Back to Home
Banded-antonym160 icon

wordpress-mcp-server

Verified Safe

by Banded-antonym160

Overview

A comprehensive AI-powered platform for managing WordPress and WooCommerce sites, covering development, content, security, and performance tasks.

Installation

Run Command
npm start

Environment Variables

  • WORDPRESS_URL
  • WORDPRESS_USERNAME
  • WORDPRESS_PASSWORD

Security Notes

The server implements robust security measures for file system operations, including a whitelist approach for allowed directories and file extensions, strict path validation to prevent directory traversal, content scanning for malicious PHP functions (e.g., `eval`, `shell_exec`), and automatic backups with `.htaccess` protection. All endpoints enforce WordPress capabilities (e.g., `manage_options`, `edit_themes`, `edit_plugins`). Environment variables are used for credentials, preventing hardcoded secrets. The high score reflects strong internal safeguards for a tool that grants significant control; however, its power necessitates strong external security practices for the WordPress instance itself.

Similar Servers

Stats

Interest Score32
Security Score9
Cost ClassMedium
Avg Tokens350
Stars2
Forks1
Last Update2026-01-19

Tags

WordPressAI ManagementDeveloper ToolsAutomationWooCommerce