[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f3KiFgaGpBOPqvXb7C_hqRpTsw9BAOVG3MxezeJytUqI":3,"$fKTGioCySMMGSQ68oUc5icjmfNiKKxU1BGS7J1X-JfO8":129,"$fSvLXMIamZsK_KSurtD-FN-mue5s1Ic9oT0ibHUsc4CY":134},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"discovery_status":29,"vulnerabilities":30,"developer":31,"crawl_stats":27,"alternatives":39,"analysis":27,"fingerprints":27},"sproutos","SproutOS – MCP Server, AI Agents & AI Website Creator","1.1.3","POSIMYTH","https:\u002F\u002Fprofiles.wordpress.org\u002Fposimyththemes\u002F","\u003Cp>SproutOS is the AI operating system for modern WordPress agencies, from the team behind plugins running on 500,000+ WordPress sites. This plugin turns your site into a WordPress MCP server, so any AI agent can do real work on it through the open Model Context Protocol, with your guardrails in place.\u003C\u002Fp>\n\u003Cp>Connect Claude, Claude Code, Cursor, VS Code, Windsurf, ChatGPT, or any MCP client, and your AI can run your WordPress site the way a developer would, safely.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>See how SproutOS works: connect your AI to WordPress and get things done just by prompting.\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fyoutu.be\u002F3fLCj7bt5q8\" rel=\"nofollow ugc\">Watch Now\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002F3fLCj7bt5q8?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Ch4>A WordPress MCP Server With 260+ Abilities\u003C\u002Fh4>\n\u003Cp>Most AI writes WordPress code in a vacuum. SproutOS gives the AI direct, sandboxed access to your live WordPress stack. Three things set it apart:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>PHP Execution:\u003C\u002Fstrong> run code inside your live WordPress, with access to hooks and plugin APIs, isolated in a sandbox.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>File Management:\u003C\u002Fstrong> read, edit, write, and delete files across your WordPress filesystem, including themes and plugins, with protected files blocked.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Database Access:\u003C\u002Fstrong> query, inspect, and update your WordPress database with real structural understanding.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>That is the foundation for 260+ AI abilities across your WordPress stack (175+ core, plus more as your builders and integrations are active). Ability groups include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>WordPress core: posts, pages, users, media, menus, options, settings, custom post types, taxonomies, comments\u003C\u002Fli>\n\u003Cli>WooCommerce: products, orders, inventory, coupons, categories, tags, reports\u003C\u002Fli>\n\u003Cli>Page builders: Elementor, Gutenberg, and Bricks, with detection for Divi, Beaver Builder, and Breakdance\u003C\u002Fli>\n\u003Cli>Nexter Blocks and The Plus Addons for Elementor: dozens of block and widget abilities\u003C\u002Fli>\n\u003Cli>Forms and data: WPForms, Fluent Forms, ACF, and JetEngine\u003C\u002Fli>\n\u003Cli>Multilingual: WPML\u003C\u002Fli>\n\u003Cli>Backups: UpdraftPlus\u003C\u002Fli>\n\u003Cli>Site care: Lighthouse audits, pre-update backups, CSS and JS conflict fixes, database cleanup of transients and bloat, and custom PHP snippet deployment\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Built for Control and Safety\u003C\u002Fh4>\n\u003Cp>Giving AI access to a live site should never be a leap of faith. SproutOS ships the guardrails first:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Admin-only access, restricted to Administrator users\u003C\u002Fli>\n\u003Cli>Safe Mode: one toggle makes every ability read-only\u003C\u002Fli>\n\u003Cli>Capability Profiles: four levels that control how many abilities load, from minimal to full\u003C\u002Fli>\n\u003Cli>Ability Manager: turn any ability or group on or off yourself\u003C\u002Fli>\n\u003Cli>Sandbox execution: all AI-written PHP runs isolated, with Crash Guard to catch fatal errors\u003C\u002Fli>\n\u003Cli>One-click Rollback: reverse a change when you need to\u003C\u002Fli>\n\u003Cli>Protected files: wp-config.php, .env, and .htaccess are blocked\u003C\u002Fli>\n\u003Cli>Audit logging: every call is recorded with ability name, user, risk level, and timestamp\u003C\u002Fli>\n\u003Cli>Admin bar indicator: a clear signal whenever AI abilities are active\u003C\u002Fli>\n\u003Cli>Authentication with WordPress Application Passwords over HTTPS\u003C\u002Fli>\n\u003Cli>Privacy and GDPR controls: IP anonymization, configurable data retention, CSV export, and a live summary of exactly what is collected\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Our advice: start on a staging site, keep Safe Mode on while you learn how the agent behaves, and move to production once your abilities and guardrails are set. SproutOS is built to be used on live and client sites too.\u003C\u002Fp>\n\u003Ch4>Set Up in Three Steps\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Install SproutOS and enable AI Abilities in Settings.\u003C\u002Fli>\n\u003Cli>Copy the MCP connection snippet from the dashboard and paste it into your AI client.\u003C\u002Fli>\n\u003Cli>Let the AI scan your WordPress stack, and start giving it plain-English instructions.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Manage a Fleet of Sites (Coming Soon)\u003C\u002Fh4>\n\u003Cp>This plugin connects one site. The SproutOS platform is being built to run your whole agency on one place:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Connect many WordPress sites over MCP\u003C\u002Fli>\n\u003Cli>Agents: audits, maintenance, security, SEO, and client reports, on a schedule or on demand\u003C\u002Fli>\n\u003Cli>Connectors: each tool’s abilities in a clear Read, AI Draft, Approval Gate, Write, Verify flow\u003C\u002Fli>\n\u003Cli>Roles and permissions for your whole team\u003C\u002Fli>\n\u003Cli>Branded client reports\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Create a SproutOS account at https:\u002F\u002Fsproutos.ai to get early access as these ship.\u003C\u002Fp>\n\u003Ch4>Create Sites With AI (Create Mode)\u003C\u002Fh4>\n\u003Cp>SproutOS also builds new WordPress sites from a prompt, the agency way. In Create Mode at https:\u002F\u002Fsproutos.ai you turn a client brief into a Scope, a Sitemap, and an on-brand Design, then export production-ready WordPress to Elementor, Gutenberg, or Figma. Use this plugin to import those sites into WordPress.\u003C\u002Fp>\n\u003Ch4>Who It Is For\u003C\u002Fh4>\n\u003Cp>WordPress agencies, freelancers, and developers who already use Claude, ChatGPT, or Cursor and want AI to do real work on their sites, safely, without hand-coding every task.\u003C\u002Fp>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>The MCP connection runs on your own site using a WordPress Application Password over HTTPS. The SproutOS account features (fleet management and Create Mode) connect to the SproutOS service at https:\u002F\u002Fsproutos.ai; site details and the content you choose to act on are sent there to perform the requested work. Terms: https:\u002F\u002Fsproutos.ai\u002Fprivacy-policy?tab=terms . Privacy: https:\u002F\u002Fsproutos.ai\u002Fprivacy-policy?tab=privacy .