WSP MCP - Free WordPress MCP For Connecting AI Coding Agents
See the codeConnect Claude, ChatGPT, Cursor & any AI agent to WordPress, and manage your site by chat.
By WebSensePro — Official Shopify Partner & WordPress Agency
WSP MCP is a free MCP plugin for WordPress. Install it, connect your AI app, and just ask:
Why WSP MCP?
What is MCP? The Model Context Protocol is the standard way AI assistants connect to other apps. Once your site has an MCP plugin, any AI app that supports MCP can read and update your site — with your permission.
Prerequisites: WordPress 6.9+ (7.0.3 or 6.9.6+ recommended), PHP 7.4+ — that's it. Claude Desktop and OpenClaw use the mcp-remote bridge, which needs Node.js 18+; Cursor, Codex, Antigravity, and OpenCode connect natively.
Upgrading from before v2.0? The legacy MCP-Adapter / Abilities-API path and the MCP > Config Files page were removed in v2.2. Re-create your connection using the native endpoint on MCP > Connection.
ChatGPT: ChatGPT connects through the same OAuth sign-in as Claude Connectors — enable the OAuth server on MCP > Connection, then add your site's MCP URL as a connector in ChatGPT.
| Client | Guide |
|---|---|
| Claude (claude.ai / Desktop / mobile) | Full tutorial |
| OpenClaw | Video |
| Google Antigravity | Video |
| Codex | Video |
| All tutorials & abilities directory | wspmcp.com |
subscriber) and edit email, display name, role, or password. Require create_users / edit_users; off by default./%postname%/). Require manage_options; off by default.akismet/akismet.php). This plugin refuses to deactivate itself so the MCP connection can't cut itself off. Require activate_plugins; off by default.switch_themes; off by default.Contributed by @dulaj44 in #42.
edit_theme_options; off by default. Contributed by @dulaj44 in #41.object_id whose post type doesn't match the requested type is now rejected instead of silently stored.Recent releases: v2.9.0 — Navigation Menus tool group + Read Post tool · v2.8.0 — one-click Claude Connector sign-in (OAuth 2.1) + Analytics dashboard · v2.7.1 — object-level authorization on write tools (Patchstack) · v2.7.0 — Audit Log · v2.6.x — WPForms, Contact Form 7, Gravity Forms, UAE, Elementor design tools.
📋 Full history: see CHANGELOG.md.
edit_posts, manage_options, manage_woocommerce, …) and runs as the connected WordPress user, so an agent can only do what that account can do.edit_post / delete_post / read_post) and post type, matching WordPress core's own REST checks.tools/call is stored in wp_wsp_mcp_audit_log with user, IP, outcome (success / denied / error), and duration. Nothing leaves your server. Auto-pruned after 90 days.| Ability | Access |
|---|---|
| Read / Get / Create / Update / Delete Posts | read / write |
| Read / Create / Update / Delete Pages | read / write |
| Read Categories & Tags / Create | read / write |
| Read / Approve / Delete Comments | read / write |
| List / Get / Count Media | read |
| Update / Delete / Upload Media (from URL or base64) | write |
| Read Users | read |
| Create / Update Users | write |
| Search Content | read |
| Read Site Info & Active Plugins | read |
| Update Site Info (title, tagline, admin email) / Permalink Structure | write |
| Activate / Deactivate Plugins | write |
| Read Themes | read |
| Switch Theme | write |
| Read Menus / Menu Items / Menu Locations | read |
| Create / Delete Menu, Add / Update / Delete Menu Item, Assign Location | write |
| Ability | Access |
|---|---|
| Read Post Types / Read Items | read |
| Create / Update / Trash Item | write |
5 tools, off by default. Each item is checked against its post type's own permissions, so the AI can't edit other people's items or publish unless its user could do that in wp-admin.
