoslPuiM903kk":3,"$f05JbrEzKNtkqU63M7lNk3x-N2BqZvESmgz8xG3eL0aI":127,"$fNC60JvF4kNczHthCd9lBNrbc5hy3PcZU48Cv6W54A7o":132},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":23,"download_link":24,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":30,"crawl_stats":26,"alternatives":36,"analysis":26,"fingerprints":26},"dk-headless-api","DK Headless API","1.0.1","digitized kosmos","https:\u002F\u002Fprofiles.wordpress.org\u002Fdigitizedkosmos\u002F","\u003Cp>DK API transforms WordPress into a clean, controlled API backend by disabling the frontend theme layer entirely, selectively removing default WP REST API routes, and registering a clean, versioned custom REST namespace.\u003C\u002Fp>\n\u003Ch4>Core Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Fully disables the WordPress frontend.\u003C\u002Fli>\n\u003Cli>Preserves Gutenberg compatibility while removing unnecessary endpoints.\u003C\u002Fli>\n\u003Cli>Exposes clean endpoints for Posts, Pages, Categories, Taxonomies, and Menus.\u003C\u002Fli>\n\u003Cli>Built-in structured block parsing for WordPress 7.0 readiness.\u003C\u002Fli>\n\u003Cli>Resolves Advanced Custom Fields (ACF) natively in API responses.\u003C\u002Fli>\n\u003C\u002Ful>\n","Turns WordPress into a controlled Headless CMS with custom REST routes, rate limiting, and caching.",0,108,"2026-06-30T19:48:00.000Z","7.0.2","6.0","8.0",[18,19,20,21,22],"cms","headless","nextjs","react","rest-api","https:\u002F\u002Fdigitizedkosmos.com\u002Fproducts\u002Fdk-headless-api","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdk-headless-api.1.0.1.zip",100,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":11,"avg_security_score":25,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},"digitizedkosmos",1,30,94,"2026-08-28T20:30:08.322Z",[37,54,74,91,111],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":11,"downloaded":45,"rating":11,"num_ratings":11,"last_updated":46,"tested_up_to":47,"requires_at_least":48,"requires_php":49,"tags":50,"homepage":52,"download_link":53,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"metronyx-headless-cms-connector","Metronyx Headless CMS Connector","1.0.4","ariellejphoenix","https:\u002F\u002Fprofiles.wordpress.org\u002Fariellejphoenix\u002F","\u003Cp>\u003Cstrong>Metronyx Headless CMS Connector\u003C\u002Fstrong> provides a clean, secure REST API to connect your WordPress content with any frontend framework. Perfect for developers building modern web applications with Next.js, React, Vue, Angular, or any other frontend technology.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Clean REST API\u003C\u002Fstrong> – Simple endpoints for posts, pages, and content\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Advanced Content Delivery\u003C\u002Fstrong> – Optimized for modern headless CMS implementations\u003C\u002Fli>\n\u003Cli>\u003Cstrong>CORS Support\u003C\u002Fstrong> – Configured for secure frontend framework connections\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Framework Agnostic\u003C\u002Fstrong> – Works with Next.js, React, Vue, Angular, and any frontend\u003C\u002Fli>\n\u003Cli>\u003Cstrong>SEO Optimized\u003C\u002Fstrong> – Built-in meta fields and structured data for better search performance\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Enterprise Security\u003C\u002Fstrong> – Built-in security features, input validation, and rate limiting\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Complete Documentation\u003C\u002Fstrong> – Built-in API docs and usage examples\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Security Features\u003C\u002Fh4>\n\u003Cp>This plugin has been thoroughly audited and includes:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Input validation and sanitization\u003C\u002Fli>\n\u003Cli>CSRF protection with nonce verification\u003C\u002Fli>\n\u003Cli>XSS prevention with output escaping\u003C\u002Fli>\n\u003Cli>Rate limiting and pagination limits\u003C\u002Fli>\n\u003Cli>CORS security with strict origin validation\u003C\u002Fli>\n\u003Cli>Path traversal