WordPress MCP Connector
Turn Your WordPress Site Into An MCP Server
Install one free plugin and your WordPress site becomes a Model Context Protocol server. ChatGPT, Claude, Cursor and Windsurf can then read and change the site itself, rather than working from text you paste in. It covers WordPress core out of the box and works with any plugin that registers WordPress Abilities.
What makes it different
- Real OAuth, not a shared key
- Profiles decide what agents see
- Your server, no middleman
- Works with any plugin’s Abilities
- One endpoint, every client
- Free, with no upgrade path
In detail
What each part actually does
Activating the plugin turns the site you already run into an MCP server. Nothing else to host, nothing else to sign up for.
How the connection is made
The plugin adds one JSON-RPC 2.0 endpoint under wp-json on your own domain, and that single endpoint serves every client.
There is no middleware to host, no daemon to keep alive and no separate service to open an account with. Zero external dependencies, no Composer install, no build step.
What an agent can reach
Its own tools cover WordPress core: posts, pages, media, comments, users, taxonomies, menus, plugins, themes and settings, which is most of what an editor does in wp-admin. That works on a plain site with nothing else installed.
Everything past core comes from WordPress Abilities, the standard way added in WordPress 6.9 for a plugin to describe what it can do and who may use it.
Profiles, the part that matters
A profile decides what a given connection can see. A content profile exposes posts and media and nothing else. An administrative profile exposes more. You can define your own, which is what most people settle on once they know which dozen tools they actually use.
Abilities from other plugins start switched off in every profile, Full Access included, and you turn them on profile by profile.
Authentication done properly
ChatGPT and Claude connect over real OAuth 2.0 with PKCE rather than a shared key pasted into a settings box. You paste your site address into the assistant and sign in to WordPress.
Since 1.6.8 there is no client ID or secret to generate first, because both sides identify themselves with a published metadata document, and the approval screen names the app asking and the domain that published it.
It runs on your server, not ours. The endpoint is on your domain, the profiles are yours to set, and nothing about your site passes through us.
What you get
Everything the plugin can reach
All 21 of these ship in the free plugin, which you install and run yourself.
Integrations and security
- MCP server endpoint
- WordPress core tools
- Zero external dependencies
- ChatGPT via OAuth 2.0
- Claude via OAuth 2.0
- OAuth 2.0 with PKCE
- Capability checks on every call
- Admin-only authorization
- WordPress Abilities from any plugin
What sets it apart
- Real OAuth, not a shared key
- Profiles decide what agents see
- Your server, no middleman
- Works with any plugin’s Abilities
- One endpoint, every client
- Free, with no upgrade path
- Profile-based access control
- Encrypted client secrets
- Token expiry and refresh
- Cursor and Windsurf support
- Guided client setup
- Precise edits, previewed and reversible, and duplication of any page, post or product as a draft
Ready to install WordPress MCP Connector?
Most people have it running in a few minutes, and the setup guide covers each screen along the way.
The two other ways to put an agent inside WordPress
Most alternatives fall into one of two groups: a developer library you have to write code against, or a bare-bones server that offers a handful of endpoints and stops there.
| What to compare | How it works here |
|---|---|
| Finished plugin vs developer library | Here you install the plugin, pick a profile and connect. The official WordPress adapter is a library for turning your own abilities into tools, so someone has to write and maintain PHP before an agent can do anything. |
| OAuth for ChatGPT vs tokens only | ChatGPT connects over OAuth here. A server that only accepts bearer tokens or Basic Auth may run fine in Claude Desktop and Cursor, yet ChatGPT users never get past the first screen. |
| Opt-in abilities vs everything at once | Any plugin that registers WordPress Abilities gets tools here, and each stays off until you switch it on, marked Write or Destructive when it can change things. Without that step, whatever a server exposes is open to every connection. |
| Scoped profiles vs all or nothing | Profiles let you hand an agent a read-only connection. With no permission layer, a server exposes everything the signed-in user can do, so there is no way to offer a safe research-only link. |
| Encrypted secrets vs plaintext options | Client secrets are stored encrypted. A plugin that writes API credentials into the options table as plain text gives them away in every database export and nightly backup. |
| Self-hosted vs relay service | Your MCP client talks to the REST API on your own site. No relay service sits between them, so your content does not pass through anyone else on the way. |
Cost
What it costs
The plugin is free. The only things you pay for are ones you already have.
The plugin
Free on WordPress.org, with no per site license and no paid tier holding features back. Install it on one site or on fifty.
Your hosting
It runs inside the WordPress site you already pay to host. There is no service of ours in the middle and nothing extra to run.
Your AI tools
Whatever you use to connect, ChatGPT, Claude, Cursor or Windsurf, is billed by whoever provides it. We are not between you and them.
If you would rather not run it yourself, we manage WordPress for other companies, and that is a separate service rather than a license for this plugin.
Who WordPress MCP Connector is for
Content teams publishing at volume
Drafts, tags, scheduling and tidying up old posts take far more editorial time than anyone budgets for. Put an agent on a content profile, let it work through them in batches, and spend your time checking the results instead of opening the same five screens for each article.
Get startedStores with big catalogs
The connector reaches your store through the abilities WooCommerce registers, each one switched on by you, so what an agent can change there is whatever WooCommerce offers.
Get startedAgencies running many client sites
Have an agent audit metadata or clean up redirects on one client site, then move on to the next. Every site holds its own credentials and profile, so clients never share access, and cutting off one connection leaves the others untouched.
Get startedHow to get started
1. Install and pick a profile
Add the plugin from the WordPress Plugin Directory and activate it. Then go to Settings, MCP Connector and pick the profile this connection should use.