\u003C\u002Fp>\n\u003Ch3>Development\u003C\u002Fh3>\n\u003Cp>SproutOS is open source (GPLv2 or later) and nothing in it is obfuscated. The complete, human-readable source for the compiled dashboards is maintained publicly at https:\u002F\u002Fgithub.com\u002Fposimyth\u002Fsproutos\u002Ftree\u002Fsproutos-source\u003C\u002Fp>\n\u003Cp>For the full compiled-file-to-source map, build steps, and the list of bundled third-party libraries, see the \u003Ccode>Source-Readme.txt\u003C\u002Fcode> file in the plugin root.\u003C\u002Fp>\n","WordPress MCP server for Claude, ChatGPT and AI agents. Give AI 260+ safe abilities with PHP, file and database access, on live sites.",40,537,0,"2026-07-17T12:17:00.000Z","7.0.2","6.9","8.0",[19,20,21,22,23],"ai","ai-agent","automation","mcp","mcp-server","https:\u002F\u002Fsproutos.ai","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsproutos.1.1.3.zip",100,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":32,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":34,"avg_security_score":35,"avg_patch_time_days":36,"trust_score":37,"computed_at":38},"posimyththemes",10,461290,96,84,85,"2026-08-25T03:28:55.626Z",[40,57,73,89,104],{"slug":41,"name":42,"version":43,"author":44,"author_profile":45,"description":46,"short_description":47,"active_installs":48,"downloaded":49,"rating":13,"num_ratings":13,"last_updated":50,"tested_up_to":15,"requires_at_least":51,"requires_php":52,"tags":53,"homepage":55,"download_link":56,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"aicom","AICOM – AI Commander","3.9.0","dudaster","https:\u002F\u002Fprofiles.wordpress.org\u002Fdudaster\u002F","\u003Cp>\u003Cstrong>AICOM – AI Commander\u003C\u002Fstrong> connects your WordPress site to any AI agent via MCP (Model Context Protocol) or OpenAPI. Use your existing AI subscription — Claude Code, OpenAI Codex, ChatGPT Custom GPTs, Copilot Studio, Dify, n8n, OpenClaw, Celine, Goose, or any MCP-compatible client — to manage content, build pages, run audits, and automate repetitive tasks, all without leaving your AI interface.\u003C\u002Fp>\n\u003Cp>No more copy-pasting between your AI assistant and the WordPress dashboard. Describe what you want, and your agent does it — safely, with a full record of every action.\u003C\u002Fp>\n\u003Ch4>Content Management\u003C\u002Fh4>\n\u003Cp>Create, update, and publish posts, pages, and custom post types directly from your AI agent. Build and duplicate Elementor pages, manage menus, upload media, update taxonomies, and handle bulk SEO fields including \u003Cstrong>Yoast SEO meta, titles, and social previews\u003C\u002Fstrong> — all in a single conversation. What used to take hours of dashboard work can be delegated to your AI in minutes.\u003C\u002Fp>\n\u003Ch4>Safety You Control\u003C\u002Fh4>\n\u003Cp>AICOM puts you in charge at every level:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Scope-based API keys\u003C\u002Fstrong> — each key grants access only to the operations you explicitly allow. One key for read-only content review, another for full publishing access.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Soft Lock \u002F Hard Lock\u003C\u002Fstrong> — freeze all write operations (Soft) or block everything except public tools (Hard) with one click from the admin bar or Safety page.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Working Hours Schedule\u003C\u002Fstrong> — automatically apply Soft or Hard Lock outside your configured working hours and days. Agents can’t make changes at night or on weekends unless you explicitly override it.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Dry-run mode\u003C\u002Fstrong> — test any operation before it runs. See exactly what would change without touching live data.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Confirm flag\u003C\u002Fstrong> — destructive operations require an explicit \u003Ccode>\"confirm\": true\u003C\u002Fcode> parameter. Accidental deletions are prevented by design.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Backup & Restore\u003C\u002Fh4>\n\u003Cp>Before every significant change, your agent can snapshot the current state of a post or term. If something goes wrong, restore the exact previous version in one call. Backups are stored in the database, organised by session, and can be cleaned up automatically based on age or total size.\u003C\u002Fp>\n\u003Ch4>Full Audit Trail\u003C\u002Fh4>\n\u003Cp>Every request is logged: timestamp, remote IP, API key label, tool used, parameters, result, and response time. Logs are grouped into \u003Cstrong>named sessions\u003C\u002Fstrong> — when an agent opens a session, all its actions are recorded together so you can review, replay, or undo an entire workflow at once. The Audit Logs page includes a session activity chart and a direct Restore button for each session.\u003C\u002Fp>\n\u003Ch4>Accessibility Audits — New in v3.2.0\u003C\u002Fh4>\n\u003Cp>AICOM now includes a dedicated \u003Cstrong>Accessibility module\u003C\u002Fstrong> so your AI agent can audit and fix WCAG issues across your entire site — no external tools or services required:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Site report\u003C\u002Fstrong> — instantly see how many images are missing alt text across your entire media library, with a ranked preview of the top offenders and a percentage score.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Post audit\u003C\u002Fstrong> — scan any post or page for heading hierarchy errors (missing H1, skipped heading levels), images without alt text, and links with non-descriptive anchor text (“click here”, “read more”). Each issue is rated by severity and the post receives an overall accessibility score from 0 to 100.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Fix in place\u003C\u002Fstrong> — set alt text on any media library image in one call. Pass an empty string to correctly mark it as decorative (\u003Ccode>aria-hidden\u003C\u002Fcode>). Full dry-run support so you can preview changes before saving.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Screenshot before & after\u003C\u002Fstrong> — combine AICOM’s audit tools with your AI agent’s browser capabilities to capture a visual record of the page before and after remediation.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>A typical AI-driven accessibility workflow: run the site report, get the list of problem images, let the agent analyse each image visually and write descriptive alt text, apply the fixes — then run the audit again to confirm the score improved. All in one session, with a full audit trail.