| Ability | Access |
|---|---|
| Get Yoast SEO Meta (title, meta description, focus keyphrase) | read |
| Update Yoast SEO Meta | write |
| Ability | Access |
|---|---|
| Get Rank Math SEO Meta (title, description, focus keyword, score) | read |
| Update Rank Math SEO Meta | write |
| Ability | Access |
|---|---|
| List Elementor Pages / Templates | read |
| Get Page Structure / Element Settings / Find Element | read |
| Update Element, Add Widget, Add Container / Section, Remove Element | write |
| Duplicate / Move Element, Copy Element Styles | write |
| Get / Update Active Kit (global colors, fonts, layout) | read / write |
| Get / Update Page Settings | read / write |
| Get Widget Schema / Breakpoints | read |
| Convert CSS to Elementor Settings | write |
| Regenerate CSS | write |
20 tools.
update-active-kitandregenerate-cssrequiremanage_options; the rest requireedit_posts. All writes run throughwsp_elementor_sanitize_settings().
| Ability | Access |
|---|---|
| List UAE Widgets / Check Widget Usage | read |
| Activate / Deactivate / Bulk Toggle Widgets | write |
| List / Get Header, Footer & Blocks Templates | read |
| Create / Duplicate / Update / Trash / Restore Template | write |
| Add Section / Add Column / Move Element / Build Layout from JSON | write |
| Get UAE Settings / Theme Info / Extensions / Design Tokens | read |
| Update UAE Settings / Design Tokens | write |
45 tools, off by default. Writes require
edit_posts,publish_posts, ormanage_options.
| Ability | Access |
|---|---|
| List / Get Products | read |
| Create Product / Create Variation / Update Product | write |
| List Orders / Update Order Status | read / write |
Refund Order (requires manage_woocommerce) | write |
Create / List Coupons (requires manage_woocommerce) | write / read |
| Create Order Note | write |
List Customers (requires manage_woocommerce) | read |
| Sales Report / Low-Stock Alerts | read |
| Moderate Product Reviews | write |
| Ability | Access |
|---|---|
| List / Get Field Groups | read |
| Create / Update / Delete / Import Field Group | write |
| List / Get Fields | read |
| Create / Update / Delete / Duplicate Field, Force Sync | write |
| Get / Get-All / Get Field Object (values) | read |
| Update Deep (dot-notation) / Bulk Update / Delete Value | write |
| List Post Types / Taxonomies | read |
| Create Custom Post Type / Taxonomy (ACF 6.1+) | write |
| List / Create Options Page (create needs ACF Pro) | read / write |
| Get / Update Option Value | read / write |
27 tools. Value reads/writes accept a post/page ID,
user_<id>,term_<id>, oroptionsand enforce per-object capabilities. Structural changes requiremanage_options.
| Ability | Access |
|---|---|
| List / Get Forms | read |
| Create / Update / Delete Form, Update Form Settings | write |
| List / Get Entries | read |
| Update / Delete Entry | write |
| Get / Create / Update / Delete Notifications | read / write |
| Get / Create / Update / Delete Confirmations | read / write |
18 tools. List Forms and Get Form are ON by default. Uses Gravity Forms' own capabilities.
| Ability | Access |
|---|---|
| List / Get Forms | read |
| Create / Update / Delete Form | write |
| List / Get Entries (requires Flamingo) | read |
| Validate Form | read |
| Get Integrations (modules, reCAPTCHA status) | read |
| Moderate Entry (spam / unspam / trash / untrash) | write |
10 tools. List Forms and Get Form are ON by default. Uses CF7's own capabilities;
get-integrationsrequiresmanage_options.
| Ability | Access |
|---|---|
| List / Get Forms, Describe Schema, Get Form Stats | read |
| Create Form, Update Form Settings, Add / Update Field, Delete Form | write |
| List / Get / Delete Entries (WPForms Pro) | read / write |
12 tools. List Forms, Get Form, Describe Schema, and Get Form Stats are ON by default. Uses WPForms' own capabilities.
Built by WebSensePro — an AI-powered digital media agency delivering web development, WordPress, Shopify, SEO and AI automation for growing businesses, with offices in Denver, CO, Queens Village, NY and Karachi, Pakistan.
1,200+ projects delivered · 850+ websites launched · 500+ clients worldwide · 120+ AI automations deployed · 10+ years in digital services
44 followers · starred Jun 2026
PHP
99.5%
WSP MCP - Free WordPress MCP For Connecting AI Coding Agents
See the codeConnect Claude, ChatGPT, Cursor & any AI agent to WordPress, and manage your site by chat.