protection\u003C\u002Fli>\n\u003Cli>Proper capability checks for admin functions\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>API Endpoints\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Posts & Pages:\u003C\u002Fstrong>\u003Cbr \u002F>\n* \u003Ccode>GET \u002Fwp-json\u002Fmetronyx-connector\u002Fv1\u002Fposts\u003C\u002Fcode> – All posts with pagination\u003Cbr \u002F>\n* \u003Ccode>GET \u002Fwp-json\u002Fmetronyx-connector\u002Fv1\u002Fposts\u002F{slug}\u003C\u002Fcode> – Single post by slug\u003Cbr \u002F>\n* \u003Ccode>GET \u002Fwp-json\u002Fmetronyx-connector\u002Fv1\u002Fposts\u002Ffeatured\u003C\u002Fcode> – Featured posts only\u003Cbr \u002F>\n* \u003Ccode>GET \u002Fwp-json\u002Fmetronyx-connector\u002Fv1\u002Fpages\u003C\u002Fcode> – All pages\u003Cbr \u002F>\n* \u003Ccode>GET \u002Fwp-json\u002Fmetronyx-connector\u002Fv1\u002Fpages\u002F{slug}\u003C\u002Fcode> – Single page by slug\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Categories & Tags:\u003C\u002Fstrong>\u003Cbr \u002F>\n* \u003Ccode>GET \u002Fwp-json\u002Fmetronyx-connector\u002Fv1\u002Fcategories\u003C\u002Fcode> – All categories\u003Cbr \u002F>\n* \u003Ccode>GET \u002Fwp-json\u002Fmetronyx-connector\u002Fv1\u002Ftags\u003C\u002Fcode> – All tags\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Coming Soon:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Advanced e-commerce endpoints (future releases)\u003Cbr \u002F>\n* Enhanced content filtering and search\u003Cbr \u002F>\n* Multi-site headless architecture support\u003C\u002Fp>\n\u003Ch4>Data Structure\u003C\u002Fh4>\n\u003Cp>Each post\u002Fpage includes:\u003Cbr \u002F>\n* Basic content (title, slug, content, excerpt)\u003Cbr \u002F>\n* SEO metadata (title, description, canonical URL)\u003Cbr \u002F>\n* Featured images with multiple sizes\u003Cbr \u002F>\n* Categories and tags\u003Cbr \u002F>\n* Author information\u003Cbr \u002F>\n* Custom meta fields\u003C\u002Fp>\n\u003Cp>Future releases will include:\u003Cbr \u002F>\n* Advanced content filtering and search capabilities\u003Cbr \u002F>\n* Enhanced SEO metadata and structured data\u003Cbr \u002F>\n* Multi-language content support\u003Cbr \u002F>\n* Custom post type integration\u003Cbr \u002F>\n* Performance analytics and insights\u003C\u002Fp>\n\u003Ch4>Usage Example\u003C\u002Fh4>\n\u003Cpre>\u003Ccode>\u002F\u002F Fetch all posts\nconst posts = await fetch('\u002Fwp-json\u002Fmetronyx-connector\u002Fv1\u002Fposts')\n  .then(res => res.json());\n\n\u002F\u002F Fetch single post\nconst post = await fetch('\u002Fwp-json\u002Fmetronyx-connector\u002Fv1\u002Fposts\u002Fyour-post-slug')\n  .then(res => res.json());\n\n\u002F\u002F Next.js example\nexport async function getStaticProps({ params }) {\n  const post = await fetch(`${process.env.WORDPRESS_API_URL}posts\u002F${params.slug}`)\n    .then(res => res.json());\n\n  return { props: { post } };\n}\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch3>Professional Services\u003C\u002Fh3>\n\u003Cp>Need someone to run SEO and AI Search Optimization for your headless WordPress build?\u003C\u002Fp>\n\u003Cp>The team behind this plugin is \u003Cstrong>Metronyx AI\u003C\u002Fstrong>, a managed SEO + AEO agency. We do the technical SEO foundation (titles, metas, schema, sitemaps, indexation) plus the AI search layer for headless and decoupled setups:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Full-Stack SEO + AEO\u003C\u002Fstrong> – Technical SEO foundation plus AI search optimization for ChatGPT, Perplexity, Gemini, and Claude\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Headless Architecture Support\u003C\u002Fstrong> – REST API design, frontend-backend decoupling, deployment pipelines for Next.js, React, or Vue\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Schema & Structured Data\u003C\u002Fstrong> – Engineered to feed AI engines machine-readable signals they actually use\u003C\u002Fli>\n\u003Cli>\u003Cstrong>AI Crawler Management\u003C\u002Fstrong> – Strategic robots.txt, server directives, and crawler config so GPTBot, ClaudeBot, and