\u003C\u002Fp>\n\u003Ch4>Supported Modules\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>WordPress Core\u003C\u002Fstrong> — posts, pages, custom post types, terms, meta, options, menus, plugins\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Media\u003C\u002Fstrong> — upload, update, delete media; direct file system access\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Users & Roles\u003C\u002Fstrong> — create, update, manage users and role assignments\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Backup\u003C\u002Fstrong> — per-post and per-term snapshots, session-based restore\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Sessions\u003C\u002Fstrong> — named audit sessions with grouped action history\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Accessibility\u003C\u002Fstrong> — site-wide alt text audit, post-level WCAG check, alt text fixes\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WooCommerce\u003C\u002Fstrong> \u003Cem>(optional)\u003C\u002Fem> — products, categories, settings\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Elementor\u003C\u002Fstrong> \u003Cem>(optional)\u003C\u002Fem> — page creation from template, widget inspection, theme builder conditions\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Polylang\u003C\u002Fstrong> \u003Cem>(optional)\u003C\u002Fem> — translations, language assignment, string management\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Yoast SEO\u003C\u002Fstrong> \u003Cem>(optional)\u003C\u002Fem> — read and write SEO titles, meta descriptions, Open Graph and Twitter card fields; bulk audit across all posts in one session\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Clautron\u003C\u002Fstrong> \u003Cem>(optional)\u003C\u002Fem> — blueprint management, capability catalog, event analytics\u003C\u002Fli>\n\u003Cli>\u003Cstrong>ECS\u003C\u002Fstrong> \u003Cem>(optional)\u003C\u002Fem> — Ele Custom Skin color schemes, font schemes, custom looks\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Who is this for?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Content teams\u003C\u002Fstrong> using Claude, ChatGPT, or any AI assistant who want it to publish and update WordPress content directly\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Agencies\u003C\u002Fstrong> managing multiple client sites and wanting AI-assisted workflows with a full paper trail\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Developers\u003C\u002Fstrong> building AI-powered WordPress tools or automation pipelines\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Accessibility specialists\u003C\u002Fstrong> who want to audit and remediate WCAG issues at scale with AI assistance\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Claude Code users\u003C\u002Fstrong> — point AICOM as an MCP server from your terminal and control WordPress alongside your code\u003C\u002Fli>\n\u003Cli>\u003Cstrong>OpenAI Codex users\u003C\u002Fstrong> — connect Codex to your site via AICOM’s MCP endpoint and let it manage content as part of your dev workflow\u003C\u002Fli>\n\u003Cli>\u003Cstrong>ChatGPT, Copilot Studio, Dify, n8n users\u003C\u002Fstrong> — import the OpenAPI schema URL into any OpenAPI-compatible client; all tools are discovered automatically with Bearer auth\u003C\u002Fli>\n\u003Cli>\u003Cstrong>OpenClaw \u002F Celine \u002F Goose users\u003C\u002Fstrong> — native MCP connector, works out of the box\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How it works\u003C\u002Fh4>\n\u003Cp>AICOM exposes a secure HTTP endpoint on your WordPress site. Your AI agent sends structured MCP requests, AICOM authenticates the request, checks scopes and lock state, executes the operation, logs it, and returns a structured response.\u003C\u002Fp>\n\u003Cpre>\u003Ccode>AI Agent \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> AICOM Endpoint \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> WordPress\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch4>API Key Scopes\u003C\u002Fh4>\n\u003Cp>Each API key is granted specific scopes — you control exactly what each AI agent can and cannot do:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>read.wp, `write.wp.posts`, `manage.taxonomies`, `manage.meta`, `manage.wordpress.settings`, `manage.media`, `manage.files`, `manage.users`, `manage.plugins`, `manage.backups`, `manage.a11y`, `manage.woocommerce.products`, `manage.woocommerce.settings`, `manage.elementor`, `manage.polylang`, `manage.yoast`, `manage.clautron`\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch4>Endpoint\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>REST API:\u003C\u002Fstrong>\u003Cbr \u002F>\n    POST \u002Fwp-json\u002Faicom\u002Fv1\u002Fmcp\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Fallback\u003C\u002Fstrong> (no mod_rewrite required):\u003Cbr \u002F>\n    POST \u002F?aicom=1\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Health check:\u003C\u002Fstrong>\u003Cbr \u002F>\n    GET \u002F?aicom=1\u003C\u002Fp>\n\u003Ch4>Authentication\u003C\u002Fh4>\n\u003Cpre>\u003Ccode>Authorization: Bearer aicom_XXXXXXXX_\u003Csecret>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>or:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>X-API-Key: aicom_XXXXXXXX_\u003Csecret>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch4>MCP Request Example\u003C\u002Fh4>\n\u003Cpre>\u003Ccode>{\"jsonrpc\":\"2.0\",\"method\":\"tools\u002Fcall\",\"params\":{\"name\":\"wp.posts.list\",\"arguments\":{\"post_type\":\"post\",\"posts_per_page\":10}},\"id\":1}\n\u003C\u002Fcode>\u003C\u002Fpre>\n","Use your AI subscription to manage WordPress: create Elementor pages, update content, automate tasks, and stay fully in control.",30,1620,"2026-07-01T12:23:00.000Z","6.0","7.4",[19,20,21,22,54],"rest-api","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Faicom\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faicom.3.9.0.zip",{"slug":58,"name":59,"version":60,"author":61,"author_profile":62,"description":63,"short_description":64,"active_installs":48,"downloaded":65,"rating":13,"num_ratings":13,"last_updated":66,"tested_up_to":15,"requires_at_least":67,"requires_php":17,"tags":68,"homepage":71,"download_link":72,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"webo-mcp","WEBO MCP","2.6.16","phuongwebo","https:\u002F\u002Fprofiles.wordpress.org\u002Fphuongwebo\u002F","\u003Cp>\u003Cstrong>WEBO MCP\u003C\u002Fstrong> is a WordPress MCP server — a complete \u003Cstrong>Model Context Protocol\u003C\u002Fstrong> gateway for WordPress. It lets AI agents and MCP-compatible clients (Claude Desktop, Cursor, Windsurf, n8n, and more) call well-defined tools over REST using JSON-RPC, instead of scraping the admin or sharing broad credentials.\u003C\u002Fp>\n\u003Cp>Official WEBO MCP website, documentation, and ecosystem hub: https:\u002F\u002Fwebomcp.com\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Why use WEBO MCP as your WordPress MCP server?\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Token-optimized unified tools:\u003C\u002Fstrong> every domain exposes two abilities — \u003Ccode>*-query\u003C\u002Fcode> (all reads) and \u003Ccode>*-mutate\u003C\u002Fcode> (all writes) — with a single \u003Ccode>action\u003C\u002Fcode> discriminator. \u003Ccode>tools\u002Flist\u003C\u002Fcode> payload is up to 70% smaller than per-operation APIs, which means less of the model’s context window is consumed by tool schemas, lower cost per session, and fewer hallucinated tool names.