Get started2. Connect your AI client
ChatGPT and Claude take your site address as a custom connector, followed by a sign-in. Cursor, Windsurf and other editors use a WordPress Application Password plus the config the Client Setup tab generates for you.
Get started3. Put it to work
Tell the agent what you need in ordinary words. It can only call the tools your profile allows, WordPress checks permissions on each call, and the result looks the same as if you had made the change yourself.
Get startedFree on WordPress.org
MountDev AI MCP Connector for WordPress
Get it from the WordPress plugin directory, or find it from your own dashboard under Plugins, Add New. Cascadia Web Services publishes it for free under the GPL.
Documentation
How the connection is made, what an agent can reach, profiles, authentication, prerequisites and what to do when the connection will not hold.
What clients say about working with Cascadia
“I’ve always dreaded website management, but Cascadia has done an incredible job with my WordPress site, making it one less thing for me to worry about.”
“I’ve worked with Cascadia for several years now. They are always ready to help in any way I ask and can implement my ideas with ease. A company that values their clients!”
“Cascadia has been great to work with! We recently needed some updates, and Cascadia was quick to get them completed! We highly recommend Cascadia Web Services.”
“Cascadia is very responsive and we’re happy with them as our primary IT vendor.”
“They do great work, been using for years. Prompt responses to requests.”
Questions about WordPress MCP Connector?
Talk to usAsk us
Questions we get asked about this plugin
Looking at other ways to connect an agent? The comparisons go through the main options one at a time.
See the comparisonsWhat is an MCP server, in plain terms?
An MCP server gives an AI assistant a standard way into a system so it can act there instead of only describing what to do. Without one, you shuttle text between windows. With one, the assistant reads your posts, starts a draft, edits a product or checks a setting itself. This plugin makes your WordPress site that kind of server.
What is the Model Context Protocol?
Model Context Protocol, or MCP, is an open standard from Anthropic that sets out how AI clients connect to outside tools and data. Since any vendor can adopt it, one server can serve many clients. That is how a single plugin works with ChatGPT, Claude, Cursor and Windsurf, with no separate integration for each.
Is the plugin really free?
Yes. It is listed in the WordPress Plugin Directory under GPL v3 with no paid tier, no trial and nothing locked behind a license key, and you can run it on as many sites as you want. Having us set it up and manage it is a separate service, and entirely optional.
Is connecting AI to WordPress safe?
It comes down to the account you connect with. Each tool call passes the same permission checks WordPress runs in wp-admin, so an agent can never do more than that role allows. Credentials are encrypted at rest, tokens expire, and you can pull access from WordPress whenever you like. The choice that matters most is which profile you give each connection.
Which AI clients can I connect?
ChatGPT and Claude use OAuth 2.0, while Cursor, Windsurf and other editors use WordPress Application Passwords. The endpoint is not written for any one vendor, so any MCP client that supports either sign-in method works, including clients that pick up the standard later, with no plugin update needed.
How do I connect ChatGPT?
Copy the address shown under Settings, MCP Connector. In ChatGPT, open Settings, then Connectors, and add a custom connector with that address, leaving any Client ID and Secret fields empty. Sign in to WordPress when the window opens and approve the request, then use the Access tab to set what the assistant may do.
How do I connect Claude Desktop?
Take the address shown under Settings, MCP Connector. In Claude, go to Settings, Connectors and add a custom connector with it, and leave the Client ID and Secret fields blank. A WordPress sign-in window opens; approve the request there, then use the Access tab to set what the assistant is allowed to do.
Which plugins does it work with?
Any plugin that registers WordPress Abilities. Its abilities appear under Access, grouped by the plugin’s own categories, and stay off until you switch them on. The connector’s own WordPress tools work on a plain WordPress site with nothing else installed.
What if none of my plugins register abilities?
You keep the connector’s own tools for posts, pages, media, comments, users, taxonomies, menus, plugins, themes and settings, which handles most editorial and admin work. Abilities only add to that. A plugin that offers none causes no errors or warnings; it just adds nothing to the list.
Can I limit what an AI agent is allowed to do?
Yes, at two levels. A profile sets which tools a connection can see, anywhere from read-only to full access, and you can build your own. Below that, the WordPress role of the connecting account is a hard limit: sign in as an editor and no profile can let the agent install a plugin.
Does any of my data leave my server?
Nothing is sent to us or to any other third party. Your MCP client calls the REST API on your own site and gets its answers directly. Credentials and content stay on your server, and the one outside party that sees your content is the AI client you connected, under the terms you accepted with them.
Do I need an API key?
Not from us, since there is no account to create. With ChatGPT and Claude you sign in to your own site and approve the connection, with nothing to generate beforehand. With Cursor, Windsurf and other editors you create a WordPress Application Password in your own user profile. Your site issues both and your site revokes both.
What are the requirements?
You need WordPress 5.8 or later and PHP 7.4 or later. Version 2.2.0 has been tested up to WordPress 7.1.2, and tools from other plugins need WordPress 6.9 or later. Application Passwords only work on a site served over HTTPS, which most hosts now provide by default.
Can you set this up for me?
Yes. Installing it is quick; the part worth care on an important site is choosing the profile for each connection and the account each one signs in as. We can set it up under a managed plan or as a one-off job. Tell us what you want the agent to handle and we will take it from there.
How is this different from the official WordPress MCP adapter?
The WordPress project adapter is a developer library: you write code to expose abilities as MCP tools. This plugin is ready to use from the admin screen, with its own WordPress tools built in, OAuth for ChatGPT and Claude, and access profiles that also cover any plugin’s abilities. If you are building tools of your own, the adapter is the better fit; if you want to connect an agent today, this is.