By WebSensePro — Official Shopify Partner & WordPress Agency
WSP MCP is a free MCP plugin for WordPress. Install it, connect your AI app, and just ask:
Why WSP MCP?
What is MCP? The Model Context Protocol is the standard way AI assistants connect to other apps. Once your site has an MCP plugin, any AI app that supports MCP can read and update your site — with your permission.
Prerequisites: WordPress 6.9+ (7.0.3 or 6.9.6+ recommended), PHP 7.4+ — that's it. Claude Desktop and OpenClaw use the mcp-remote bridge, which needs Node.js 18+; Cursor, Codex, Antigravity, and OpenCode connect natively.
Upgrading from before v2.0? The legacy MCP-Adapter / Abilities-API path and the MCP > Config Files page were removed in v2.2. Re-create your connection using the native endpoint on MCP > Connection.
ChatGPT: ChatGPT connects through the same OAuth sign-in as Claude Connectors — enable the OAuth server on MCP > Connection, then add your site's MCP URL as a connector in ChatGPT.
| Client | Guide |
|---|---|
| Claude (claude.ai / Desktop / mobile) | Full tutorial |
| OpenClaw | Video |
| Google Antigravity | Video |
| Codex | Video |
| All tutorials & abilities directory | wspmcp.com |
subscriber) and edit email, display name, role, or password. Require create_users / edit_users; off by default./%postname%/). Require manage_options; off by default.akismet/akismet.php). This plugin refuses to deactivate itself so the MCP connection can't cut itself off. Require activate_plugins; off by default.switch_themes; off by default.Contributed by @dulaj44 in #42.
edit_theme_options; off by default. Contributed by @dulaj44 in #41.object_id whose post type doesn't match the requested type is now rejected instead of silently stored.Recent releases: v2.9.0 — Navigation Menus tool group + Read Post tool · v2.8.0 — one-click Claude Connector sign-in (OAuth 2.1) + Analytics dashboard · v2.7.1 — object-level authorization on write tools (Patchstack) · v2.7.0 — Audit Log · v2.6.x — WPForms, Contact Form 7, Gravity Forms, UAE, Elementor design tools.
📋 Full history: see CHANGELOG.md.
edit_posts, manage_options, manage_woocommerce, …) and runs as the connected WordPress user, so an agent can only do what that account can do.edit_post / delete_post / read_post) and post type, matching WordPress core's own REST checks.tools/call is stored in wp_wsp_mcp_audit_log with user, IP, outcome (success / denied / error), and duration. Nothing leaves your server. Auto-pruned after 90 days.| Ability | Access |
|---|---|
| Read / Get / Create / Update / Delete Posts | read / write |
| Read / Create / Update / Delete Pages | read / write |
| Read Categories & Tags / Create | read / write |
| Read / Approve / Delete Comments | read / write |
| List / Get / Count Media | read |
| Update / Delete / Upload Media (from URL or base64) | write |
| Read Users | read |
| Create / Update Users | write |
| Search Content | read |
| Read Site Info & Active Plugins | read |
| Update Site Info (title, tagline, admin email) / Permalink Structure | write |
| Activate / Deactivate Plugins | write |
| Read Themes | read |
| Switch Theme | write |
| Read Menus / Menu Items / Menu Locations | read |
| Create / Delete Menu, Add / Update / Delete Menu Item, Assign Location | write |
| Ability | Access |
|---|---|
| Read Post Types / Read Items | read |
| Create / Update / Trash Item | write |
5 tools, off by default. Each item is checked against its post type's own permissions, so the AI can't edit other people's items or publish unless its user could do that in wp-admin.