\u003C\u002Fli>\n\u003Cli>Primary router endpoint: \u003Ccode>POST \u002Fwp-json\u002Fmcp\u002Fv1\u002Frouter\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>Standard MCP-style flow: \u003Ccode>initialize\u003C\u002Fcode> \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> \u003Ccode>tools\u002Flist\u003C\u002Fcode> \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> \u003Ccode>tools\u002Fcall\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>Session lifecycle for clients (pass \u003Ccode>session_id\u003C\u002Fcode> or \u003Ccode>Mcp-Session-Id\u003C\u002Fcode> after \u003Ccode>initialize\u003C\u002Fcode>)\u003C\u002Fli>\n\u003Cli>Built-in tool registry for common WordPress operations (posts, media, terms, menus, options, and more)\u003C\u002Fli>\n\u003Cli>Bundled Abilities API + MCP Adapter integration, with automatic bridging from registered abilities to MCP tools (configurable)\u003C\u002Fli>\n\u003Cli>WordPress 7.0\u002FCore-aware bridge mode that uses Core Abilities\u002FAPI surfaces when available and falls back only when needed\u003C\u002Fli>\n\u003Cli>Public tool policy controls (category filters and optional allowlists) plus optional internal tool exposure for private environments\u003C\u002Fli>\n\u003Cli>Bounded MCP audit log, optional per-user\u002Frole\u002Fclient tool allowlists, and a read-only administrator health\u002Fstatus tool\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Security model (high level)\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>MCP access requires a real WordPress user context: Application Password over HTTP Basic, or an existing logged-in session.\u003C\u002Fli>\n\u003Cli>Optional site-wide or per-user API key and HMAC can be enabled in Settings as an additional gate (they do not replace WordPress authentication). Generate\u002Frotate from Settings \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Security; by default they are skipped for Application Password and Bearer clients unless you enable “Require for App Password \u002F Bearer”. Do not put the normal WEBO API key in URLs. For clients that cannot send headers, create a short-lived scoped \u003Ccode>mcp_token\u003C\u002Fcode> URL connector token in Settings -> WEBO MCP.\u003C\u002Fli>\n\u003Cli>Default access expectations for the router and \u003Ccode>GET \u002Fwp-json\u002Fwebo-mcp\u002Fv1\u002Ftools\u003C\u002Fcode>: users who are super admins, can \u003Ccode>manage_options\u003C\u002Fcode>, or can \u003Ccode>edit_posts\u003C\u002Fcode>, consistent with typical site operator and editor workflows (filterable).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Client guidance\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Always discover tools before calling them: run \u003Ccode>tools\u002Flist\u003C\u002Fcode>, pick an exact tool name from the response, validate required arguments, then call \u003Ccode>tools\u002Fcall\u003C\u002Fcode>. This reduces mistakes and keeps automation predictable in production.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Further documentation and optional integrations\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Official website, documentation, and ecosystem notes: https:\u002F\u002Fwebomcp.com\u003C\u002Fli>\n\u003Cli>Optional n8n community node (separate package): https:\u002F\u002Fwww.npmjs.com\u002Fpackage\u002Fn8n-nodes-webo-mcp\u003C\u002Fli>\n\u003Cli>Release notes and migration map: see docs\u002FRELEASE_NOTES_2.1.0.md and docs\u002FMIGRATION_GUIDE_2.1.0.md in the GitHub repository\u003C\u002Fli>\n\u003Cli>Cross-addon dispatcher map (granular legacy names removed from discovery): docs\u002FMCP_TOOL_MIGRATION.md\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Compatibility note: any MCP-capable client can be used; which large language model runs inside the client is outside this plugin.\u003C\u002Fp>\n\u003Cp>Standalone core tools included:\u003Cbr \u002F>\n– Site info\u003Cbr \u002F>\n– Content (posts\u002Fpages): \u003Ccode>webo\u002Fcontent-query\u003C\u002Fcode> (list, get, find-by-url, search-replace, list-revisions, get-revision; with author\u002Fdate\u002Ftaxonomy filters) and \u003Ccode>webo\u002Fcontent-mutate\u003C\u002Fcode> (create, update, delete, bulk-update-status, restore-revision, change-author)\u003Cbr \u002F>\n– Users: \u003Ccode>webo\u002Flist-users\u003C\u002Fcode> and \u003Ccode>webo\u002Fuser-mutate\u003C\u002Fcode> (add-to-blog, set-role)\u003Cbr \u002F>\n– Media: \u003Ccode>webo\u002Fmedia-query\u003C\u002Fcode> (list with search\u002FMIME\u002Fpost_id filters, get) and \u003Ccode>webo\u002Fmedia-mutate\u003C\u002Fcode> (upload, update, delete)\u003Cbr \u002F>\n– Comments: \u003Ccode>webo\u002Fcomment-query\u003C\u002Fcode> (list, get) and \u003Ccode>webo\u002Fcomment-mutate\u003C\u002Fcode> (create, update, delete)\u003Cbr \u002F>\n– Taxonomy\u002FTerms: \u003Ccode>webo\u002Ftaxonomy-query\u003C\u002Fcode> (discover, list, get) and \u003Ccode>webo\u002Ftaxonomy-mutate\u003C\u002Fcode> (create, update, delete)\u003Cbr \u002F>\n– Nav menus: list menus, list menu items (menu_order, db_id), add menu link from post (explicit post_id + menu_order required)\u003Cbr \u002F>\n– Plugins: \u003Ccode>webo\u002Fplugin-query\u003C\u002Fcode> (installed, active, updates, …) and \u003Ccode>webo\u002Fplugin-mutate\u003C\u002Fcode> (install, activate, deactivate; supports child-site \u003Ccode>site_id\u003C\u002Fcode> \u002F \u003Ccode>blog_id\u003C\u002Fcode> activation for network admins)\u003Cbr \u002F>\n– Health: \u003Ccode>webo\u002Fhealth-status\u003C\u002Fcode> (REST\u002Frouter status, Application Password support, permalinks, cron, object cache, plugin update summary, WordPress\u002FPHP versions, and redacted MCP config)\u003Cbr \u002F>\n– Client health: \u003Ccode>webo\u002Fclient-health-report\u003C\u002Fcode> (score 0–100, grade A–D, Markdown scoreboard for agency clients; hybrid foundation for Pro collectors later)\u003Cbr \u002F>\n– 404 logs: \u003Ccode>webo\u002Fget-404-logs\u003C\u002Fcode> (read-only Rank Math \u002F Redirection 404 monitor: url, hits, accessed, referrer)\u003Cbr \u002F>\n– Abilities bridge: \u003Ccode>webo\u002Fability-query\u003C\u002Fcode> and \u003Ccode>webo\u002Fability-execute\u003C\u002Fcode> in default layered mode. Only abilities with \u003Ccode>meta.mcp.public === true\u003C\u002Fcode> are visible and executable through WEBO MCP.