PerplexityBot can actually access your content\u003C\u002Fli>\n\u003Cli>\u003Cstrong>AEO-BLUF Content Creation\u003C\u002Fstrong> – Bottom Line Up Front content engineered for AI citation extraction\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Entity Building & Brand Mentions\u003C\u002Fstrong> – Off-site signals across Reddit, YouTube, and industry directories to build entity trust\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Competitor Citation Tracking\u003C\u002Fstrong> – See where rivals appear in AI answers that you don’t\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Link Building & Weekly Reporting\u003C\u002Fstrong> – Real backlinks, real reports, real progress\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>What’s different: smart onboarding. We start executing day one, not after a month of paperwork. Most clients see citations climbing within 90 days. Typical agencies take 12 months to even start.\u003C\u002Fp>\n\u003Cp>Every client gets a self-contained dashboard tracking citations across ChatGPT, Perplexity, Gemini, and Claude in real time.\u003C\u002Fp>\n\u003Cp>Learn more at \u003Ca href=\"https:\u002F\u002Fmetronyxai.com\" rel=\"nofollow ugc\">metronyxai.com\u003C\u002Fa> or \u003Ca href=\"https:\u002F\u002Fmetronyxai.com\u002Faudit\u002F\" rel=\"nofollow ugc\">get a free AI Visibility Audit\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Developer\u003C\u002Fh3>\n\u003Cp>Built and maintained by \u003Cstrong>Arielle Phoenix\u003C\u002Fstrong> (\u003Ca href=\"https:\u002F\u002Fariellephoenix.com\" rel=\"nofollow ugc\">ariellephoenix.com\u003C\u002Fa>).\u003Cbr \u002F>\nAI SEO and headless WordPress solutions by \u003Cstrong>Metronyx AI\u003C\u002Fstrong> (\u003Ca href=\"https:\u002F\u002Fmetronyxai.com\" rel=\"nofollow ugc\">metronyxai.com\u003C\u002Fa>).\u003C\u002Fp>\n","Transform your WordPress site into a powerful headless CMS for modern frontend frameworks like Next.js, React, Vue, and more.",436,"2026-05-05T14:39:00.000Z","6.9.5","5.0","7.4",[51,19,20,21,22],"decoupled","https:\u002F\u002Fmetronyx.co.uk","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmetronyx-headless-cms-connector.1.0.4.zip",{"slug":55,"name":56,"version":57,"author":58,"author_profile":59,"description":60,"short_description":61,"active_installs":62,"downloaded":63,"rating":64,"num_ratings":65,"last_updated":66,"tested_up_to":14,"requires_at_least":15,"requires_php":49,"tags":67,"homepage":69,"download_link":70,"security_score":71,"vuln_count":72,"unpatched_count":11,"last_vuln_date":73,"fetched_at":27},"wp-graphql","WPGraphQL","2.17.0","Jason Bahl","https:\u002F\u002Fprofiles.wordpress.org\u002Fjasonbahl\u002F","\u003Cp>WPGraphQL is a free, open-source WordPress plugin that provides an extendable GraphQL schema and API for any WordPress site.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Get Started\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>Install WPGraphQL: \u003Ccode>wp plugin install wp-graphql --activate\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>Try it out: \u003Ca href=\"https:\u002F\u002Frepl.wpgraphql.com\" rel=\"nofollow ugc\">Live Demo\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Read the \u003Ca href=\"https:\u002F\u002Fwpgraphql.com\u002Fdocs\u002Fquick-start\" rel=\"nofollow ugc\">Quick Start Guide\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>Join the \u003Ca href=\"https:\u002F\u002Fdiscord.gg\u002FAGVBqqyaUY\" rel=\"nofollow ugc\">Community on Discord\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwp-graphql\u002Fwp-graphql\" rel=\"nofollow ugc\">Star the Repo\u003C\u002Fa>!\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Cstrong>Key Features\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Flexible API\u003C\u002Fstrong>: Query posts, pages, custom post types, taxonomies, users, and more.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Extendable Schema\u003C\u002Fstrong>: Easily add functionality with WPGraphQL’s API, enabling custom integrations.