| Ability | Access |
|---|---|
| Get Yoast SEO Meta (title, meta description, focus keyphrase) | read |
| Update Yoast SEO Meta | write |
| Ability | Access |
|---|---|
| Get Rank Math SEO Meta (title, description, focus keyword, score) | read |
| Update Rank Math SEO Meta | write |
| Ability | Access |
|---|---|
| List Elementor Pages / Templates | read |
| Get Page Structure / Element Settings / Find Element | read |
| Update Element, Add Widget, Add Container / Section, Remove Element | write |
| Duplicate / Move Element, Copy Element Styles | write |
| Get / Update Active Kit (global colors, fonts, layout) | read / write |
| Get / Update Page Settings | read / write |
| Get Widget Schema / Breakpoints | read |
| Convert CSS to Elementor Settings | write |
| Regenerate CSS | write |
20 tools.
update-active-kitandregenerate-cssrequiremanage_options; the rest requireedit_posts. All writes run throughwsp_elementor_sanitize_settings().
| Ability | Access |
|---|---|
| List UAE Widgets / Check Widget Usage | read |
| Activate / Deactivate / Bulk Toggle Widgets | write |
| List / Get Header, Footer & Blocks Templates | read |
| Create / Duplicate / Update / Trash / Restore Template | write |
| Add Section / Add Column / Move Element / Build Layout from JSON | write |
| Get UAE Settings / Theme Info / Extensions / Design Tokens | read |
| Update UAE Settings / Design Tokens | write |
45 tools, off by default. Writes require
edit_posts,publish_posts, ormanage_options.
| Ability | Access |
|---|---|
| List / Get Products | read |
| Create Product / Create Variation / Update Product | write |
| List Orders / Update Order Status | read / write |
Refund Order (requires manage_woocommerce) | write |
Create / List Coupons (requires manage_woocommerce) | write / read |
| Create Order Note | write |
List Customers (requires manage_woocommerce) | read |
| Sales Report / Low-Stock Alerts | read |
| Moderate Product Reviews | write |
| Ability | Access |
|---|---|
| List / Get Field Groups | read |
| Create / Update / Delete / Import Field Group | write |
| List / Get Fields | read |
| Create / Update / Delete / Duplicate Field, Force Sync | write |
| Get / Get-All / Get Field Object (values) | read |
| Update Deep (dot-notation) / Bulk Update / Delete Value | write |
| List Post Types / Taxonomies | read |
| Create Custom Post Type / Taxonomy (ACF 6.1+) | write |
| List / Create Options Page (create needs ACF Pro) | read / write |
| Get / Update Option Value | read / write |
27 tools. Value reads/writes accept a post/page ID,
user_<id>,term_<id>, oroptionsand enforce per-object capabilities. Structural changes requiremanage_options.
| Ability | Access |
|---|---|
| List / Get Forms | read |
| Create / Update / Delete Form, Update Form Settings | write |
| List / Get Entries | read |
| Update / Delete Entry | write |
| Get / Create / Update / Delete Notifications | read / write |
| Get / Create / Update / Delete Confirmations | read / write |
18 tools. List Forms and Get Form are ON by default. Uses Gravity Forms' own capabilities.
| Ability | Access |
|---|---|
| List / Get Forms | read |
| Create / Update / Delete Form | write |
| List / Get Entries (requires Flamingo) | read |
| Validate Form | read |
| Get Integrations (modules, reCAPTCHA status) | read |
| Moderate Entry (spam / unspam / trash / untrash) | write |
10 tools. List Forms and Get Form are ON by default. Uses CF7's own capabilities;
get-integrationsrequiresmanage_options.
| Ability | Access |
|---|---|
| List / Get Forms, Describe Schema, Get Form Stats | read |
| Create Form, Update Form Settings, Add / Update Field, Delete Form | write |
| List / Get / Delete Entries (WPForms Pro) | read / write |
12 tools. List Forms, Get Form, Describe Schema, and Get Form Stats are ON by default. Uses WPForms' own capabilities.
Built by WebSensePro — an AI-powered digital media agency delivering web development, WordPress, Shopify, SEO and AI automation for growing businesses, with offices in Denver, CO, Queens Village, NY and Karachi, Pakistan.
1,200+ projects delivered · 850+ websites launched · 500+ clients worldwide · 120+ AI automations deployed · 10+ years in digital services
44 followers · starred Jun 2026
PHP
99.5%