\u003Cbr \u002F>\n– Themes: \u003Ccode>webo\u002Ftheme-query\u003C\u002Fcode> (installed themes) and \u003Ccode>webo\u002Ftheme-mutate\u003C\u002Fcode> (install from WordPress.org by slug, switch installed theme)\u003Cbr \u002F>\n– Theme context: \u003Ccode>webo\u002Ftheme-context\u003C\u002Fcode> (active theme info, block editor settings, style presets, registered blocks)\u003Cbr \u002F>\n– Block patterns: \u003Ccode>webo\u002Fblock-patterns\u003C\u002Fcode> (list\u002Fget patterns, list\u002Fget synced patterns)\u003Cbr \u002F>\n– Site stats: \u003Ccode>webo\u002Fsite-stats\u003C\u002Fcode> (overview, post counts, comment counts, user counts, media stats, activity summary)\u003Cbr \u002F>\n– Activity log: \u003Ccode>webo\u002Factivity-log\u003C\u002Fcode> (list events, summary, clear)\u003Cbr \u002F>\n– User profile: \u003Ccode>webo\u002Fuser-profile\u003C\u002Fcode> (get own profile, update display name \u002F bio \u002F preferences)\u003Cbr \u002F>\n– Site settings: \u003Ccode>webo\u002Fsite-settings\u003C\u002Fcode> (get and update the 20 most common WordPress options via MCP)\u003Cbr \u002F>\n– Content search: \u003Ccode>webo\u002Fcontent-search\u003C\u002Fcode> (full-text cross-post-type search with grouped results)\u003Cbr \u002F>\n– Menus: \u003Ccode>webo\u002Fmenu-query\u003C\u002Fcode>, \u003Ccode>webo\u002Fmenu-mutate\u003C\u002Fcode> (navigation menu items; not post\u002FCPT list order)\u003Cbr \u002F>\n– Post\u002FCPT order (optional): \u003Ccode>webo\u002Freorder-query\u003C\u002Fcode>, \u003Ccode>webo\u002Freorder-mutate\u003C\u002Fcode> when \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fmrphuong-webo\u002Fwebo-reorder\" rel=\"nofollow ugc\">Webo Reorder\u003C\u002Fa> is active — see docs\u002Fabilities\u002Freorder.md\u003Cbr \u002F>\n– Options: get\u002Fupdate (safe allowlist only), set site icon\u002Ffavicon from media\u003Cbr \u002F>\n– SEO (WordPress post): seo\u002Farticle-analysis — requires post_id; merges Rank Math meta when available (same data path as webo-rank-math\u002Fget-post-seo-meta); optional related-keyword suggestions via outbound request unless no_autocomplete is true\u003C\u002Fp>\n\u003Cp>Excluded by default in standalone-safe mode:\u003Cbr \u002F>\n– Bulk\u002Fmass execution tools\u003Cbr \u002F>\n– Plugin\u002Ftheme write-management abilities\u003Cbr \u002F>\n– Multisite-specific abilities\u003C\u002Fp>\n\u003Ch3>Privacy\u003C\u002Fh3>\n\u003Cp>This plugin does not phone home or send telemetry. MCP traffic is initiated by clients you configure. Some tools may perform outbound HTTP requests only when a client invokes them (for example seo\u002Farticle-analysis may request keyword suggestions from a third-party suggest API unless you pass no_autocomplete).\u003C\u002Fp>\n\u003Cp>The plugin stores the following options in the WordPress database when configured:\u003Cbr \u002F>\n– \u003Ccode>webo_mcp_api_key\u003C\u002Fcode>: API key used to authenticate MCP requests.\u003Cbr \u002F>\n– \u003Ccode>webo_mcp_hmac_secret\u003C\u002Fcode>: HMAC secret used to sign and validate MCP requests.\u003Cbr \u002F>\n– \u003Ccode>webo_mcp_require_secondary_credentials\u003C\u002Fcode>: when enabled, also require API key\u002FHMAC for Application Password and Bearer clients (off by default so standard connectors are not blocked).\u003Cbr \u002F>\n– \u003Ccode>webo_mcp_url_connector_tokens\u003C\u002Fcode>: hashed, expirable, revocable URL connector tokens for clients that cannot send headers. Raw tokens are shown once and are not stored.\u003Cbr \u002F>\n– \u003Ccode>webo_mcp_tool_allowlist_enabled\u003C\u002Fcode> and \u003Ccode>webo_mcp_tool_allowlist_rules\u003C\u002Fcode>: optional administrator-configured MCP tool allowlist policy.\u003Cbr \u002F>\n– \u003Ccode>webo_mcp_audit_log_enabled\u003C\u002Fcode>, \u003Ccode>webo_mcp_audit_log_max_entries\u003C\u002Fcode>, and \u003Ccode>webo_mcp_audit_log\u003C\u002Fcode>: bounded MCP tool-call audit log settings and compact audit events. Audit entries include user\u002Ftool\u002Faction\u002Fstatus data, anonymized IPs, and hashed session IDs; they do not store request payloads, API keys, HMAC secrets, or Application Passwords.\u003Cbr \u002F>\n– \u003Ccode>webo_mcp_installed_at\u003C\u002Fcode> and \u003Ccode>webo_mcp_review_notice\u003C\u002Fcode>: local timestamps\u002Fstate for an optional WordPress.org review request notice (not sent off-site; dismissible).\u003C\u002Fp>\n\u003Cp>These options are removed when the plugin is uninstalled via the WordPress Plugins screen.\u003C\u002Fp>\n\u003Ch3>External services\u003C\u002Fh3>\n\u003Cp>This plugin can connect to Google Suggest (Autocomplete) when a client calls the \u003Ccode>seo\u002Farticle-analysis\u003C\u002Fcode> tool and does not set \u003Ccode>no_autocomplete\u003C\u002Fcode> to true. This external request is used to return related keyword suggestions for SEO analysis.\u003C\u002Fp>\n\u003Cp>Service provider: Google LLC (Google Suggest \u002F Autocomplete API endpoint).\u003C\u002Fp>\n\u003Cp>Data sent and when:\u003Cbr \u002F>\n– Sent only when \u003Ccode>seo\u002Farticle-analysis\u003C\u002Fcode> is called with autocomplete enabled.\u003Cbr \u002F>\n– Sends the analysis query text to \u003Ccode>https:\u002F\u002Fsuggestqueries.google.com\u002Fcomplete\u002Fsearch\u003C\u002Fcode> as the \u003Ccode>q\u003C\u002Fcode> parameter.\u003Cbr \u002F>\n– Sends standard HTTP request metadata such as IP address and User-Agent as part of the web request.\u003C\u002Fp>\n\u003Cp>Terms of Service: https:\u002F\u002Fpolicies.google.com\u002Fterms\u003Cbr \u002F>\nPrivacy Policy: https:\u002F\u002Fpolicies.google.com\u002Fprivacy\u003C\u002Fp>\n\u003Ch3>Developer Hooks\u003C\u002Fh3>\n\u003Cp>The plugin exposes the following actions and filters for developers:\u003C\u002Fp>\n\u003Ch3>Actions\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ccode>webo_mcp_register_tools\u003C\u002Fcode>\u003Cbr \u002F>\nFired during plugin bootstrap after standalone tools are registered. Use this to register custom MCP tools from other plugins.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Filters\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_current_user_can_use_mcp\u003C\u002Fcode> (bool $allowed, int $user_id)\u003Cbr \u002F>\nGate for all MCP REST access. Default: super admin OR \u003Ccode>manage_options\u003C\u002Fcode> OR \u003Ccode>edit_posts\u003C\u002Fcode>. Override to tighten (e.g. super-admin only) in hardened installs.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_secondary_credentials_exempt\u003C\u002Fcode> (bool $exempt, WP_REST_Request $request)\u003Cbr \u002F>\nWhen true, skip optional API key \u002F HMAC after WordPress auth. Default true for Application Password (Basic) and Bearer sessions unless Settings \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Security \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> “Require for App Password \u002F Bearer” is enabled. Return false to always enforce \u003Ccode>X-WEBO-*\u003C\u002Fcode> headers.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_allow_internal_tools\u003C\u002Fcode> (bool $allow_internal, WP_REST_Request $request)\u003Cbr \u002F>\nControls whether internal tools are included in tools\u002Flist responses. Defaults to false for public environments.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_public_categories\u003C\u002Fcode> (array $categories, WP_REST_Request $request, array $tool)\u003Cbr \u002F>\nFilters which tool categories are exposed as public. Defaults to array( ‘wordpress’ ).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_rate_limit_per_hour\u003C\u002Fcode> (int $limit, string $client, array|null $profile)\u003Cbr \u002F>\nAdjust effective hourly limit (fallback for both buckets).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_rate_limit_read_per_hour\u003C\u002Fcode> \u002F \u003Ccode>webo_mcp_rate_limit_mutate_per_hour\u003C\u002Fcode> (int $limit, string $client, array|null $profile)\u003Cbr \u002F>\nPer-bucket limits after admin\u002Fprofile resolution.