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Compatible with Modern Frameworks\u003C\u002Fstrong>: Works seamlessly with \u003Ca href=\"https:\u002F\u002Fvercel.com\u002Fguides\u002Fwordpress-with-vercel\" rel=\"nofollow ugc\">Next.js\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fdocs.astro.build\u002Fen\u002Fguides\u002Fcms\u002Fwordpress\u002F\" rel=\"nofollow ugc\">Astro\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fwww.okupter.com\u002Fblog\u002Fheadless-wordpress-graphql-sveltekit\" rel=\"nofollow ugc\">SvelteKit\u003C\u002Fa>, and more.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Optimized Performance\u003C\u002Fstrong>: Fetch exactly the data you need in a single query. Boost performance with \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwp-graphql\u002Fwp-graphql\u002Ftree\u002Fmain\u002Fplugins\u002Fwp-graphql-smart-cache\" rel=\"nofollow ugc\">WPGraphQL Smart Cache\u003C\u002Fa>.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>WPGraphQL is becoming a \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fnews\u002F2024\u002F10\u002Fwpgraphql\u002F\" rel=\"ugc\">Canonical Plugin\u003C\u002Fa> on WordPress.org, ensuring long-term support and a growing community of users and contributors.\u003C\u002Fp>\n\u003Ch4>Upgrading\u003C\u002Fh4>\n\u003Cp>It is recommended that anytime you want to update WPGraphQL that you get familiar with what’s changed in the release.\u003C\u002Fp>\n\u003Cp>WPGraphQL publishes \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwp-graphql\u002Fwp-graphql\u002Freleases\" rel=\"nofollow ugc\">release notes on Github\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>WPGraphQL has been following Semver practices for a few years. We will continue to follow Semver and let version numbers communicate meaning. The summary of Semver versioning is as follows:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cem>MAJOR\u003C\u002Fem> version when you make incompatible API changes,\u003C\u002Fli>\n\u003Cli>\u003Cem>MINOR\u003C\u002Fem> version when you add functionality in a backwards compatible manner, and\u003C\u002Fli>\n\u003Cli>\u003Cem>PATCH\u003C\u002Fem> version when you make backwards compatible bug fixes.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>You can read more about the details of Semver at semver.org\u003C\u002Fp>\n\u003Ch3>Privacy Policy\u003C\u002Fh3>\n\u003Cp>WPGraphQL uses \u003Ca href=\"https:\u002F\u002Fappsero.com\" rel=\"nofollow ugc\">Appsero\u003C\u002Fa> SDK to collect some telemetry data upon user’s confirmation. This helps us to troubleshoot problems faster and make product improvements.\u003C\u002Fp>\n\u003Cp>Appsero SDK \u003Cstrong>does not gather any data by default.\u003C\u002Fstrong> The SDK starts gathering basic telemetry data \u003Cstrong>only when a user allows it via the admin notice\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>When you opt in, each telemetry request is sent to Appsero and a duplicate is sent in a non-blocking request to WPGraphQL-operated infrastructure at https:\u002F\u002Ftelemetry.wpgraphql.com (the same categories of data as described for Appsero below).\u003C\u002Fp>\n\u003Cp>Learn more about how \u003Ca href=\"https:\u002F\u002Fappsero.com\u002Fprivacy-policy\u002F\" rel=\"nofollow ugc\">Appsero collects and uses this data\u003C\u002Fa>.\u003C\u002Fp>\n","WPGraphQL adds a flexible and powerful GraphQL API to WordPress, enabling efficient querying and interaction with your site's data.",30000,1570697,98,48,"2026-06-24T22:21:00.000Z",[51,68,19,21,22],"graphql","https:\u002F\u002Fgithub.com\u002Fwp-graphql\u002Fwp-graphql","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-graphql.2.17.0.zip",80,9,"2026-05-07 00:00:00",{"slug":75,"name":76,"version":77,"author":78,"author_profile":79,"description":80,"short_description":81,"active_installs":82,"downloaded":83,"rating":11,"num_ratings":11,"last_updated":84,"tested_up_to":14,"requires_at_least":85,"requires_php":49,"tags":86,"homepage":89,"download_link":90,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"sticklight","Sticklight","1.1.0","Elementor","https:\u002F\u002Fprofiles.wordpress.org\u002Felemntor\u002F","\u003Cp>Sticklight Connector provides a structured way to use the WordPress user system in external or React-based applications.