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_tool_is_mutating\u003C\u002Fcode> (bool $is_mutating, string $tool_name, array|null $tool_definition, array $arguments)\u003Cbr \u002F>\nOverride mutating classification for rate limits and read-only profiles.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_tool_arguments_allow_extra\u003C\u002Fcode> (bool $allow, string $tool_name, array $schema, array $arguments)\u003Cbr \u002F>\nWhen true, unknown tool argument keys are passed through (default false).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_disallow_url_token_query\u003C\u002Fcode> (bool $disallowed)\u003Cbr \u002F>\nBlock URL connector tokens in query strings (admin setting is the default source).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_rest_bom_guard_json_api_requests\u003C\u002Fcode> (bool $activate, string $uri_raw)\u003Cbr \u002F>\nOpt-in BOM sanitizer for all \u003Ccode>\u002Fwp-json\u002F\u003C\u002Fcode> responses (default false; MCP routes only).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_bridge_deny_patterns\u003C\u002Fcode> (array $patterns)\u003Cbr \u002F>\nControls which abilities are excluded when auto-bridging abilities into MCP tools (e.g. bulk, themes\u002F, multisite\u002F).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_auto_bridge_abilities\u003C\u002Fcode> (bool $enabled)\u003Cbr \u002F>\nEnables or disables automatic bridging of registered abilities into MCP tools. Defaults to true; bridge mode still controls whether the bridge is off, layered, or full.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_bridge_mode\u003C\u002Fcode> (string $mode)\u003Cbr \u002F>\nControls Abilities bridge mode after the \u003Ccode>WEBO_MCP_BRIDGE_MODE\u003C\u002Fcode> constant and before the stored option. Values: \u003Ccode>off\u003C\u002Fcode>, \u003Ccode>layered\u003C\u002Fcode>, \u003Ccode>full\u003C\u002Fcode>. Default: \u003Ccode>layered\u003C\u002Fcode>.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_enable_adapter\u003C\u002Fcode> (bool $enabled)\u003Cbr \u002F>\nEnables or disables the bundled WordPress MCP Adapter runtime. Defaults to true.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_validate_media_fetch_url\u003C\u002Fcode> (true|\\WP_Error $ok, string $url, array $parsed)\u003Cbr \u002F>\nReject unsafe URLs for webo\u002Fmedia-mutate upload action (return WP_Error to block).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>webo_mcp_tool_allowlist_allowed\u003C\u002Fcode> (bool $allowed, string $tool_name, WP_REST_Request $request, array $params, array $allowed_tools)\u003Cbr \u002F>\nFilters the optional per-user\u002Frole\u002Fclient allowlist decision.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Credits\u003C\u002Fh3>\n\u003Cp>Special thanks to the authors and open source projects that contributed to this plugin:\u003Cbr \u002F>\n– WordPress (https:\u002F\u002Fwordpress.org)\u003Cbr \u002F>\n– Abilities API (https:\u002F\u002Fgithub.com\u002FWordPress\u002Fabilities-api)\u003Cbr \u002F>\n  Reference: https:\u002F\u002Fmake.wordpress.org\u002Fai\u002F2025\u002F07\u002F17\u002Fabilities-api\u002F\u003Cbr \u002F>\n– MCP Adapter (https:\u002F\u002Fgithub.com\u002FWordPress\u002Fmcp-adapter)\u003Cbr \u002F>\n  Reference: https:\u002F\u002Fmake.wordpress.org\u002Fai\u002F2025\u002F07\u002F17\u002Fmcp-adapter\u002F\u003Cbr \u002F>\n– Composer (https:\u002F\u002Fgetcomposer.org)\u003Cbr \u002F>\n– Other PHP and JS libraries from the community\u003C\u002Fp>\n\u003Cp>If you use this plugin, please give credit to the authors of these libraries.\u003C\u002Fp>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>This plugin is licensed under the GPLv2 or later.\u003Cbr \u002F>\nSee https:\u002F\u002Fwww.gnu.org\u002Flicenses\u002Fgpl-2.0.html for details.\u003C\u002Fp>\n","WordPress MCP server for AI agents and automation, with JSON-RPC tools over REST for Claude, Cursor, n8n, and MCP clients.",1845,"2026-07-17T07:44:00.000Z","6.4",[20,21,69,22,70],"json-rpc","model-context-protocol","https:\u002F\u002Fwebomcp.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebo-mcp.2.6.16.zip",{"slug":74,"name":75,"version":76,"author":77,"author_profile":78,"description":79,"short_description":80,"active_installs":33,"downloaded":81,"rating":13,"num_ratings":13,"last_updated":82,"tested_up_to":15,"requires_at_least":83,"requires_php":17,"tags":84,"homepage":87,"download_link":88,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"cowboy-mcp","Cowboy MCP – MCP Server with Undo for Claude, ChatGPT, Gemini & Cursor","1.6.0","februality","https:\u002F\u002Fprofiles.wordpress.org\u002Ffebruality\u002F","\u003Cp>\u003Cstrong>Stop clicking around wp-admin. Just tell your AI what you want.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>You type what you want in plain English, and your AI does the real work inside WordPress for you – no menus to hunt through, no code to write.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>💬 \u003Cstrong>Do everything by chat\u003C\u002Fstrong> – create and edit posts and pages, run your WooCommerce shop, upload media, change settings, and fix errors when they crop up.\u003C\u002Fli>\n\u003Cli>↩️ \u003Cstrong>Undo any change\u003C\u002Fstrong> – a per-change undo journal and one-click database checkpoints let you roll back a single edit or the entire site.\u003C\u002Fli>\n\u003Cli>🔄 \u003Cstrong>Updates plugins & themes safely\u003C\u002Fstrong> – backup first, health check after, one-command undo if anything breaks.\u003C\u002Fli>\n\u003Cli>🛡️ \u003Cstrong>Safe by default\u003C\u002Fstrong> – safe mode confirms before anything destructive, you can preview any change before it runs, and every action is written to an audit log.\u003C\u002Fli>\n\u003Cli>🆓 \u003Cstrong>Free and open source\u003C\u002Fstrong> – every tool included, with deep WooCommerce, ACF, Elementor, and Wordfence support. No Pro tier, no subscription.\u003C\u002Fli>\n\u003Cli>🔒 \u003Cstrong>Your data stays yours\u003C\u002Fstrong> – self-hosted, no accounts, no phone-home. Your agent connects to your site; nothing leaves your server.\u003C\u002Fli>\n\u003Cli>🔌 \u003Cstrong>Works with your AI agent\u003C\u002Fstrong> – Claude, ChatGPT, Cursor, Codex, Gemini, and any MCP client. Set up in about two minutes.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Cowboy MCP is a full MCP server inside WordPress – Claude Code, Codex, and other AI agents connect straight to your site. Ask in plain language – “publish these three drafts,” “why is the checkout page 500-ing,” “bump every Summer Sale price 20%,” “clear the cache and re-check site health” – and your agent gets it done.\u003C\u002Fp>\n\u003Cp>Most WordPress AI plugins let an assistant write blog posts. Cowboy MCP lets your agent actually \u003Cem>run the site\u003C\u002Fem>: content, yes, but also the terminal-level work you’d normally stop and do by hand – WP-CLI, files, the database, error logs, and diagnostics. When something breaks, your agent can find it and fix it instead of just apologizing.