\u003C\u002Fp>\n\u003Cp>The plugin extends the WordPress REST API with additional endpoints that allow authenticated clients to retrieve user context and interact with WordPress data, while fully respecting core authentication methods, roles, and capability checks.\u003C\u002Fp>\n\u003Cp>Sticklight does not replace WordPress authentication. It relies on \u003Ccode>wp_authenticate\u003C\u002Fcode> for credential validation and WordPress Application Passwords for API access, and follows standard permission checks (\u003Ccode>current_user_can\u003C\u002Fcode>) for all requests.\u003C\u002Fp>\n\u003Ch4>Typical use cases\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>React applications connected to a WordPress site\u003C\u002Fli>\n\u003Cli>Headless or hybrid WordPress setups\u003C\u002Fli>\n\u003Cli>Admin or user dashboards built outside wp-admin\u003C\u002Fli>\n\u003Cli>External tools that require authenticated access to WordPress data\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Authenticates via \u003Ccode>wp_authenticate\u003C\u002Fcode> and issues Application Passwords for API access\u003C\u002Fli>\n\u003Cli>Adds REST endpoints for login, logout, and retrieving current user context\u003C\u002Fli>\n\u003Cli>Enforces WordPress capability checks on all requests\u003C\u002Fli>\n\u003Cli>Supports cross-origin headless setups\u003C\u002Fli>\n\u003Cli>Extensible via WordPress hooks and filters\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Ch4>Login\u003C\u002Fh4>\n\u003Cp>Authenticate with username (or email) and password:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>POST \u002Fwp-json\u002Fsticklight\u002Fv1\u002Fauth\u002Flogin\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>On success the response includes an Application Password for subsequent API requests and the authenticated user:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>{\n  \"app_password\": \"XXXX XXXX XXXX XXXX XXXX XXXX\",\n  \"user\": {\n    \"user_id\": 1,\n    \"username\": \"admin\",\n    \"display_name\": \"Admin\",\n    \"email\": \"admin@example.com\",\n    \"roles\": [\"administrator\"]\n  }\n}\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Use the returned \u003Ccode>app_password\u003C\u002Fcode> with HTTP Basic Authentication for all further requests.\u003C\u002Fp>\n\u003Ch4>Current user\u003C\u002Fh4>\n\u003Cp>Retrieve the current authenticated user:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>GET \u002Fwp-json\u002Fsticklight\u002Fv1\u002Fauth\u002Fme\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch4>Logout\u003C\u002Fh4>\n\u003Cp>Revoke the current Application Password session:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>POST \u002Fwp-json\u002Fsticklight\u002Fv1\u002Fauth\u002Flogout\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch4>User registration\u003C\u002Fh4>\n\u003Cp>User creation is handled through the built-in WordPress REST API (\u003Ccode>POST \u002Fwp-json\u002Fwp\u002Fv2\u002Fusers\u003C\u002Fcode>) and requires administrator authentication.\u003C\u002Fp>\n\u003Ch4>Accessing protected data\u003C\u002Fh4>\n\u003Cp>Requests to any endpoint must pass standard WordPress permission checks. Sticklight does not bypass or override these checks.\u003C\u002Fp>\n\u003Ch3>Security\u003C\u002Fh3>\n\u003Cp>Sticklight follows WordPress security practices:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Authenticates via \u003Ccode>wp_authenticate\u003C\u002Fcode>, which respects all security plugin hooks (rate limiting, two-factor authentication, brute-force protection)\u003C\u002Fli>\n\u003Cli>Issues Application Passwords scoped to individual sessions\u003C\u002Fli>\n\u003Cli>Does not provide user registration — accounts must be created by an administrator\u003C\u002Fli>\n\u003Cli>Applies capability checks (\u003Ccode>current_user_can\u003C\u002Fcode>) on all endpoints\u003C\u002Fli>\n\u003Cli>Does not expose private data without proper permissions\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>For external applications, it is recommended to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Use HTTPS\u003C\u002Fli>\n\u003Cli>Restrict allowed origins\u003C\u002Fli>\n\u003Cli>Avoid exposing sensitive endpoints unnecessarily\u003C\u002Fli>\n\u003C\u002Ful>\n","Use WordPress authentication and permissions in external React applications via secure REST API endpoints.",200,685,"2026-06-03T08:07:00.000Z","6.8",[87,88,19,21,22],"api","authentication","https:\u002F\u002Fsticklight.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsticklight.1.1.0.zip",{"slug":92,"name":93,"version":94,"author":95,"author_profile":96,"description":97,"short_description":98,"active_installs":25,"downloaded":99,"rating":25,"num_ratings":100,"last_updated":101,"tested_up_to":14,"requires_at_least":102,"requires_php":103,"tags":104,"homepage":109,"download_link":110,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"frontend-view-for-headless-cms","Frontend View For Headless CMS","2.1","Dropndot Solutions","https:\u002F\u002Fprofiles.wordpress.org\u002Fdropndot\u002F","\u003Cp>Frontend View For Headless CMS is a plugin that seamlessly links your backend WordPress content, including posts, pages, custom post types, taxonomies, categories, and authors to your headless CMS frontend site. This ensures that any content in your WordPress backend are linked with your headless CMS frontend, therefore, you can easily visit the contents using visit links.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Set your headless frontend base URL in \u003Cstrong>Frontend View Settings\u003C\u002Fstrong>.\u003C\u002Fli>\n\u003Cli>Optional \u003Cstrong>redirect\u003C\u002Fstrong> of public WordPress frontend requests (301) to your headless frontend URL, while leaving admin, REST API, GraphQL, feeds, sitemaps, and similar endpoints untouched.\u003C\u002Fli>\n\u003Cli>Rewrite \u003Cstrong>View\u003C\u002Fstrong> links on post, page, CPT, taxonomy, and user list screens.\u003C\u002Fli>\n\u003Cli>Optional custom \u003Cstrong>preview path\u003C\u002Fstrong> (for example \u003Ccode>\u002Fpreview\u002Fpost-slug\u002F\u003C\u002Fcode>) for draft and preview links.\u003C\u002Fli>\n\u003Cli>Map \u003Cstrong>author\u003C\u002Fstrong> archive paths to your frontend user segment.\u003C\u002Fli>\n\u003Cli>Per-taxonomy and per–post-type \u003Cstrong>slug overrides\u003C\u002Fstrong> to match your frontend routes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Empty slug\u003C\u002Fstrong> option to remove taxonomy or CPT base segments from generated URLs (for flat routes like \u003Ccode>\u002Fmy-post\u002F\u003C\u002Fcode> instead of \u003Ccode>\u002Fproducts\u002Fmy-post\u002F\u003C\u002Fcode>).\u003C\u002Fli>\n\u003Cli>Frontend links in wp-admin open in a \u003Cstrong>new tab\u003C\u002Fstrong> for safer editing workflows.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Settings\u003C\u002Fstrong> shortcut on the Plugins screen for quick access to configuration.\u003C\u002Fli>\n\u003Cli>Redesigned settings page with slug mapping UI, quick guide, and helpful resources.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Works with any frontend that consumes WordPress via the REST API, GraphQL, or your own data layer—as long as your frontend URLs follow the paths you configure.\u003C\u002Fp>\n\u003Ch3>Development\u003C\u002Fh3>\n\u003Cp>This plugin is developed by Dropndot Solutions. For more information, visit \u003Ca href=\"https:\u002F\u002Fwww.dropndot.com\u002F\" rel=\"nofollow ugc\">Dropndot Solutions\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Contact\u003C\u002Fh3>\n\u003Cp>For support or inquiries, please contact us at \u003Ca href=\"mailto:info@dropndot.com\" rel=\"nofollow ugc\">info@dropndot.com\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Like the Plugin?