\u003C\u002Fp>\n\u003Cp>Setup guides, the full capability list, and the security model live at \u003Ca href=\"https:\u002F\u002Fcowboymcp.com\" rel=\"nofollow ugc\">cowboymcp.com\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>What you can do with it\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Manage content by chat\u003C\u002Fstrong> – draft, edit, schedule, and publish posts and pages; upload media; sort categories and tags.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Run your store\u003C\u002Fstrong> – update WooCommerce products, prices, orders, and inventory in bulk.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Fix things that break\u003C\u002Fstrong> – read error logs, test emails and HTTP requests, inspect hooks and REST routes, and repair database tables. No SSH required.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Do the developer stuff\u003C\u002Fstrong> – run WP-CLI commands, edit files in \u003Ccode>wp-content\u003C\u002Fcode>, and take site snapshots before big changes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Vibe code your site\u003C\u002Fstrong> – describe the theme tweak or feature you want; your agent writes the code, checks the error log, and fixes what it broke. With per-change undo and database checkpoints, vibe coding a live site stops being reckless.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Get more done, faster\u003C\u002Fstrong> – your agent stays sharp and accurate even with a big toolset, so it picks the right action the first time.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Works with\u003C\u002Fh4>\n\u003Cp>Claude Code, Codex, Opencode, the Claude desktop and web apps (one-click sign-in), plus Cursor, Windsurf, Cline, Zed, VS Code, ChatGPT, Gemini, and n8n – anything that speaks MCP.\u003C\u002Fp>\n","MCP server for Claude, ChatGPT & Gemini. Vibe code your site, run WooCommerce, fix bugs by chat. Undo any change. Free.",250,"2026-07-21T21:55:00.000Z","6.2",[20,85,86,22,23],"chatgpt","claude","https:\u002F\u002Fcowboymcp.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcowboy-mcp.1.6.0.zip",{"slug":90,"name":91,"version":92,"author":93,"author_profile":94,"description":95,"short_description":96,"active_installs":13,"downloaded":97,"rating":13,"num_ratings":13,"last_updated":98,"tested_up_to":15,"requires_at_least":51,"requires_php":52,"tags":99,"homepage":102,"download_link":103,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"ibs-webmcp-gateway","IBS WebMCP Gateway","1.0.3","ibsofts","https:\u002F\u002Fprofiles.wordpress.org\u002Fibsofts\u002F","\u003Cp>🌐 \u003Ca href=\"https:\u002F\u002Fwww.ibsofts.com\u002Fplugins\" rel=\"nofollow ugc\">Official Website\u003C\u002Fa>  | 📖 \u003Ca href=\"https:\u002F\u002Fsupport.ibsofts.com\u002Fknowledgebase\u002Farticles\u002Finstalling-and-activating-ibs-webmcp-gateway-free\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa> | 💁 \u003Ca href=\"https:\u002F\u002Fsupport.ibsofts.com\u002F\" rel=\"nofollow ugc\">Support\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>🚀 \u003Cstrong>IBS WebMCP Gateway\u003C\u002Fstrong> makes your WordPress site and WooCommerce store AI Agent Ready by exposing content, commerce, and website capabilities through WebMCP-compatible tools.\u003C\u002Fp>\n\u003Ch3>🚀 Unlock AI-Ready Capabilities for Your Website\u003C\u002Fh3>\n\u003Cp>With IBS WebMCP Gateway enabled:\u003C\u002Fp>\n\u003Cp>☑️ Let AI agents discover and access your website content.\u003Cbr \u002F>\n☑️ Allow AI agents to search and discover products in your WooCommerce store.\u003Cbr \u002F>\n☑️ Help AI agents understand your website’s navigation and structure.\u003Cbr \u002F>\n☑️ Prepare your website for browser-native AI interactions and the next generation of  AI-powered commerce.\u003C\u002Fp>\n\u003Ch3>🚀 What is WebMCP?\u003C\u002Fh3>\n\u003Cp>WebMCP is an emerging browser-native protocol that allows websites to expose structured tools directly to AI systems. Instead of forcing AI agents to parse webpages or analyze screenshots, WebMCP providers provide clear, structured interfaces that AI assistants can interact with programmatically. Think of it as turning your website into an AI-accessible tool layer for browser agents and automation systems.\u003C\u002Fp>\n\u003Cp>With \u003Cstrong>IBS WebMCP Gateway\u003C\u002Fstrong>, your \u003Cstrong>WordPress\u003C\u002Fstrong> and \u003Cstrong>WooCommerce\u003C\u002Fstrong> website becomes AI Agent Ready.\u003C\u002Fp>\n\u003Ch3>🚀 How It Works\u003C\u002Fh3>\n\u003Cp>☑️ Install and activate IBS WebMCP Gateway on your WordPress site.\u003Cbr \u002F>\n☑️ The plugin automatically makes your website content and store features available to AI.\u003Cbr \u002F>\n☑️ AI can connect to your website and access your content, products, and store.\u003Cbr \u002F>\n☑️ Your website is now ready to work with AI.\u003C\u002Fp>\n\u003Ch3>🚀 Core Features\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>WordPress Website Tools\u003C\u002Fstrong>\u003Cbr \u002F>\n☑️ \u003Cstrong>search_posts\u003C\u002Fstrong> – Search posts, pages, and custom post types\u003Cbr \u002F>\n☑️ \u003Cstrong>get_post\u003C\u002Fstrong> – Retrieve a single post by ID or slug\u003Cbr \u002F>\n☑️ \u003Cstrong>get_posts\u003C\u002Fstrong> – Retrieve posts and pages with pagination support\u003Cbr \u002F>\n☑️ \u003Cstrong>get_menu\u003C\u002Fstrong> – Return navigation menu items\u003Cbr \u002F>\n☑️ \u003Cstrong>get_categories\u003C\u002Fstrong> – List categories, tags, and taxonomy terms\u003Cbr \u002F>\n☑️ \u003Cstrong>get_site_info\u003C\u002Fstrong> – Retrieve site name, description, URL, and language settings\u003C\u002Fp>\n\u003Cp>\u003Cstrong>WooCommerce Store Tools\u003C\u002Fstrong>\u003Cbr \u002F>\n☑️ \u003Cstrong>wc_search_products\u003C\u002Fstrong> – Search products and product categories\u003Cbr \u002F>\n☑️ \u003Cstrong>wc_get_product\u003C\u002Fstrong> – Retrieve detailed product information\u003Cbr \u002F>\n☑️ \u003Cstrong>wc_get_product_categories\u003C\u002Fstrong> – List product categories\u003Cbr \u002F>\n☑️ \u003Cstrong>wc_get_products_by_category\u003C\u002Fstrong> – Retrieve products from a specific category\u003Cbr \u002F>\n☑️ \u003Cstrong>wc_get_checkout_fields\u003C\u002Fstrong> – Retrieve WooCommerce checkout form fields\u003C\u002Fp>\n\u003Cp>\u003Cem>Additional features will be available in the Pro Version.\u003C\u002Fem>\u003C\u002Fp>\n\u003Ch3>🚀 Privacy\u003C\u002Fh3>\n\u003Cp>☑️ No telemetry or usage tracking.\u003Cbr \u002F>\n☑️ WebMCP tools run within your WordPress installation.\u003Cbr \u002F>\n☑️ Website owners control which capabilities are exposed.\u003Cbr \u002F>\n☑️ Built-in activity logging for monitoring tool usage.\u003Cbr \u002F>\n☑️ Rate limiting helps protect against excessive requests.