\u003C\u002Fh3>\n\u003Cp>If you find this plugin helpful, please leave a positive review on the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffrontend-view-for-headless-cms\" rel=\"ugc\">WordPress Plugin Directory\u003C\u002Fa>\u003C\u002Fp>\n","Frontend View For Headless CMS links backend WordPress articles, pages, custom post types, taxonomies, and categories to the headless CMS site.",2879,5,"2026-07-20T12:50:00.000Z","6.5","7.2",[105,106,107,21,108],"headless-cms-wordpress","headless-frontend","next-js","wordpress-to-next-js","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffrontend-view-for-headless-cms\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffrontend-view-for-headless-cms.2.1.zip",{"slug":112,"name":113,"version":114,"author":115,"author_profile":116,"description":117,"short_description":118,"active_installs":33,"downloaded":119,"rating":11,"num_ratings":11,"last_updated":120,"tested_up_to":14,"requires_at_least":121,"requires_php":49,"tags":122,"homepage":125,"download_link":126,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"overedge-connector","Overedge Connector","1.3.0","timothyolu","https:\u002F\u002Fprofiles.wordpress.org\u002Ftimothyolu\u002F","\u003Cp>\u003Cstrong>Overedge Connector\u003C\u002Fstrong> is the bridge between your WordPress content and your React frontend.\u003C\u002Fp>\n\u003Cp>Whether you built your site with Lovable, Vite, Next.js, or plain React — Overedge Connector turns your WordPress installation into a fully configured headless CMS that your React app can fetch from instantly.\u003C\u002Fp>\n\u003Ch4>External Services\u003C\u002Fh4>\n\u003Cp>This plugin optionally connects to the Overedge platform (https:\u002F\u002Foveredge.dev) to automate the connection setup between your React frontend and WordPress. This connection is initiated manually by the site administrator and can be used without the platform entirely.\u003C\u002Fp>\n\u003Cp>The Overedge platform stores only site URLs and plugin health status. No content or personal data is transmitted.\u003C\u002Fp>\n\u003Cp>Privacy policy: https:\u002F\u002Foveredge.dev\u002Fprivacy\u003Cbr \u002F>\nTerms of service: https:\u002F\u002Foveredge.dev\u003C\u002Fp>\n\u003Ch4>What It Does\u003C\u002Fh4>\n\u003Cp>Once activated, Overedge Connector automatically:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Registers \u003Cstrong>custom post types\u003C\u002Fstrong> — Testimonials, Team Members, and FAQs — all exposed via the REST API\u003C\u002Fli>\n\u003Cli>Configures \u003Cstrong>Advanced Custom Fields\u003C\u002Fstrong> field groups for each post type\u003C\u002Fli>\n\u003Cli>Enables and configures the \u003Cstrong>WordPress REST API\u003C\u002Fstrong> for headless use\u003C\u002Fli>\n\u003Cli>Handles \u003Cstrong>CORS headers\u003C\u002Fstrong> so your React frontend can fetch content cross-origin\u003C\u002Fli>\n\u003Cli>Creates a \u003Cstrong>site-wide options panel\u003C\u002Fstrong> for managing global settings (hero text, stats, CTAs, contact details)\u003C\u002Fli>\n\u003Cli>Exposes a \u003Cstrong>health endpoint\u003C\u002Fstrong> at \u003Ccode>\u002Fwp-json\u002Foveredge\u002Fv1\u002Fhealth\u003C\u002Fcode> so your frontend can monitor the connection\u003C\u002Fli>\n\u003Cli>Generates a \u003Cstrong>secret key\u003C\u002Fstrong> for secure webhook verification\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Who Is It For?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Vibe coders\u003C\u002Fstrong> building client sites on Lovable who need their clients to manage content independently\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Freelance developers\u003C\u002Fstrong> tired of rewriting WordPress REST API integrations on every project\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Agencies\u003C\u002Fstrong> delivering consistent, client-friendly handovers at scale\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Works With Any React Frontend\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Lovable subdomain (e.g. yoursite.lovable.app)\u003C\u002Fli>\n\u003Cli>Custom domain (e.g. yoursite.com)\u003C\u002Fli>\n\u003Cli>Next.js, Vite, Create React App — anything React\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Works With Any WordPress Setup\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Subdomain (e.g. cms.yoursite.com)\u003C\u002Fli>\n\u003Cli>Main domain (e.g. yoursite.com)\u003C\u002Fli>\n\u003Cli>Subfolder (e.g. yoursite.com\u002Fcms)\u003C\u002Fli>\n\u003Cli>Shared hosting, VPS, managed WordPress — all supported\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Overedge Platform\u003C\u002Fh4>\n\u003Cp>This plugin works standalone, but connects seamlessly with the \u003Cstrong>Overedge platform\u003C\u002Fstrong> (overedge.dev) which provides:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Browser-based connection wizard — no terminal, no VS Code\u003C\u002Fli>\n\u003Cli>Auto-generated React integration files (wordpress.ts, useWordPress.ts, cmsData.ts)\u003C\u002Fli>\n\u003Cli>Dashboard to manage all connected sites\u003C\u002Fli>\n\u003Cli>Health monitoring across all your client sites\u003C\u002Fli>\n\u003Cli>Phase 2: Visual customisation — clients control colours, layout, and components from wp-admin\u003C\u002Fli>\n\u003Cli>Phase 2: Shortcode \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> React props mapping — \u003Ccode>[overedge_hero headline=\"...\"]\u003C\u002Fcode> updates your React component automatically\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>REST API Endpoints Added\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ccode>GET \u002Fwp-json\u002Foveredge\u002Fv1\u002Fhealth\u003C\u002Fcode> — Plugin health and site status\u003C\u002Fli>\n\u003Cli>\u003Ccode>POST \u002Fwp-json\u002Foveredge\u002Fv1\u002Fconfigure\u003C\u002Fcode> — Update CORS allowed origin\u003C\u002Fli>\n\u003Cli>\u003Ccode>GET \u002Fwp-json\u002Foveredge\u002Fv1\u002Fsettings\u003C\u002Fcode> — Site-wide CMS settings\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Custom Post Types Registered\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ccode>overedge_testimonial\u003C\u002Fcode> — with fields: quote, author_name, author_country, destination, avatar\u003C\u002Fli>\n\u003Cli>\u003Ccode>overedge_team_member\u003C\u002Fcode> — with fields: full_name, job_title, bio, photo, destination_focus, linkedin_url\u003C\u002Fli>\n\u003Cli>\u003Ccode>overedge_faqs\u003C\u002Fcode> — with fields: answer, destination, order\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>All custom post types are exposed via the WordPress REST API and include ACF field support.\u003C\u002Fp>\n\u003Ch4>Privacy\u003C\u002Fh4>\n\u003Cp>This plugin does not collect or transmit any personal data. The optional Overedge platform connection only stores site URLs and connection status — never content or user data.\u003C\u002Fp>\n","Connect your WordPress site to any React or Lovable-built frontend as a headless CMS — in minutes.",529,"2026-06-12T06:21:00.000Z","5.8",[19,123,21,22,124],"lovable","vite","https:\u002F\u002Foveredge.dev\u002Fconnector","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Foveredge-connector.1.3.0.zip",{"error":128,"url":129,"statusCode":130,"statusMessage":131,"message":131},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fdk-headless-api\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":133,"versions":134},2,[135,141],{"version":6,"download_url":24,"svn_tag_url":136,"released_at":26,"has_diff":137,"diff_files_changed":138,"diff_lines":26,"trac_diff_url":139,"vulnerabilities":140,"is_current":128},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fdk-headless-api\u002Ftags\u002F1.0.1\u002F",false,[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fdk-headless-api%2Ftags%2F1.0.0&new_path=%2Fdk-headless-api%2Ftags%2F1.0.1",[],{"version":142,"download_url":143,"svn_tag_url":144,"released_at":26,"has_diff":137,"diff_files_changed":145,"diff_lines":26,"trac_diff_url":26,"vulnerabilities":146,"is_current":137},"1.0.0","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdk-headless-api.1.0.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fdk-headless-api\u002Ftags\u002F1.0.0\u002F",[],[]]