\u003C\u002Fp>\n","Make your WordPress and WooCommerce site AI Agent Ready with WebMCP tools for content, products, and navigation.",248,"2026-06-30T09:32:00.000Z",[19,20,21,100,101],"webmcp","woocommerce","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fibs-webmcp-gateway.1.0.3.zip",{"slug":105,"name":106,"version":107,"author":108,"author_profile":109,"description":110,"short_description":111,"active_installs":112,"downloaded":113,"rating":114,"num_ratings":115,"last_updated":116,"tested_up_to":117,"requires_at_least":118,"requires_php":119,"tags":120,"homepage":124,"download_link":125,"security_score":126,"vuln_count":127,"unpatched_count":13,"last_vuln_date":128,"fetched_at":28},"activecampaign-subscription-forms","ActiveCampaign – The autonomous marketing platform","8.1.21","activecampaign","https:\u002F\u002Fprofiles.wordpress.org\u002Factivecampaign\u002F","\u003Cp>ActiveCampaign is the autonomous marketing platform built to transform how marketers, agencies, and business owners work. Use Active Intelligence to power goal-aware automations and orchestrate personalized experiences across email, SMS, and WhatsApp. Effortlessly integrate with 1000+ apps, uncover deep performance insights, and optimize your workflows so you win every day.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Autonomous marketing\u003C\u002Fstrong>\u003Cbr \u002F>\nBuilt on the foundation of marketing automation, fuel your marketing strategy and customer journeys with AI-driven execution, optimization, and insight at every step.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>AI agents\u003C\u002Fstrong>\u003Cbr \u002F>\nRun entire marketing campaigns through simple prompts, backed by Active Intelligence.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Cross-channel marketing\u003C\u002Fstrong>\u003Cbr \u002F>\nReach prospects and customers wherever they are, with email, SMS, WhatsApp, and more.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>On-brand, personalized content\u003C\u002Fstrong>\u003Cbr \u002F>\nCreative tools that deliver professional, conversion-ready designs for email and landing pages.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>CRM\u003C\u002Fstrong>\u003Cbr \u002F>\nTrack, manage, and automate your sales process.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>1000+ apps & integrations\u003C\u002Fstrong>\u003Cbr \u002F>\nConnect ActiveCampaign to your favorite tools.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>WooCommerce + ActiveCampaign\u003C\u002Fstrong>\u003Cbr \u002F>\nTurn on ActiveCampaign \u003Ca href=\"https:\u002F\u002Fhelp.activecampaign.com\u002Fhc\u002Fen-us\u002Farticles\u002F9127994708636-Use-ActiveCampaign-Site-Tracking-with-WordPress\" rel=\"nofollow ugc\">site tracking\u003C\u002Fa> in just a few clicks.\u003Cbr \u002F>\nSeamlessly add ActiveCampaign forms to your WordPress website.\u003C\u002Fp>\n\u003Cp>Learn more: \u003Ca href=\"https:\u002F\u002Fhelp.activecampaign.com\u002Fhc\u002Fen-us\u002Farticles\u002F222475388-Use-the-ActiveCampaign-WordPress-plugin\" rel=\"nofollow ugc\">How to use the ActiveCampaign WordPress Plugin\u003C\u002Fa>\u003C\u002Fp>\n","Add ActiveCampaign contact forms and live chat to any post, page, or sidebar. Also enable ActiveCampaign site tracking for your WordPress blog.",40000,1410030,90,29,"2025-11-14T07:32:00.000Z","6.8.6","2.0","5.4",[108,20,121,122,123],"business-growth","email-marketing","marketing-automation","http:\u002F\u002Fwww.activecampaign.com\u002Fapps\u002Fwordpress","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Factivecampaign-subscription-forms.zip",97,4,"2025-04-04 00:00:00",{"error":130,"url":131,"statusCode":132,"statusMessage":133,"message":133},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fsproutos\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":135,"versions":136},8,[137,143,150,157,164,171,178,185],{"version":6,"download_url":25,"svn_tag_url":138,"released_at":27,"has_diff":139,"diff_files_changed":140,"diff_lines":27,"trac_diff_url":141,"vulnerabilities":142,"is_current":130},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsproutos\u002Ftags\u002F1.1.3\u002F",false,[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsproutos%2Ftags%2F1.1.2&new_path=%2Fsproutos%2Ftags%2F1.1.3",[],{"version":144,"download_url":145,"svn_tag_url":146,"released_at":27,"has_diff":139,"diff_files_changed":147,"diff_lines":27,"trac_diff_url":148,"vulnerabilities":149,"is_current":139},"1.1.2","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsproutos.1.1.2.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsproutos\u002Ftags\u002F1.1.2\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsproutos%2Ftags%2F1.1.1&new_path=%2Fsproutos%2Ftags%2F1.1.2",[],{"version":151,"download_url":152,"svn_tag_url":153,"released_at":27,"has_diff":139,"diff_files_changed":154,"diff_lines":27,"trac_diff_url":155,"vulnerabilities":156,"is_current":139},"1.1.1","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsproutos.1.1.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsproutos\u002Ftags\u002F1.1.1\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsproutos%2Ftags%2F1.1.0&new_path=%2Fsproutos%2Ftags%2F1.1.1",[],{"version":158,"download_url":159,"svn_tag_url":160,"released_at":27,"has_diff":139,"diff_files_changed":161,"diff_lines":27,"trac_diff_url":162,"vulnerabilities":163,"is_current":139},"1.1.0","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsproutos.1.1.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsproutos\u002Ftags\u002F1.1.0\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsproutos%2Ftags%2F0.0.11&new_path=%2Fsproutos%2Ftags%2F1.1.0",[],{"version":165,"download_url":166,"svn_tag_url":167,"released_at":27,"has_diff":139,"diff_files_changed":168,"diff_lines":27,"trac_diff_url":169,"vulnerabilities":170,"is_current":139},"0.0.11","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsproutos.0.0.11.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsproutos\u002Ftags\u002F0.0.11\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsproutos%2Ftags%2F0.0.10&new_path=%2Fsproutos%2Ftags%2F0.0.11",[],{"version":172,"download_url":173,"svn_tag_url":174,"released_at":27,"has_diff":139,"diff_files_changed":175,"diff_lines":27,"trac_diff_url":176,"vulnerabilities":177,"is_current":139},"0.0.10","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsproutos.0.0.10.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsproutos\u002Ftags\u002F0.0.10\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsproutos%2Ftags%2F0.0.9&new_path=%2Fsproutos%2Ftags%2F0.0.10",[],{"version":179,"download_url":180,"svn_tag_url":181,"released_at":27,"has_diff":139,"diff_files_changed":182,"diff_lines":27,"trac_diff_url":183,"vulnerabilities":184,"is_current":139},"0.0.9","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsproutos.0.0.9.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsproutos\u002Ftags\u002F0.0.9\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsproutos%2Ftags%2F0.0.8&new_path=%2Fsproutos%2Ftags%2F0.0.9",[],{"version":186,"download_url":187,"svn_tag_url":188,"released_at":27,"has_diff":139,"diff_files_changed":189,"diff_lines":27,"trac_diff_url":27,"vulnerabilities":190,"is_current":139},"0.0.8","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsproutos.0.0.8.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsproutos\u002Ftags\u002F0.0.8\u002F",[],[]]