{"id":326332,"date":"2026-07-06T18:02:40","date_gmt":"2026-07-06T18:02:40","guid":{"rendered":"https:\/\/wordpress.org\/plugins\/bytecore-mcp-manager\/"},"modified":"2026-09-24T19:11:19","modified_gmt":"2026-09-24T19:11:19","slug":"bcs-mcp-manager","status":"closed","type":"plugin","link":"https:\/\/bn-in.wordpress.org\/plugins\/bcs-mcp-manager\/","author":23505918,"comment_status":"closed","ping_status":"closed","template":"","meta":{"version":"1.2.4","stable_tag":"1.2.4","tested":"7.1.2","requires":"6.2","requires_php":"7.4","requires_plugins":null,"header_name":"ByteCoreStack - MCP Connector for AI Tools","header_author":"ByteCore Stack","header_description":"Free WordPress AI plugin and MCP server \u2014 connects Claude, ChatGPT, Gemini, Cursor, Windsurf, and any MCP-compatible AI client to WordPress. Includes 150+ WordPress AI tools, OAuth 2.0 with PKCE, activity logging, and an admin dashboard.","assets_banners_color":"080f36","last_updated":"2026-09-24 19:11:19","external_support_url":"","external_repository_url":"","donate_link":"","header_plugin_uri":"https:\/\/bytecorestack.com\/plugins\/ai-connector\/","header_author_uri":"https:\/\/bytecorestack.com","rating":0,"author_block_rating":0,"active_installs":40,"downloads":904,"num_ratings":0,"support_threads":0,"support_threads_resolved":0,"author_block_count":0,"sections":["description","installation","faq","changelog"],"tags":{"1.0.0":{"tag":"1.0.0","author":"bytecorestack","date":"2026-07-06 18:02:29","revision":3598184},"1.1.0":{"tag":"1.1.0","author":"bytecorestack","date":"2026-07-27 17:26:14","revision":3624960},"1.2.0":{"tag":"1.2.0","author":"bytecorestack","date":"2026-08-06 17:32:44","revision":3636906},"1.2.1":{"tag":"1.2.1","author":"bytecorestack","date":"2026-08-18 13:23:22","revision":3652956},"1.2.2":{"tag":"1.2.2","author":"bytecorestack","date":"2026-09-18 02:26:07","revision":3701220},"1.2.3":{"tag":"1.2.3","author":"bytecorestack","date":"2026-09-24 16:58:44","revision":3711721},"1.2.4":{"tag":"1.2.4","author":"bytecorestack","date":"2026-09-24 19:11:19","revision":3711909}},"upgrade_notice":{"1.2.3":"<p>A guided setup and admin interface refresh make it easier to connect and monitor MCP clients. Existing OAuth connections, settings, and activity history are retained.<\/p>"},"ratings":[],"assets_icons":{"icon-128x128.png":{"filename":"icon-128x128.png","revision":3598182,"resolution":"128x128","location":"assets","locale":"","width":128,"height":128},"icon-256x256.png":{"filename":"icon-256x256.png","revision":3598182,"resolution":"256x256","location":"assets","locale":"","width":256,"height":256}},"assets_banners":{"banner-1544x500.png":{"filename":"banner-1544x500.png","revision":3598182,"resolution":"1544x500","location":"assets","locale":"","width":1544,"height":500},"banner-772x250.png":{"filename":"banner-772x250.png","revision":3598182,"resolution":"772x250","location":"assets","locale":"","width":772,"height":250}},"assets_blueprints":{},"all_blocks":[],"tagged_versions":["1.0.0","1.1.0","1.2.0","1.2.1","1.2.2","1.2.3","1.2.4"],"block_files":[],"assets_screenshots":{"screenshot-1.png":{"filename":"screenshot-1.png","revision":3598182,"resolution":"1","location":"assets","locale":"","width":1280,"height":800},"screenshot-2.png":{"filename":"screenshot-2.png","revision":3598182,"resolution":"2","location":"assets","locale":"","width":1280,"height":800},"screenshot-3.png":{"filename":"screenshot-3.png","revision":3598182,"resolution":"3","location":"assets","locale":"","width":1280,"height":800},"screenshot-4.png":{"filename":"screenshot-4.png","revision":3598182,"resolution":"4","location":"assets","locale":"","width":1280,"height":800},"screenshot-5.png":{"filename":"screenshot-5.png","revision":3598182,"resolution":"5","location":"assets","locale":"","width":1280,"height":800},"screenshot-6.png":{"filename":"screenshot-6.png","revision":3598182,"resolution":"6","location":"assets","locale":"","width":1280,"height":800},"screenshot-7.png":{"filename":"screenshot-7.png","revision":3598182,"resolution":"7","location":"assets","locale":"","width":1280,"height":800}},"screenshots":{"1":"Dashboard with server status, daily metrics, and recent activity.","2":"WordPress tools browser with searchable tool categories.","3":"Tool details with method and usage information.","4":"Connect &amp; settings with a guided setup for supported AI clients.","5":"Activity screen with filters and CSV export.","6":"WordPress dashboard widget with recent MCP activity.","7":"OAuth authorization screen for an AI client."}},"plugin_section":[262246],"plugin_tags":[261799,216196,229563,242115,226518],"plugin_category":[],"plugin_contributors":[266332],"plugin_business_model":[],"class_list":["post-326332","plugin","type-plugin","status-closed","hentry","plugin_section-dashboard-widgets","plugin_tags-ai-automation","plugin_tags-chatgpt","plugin_tags-claude","plugin_tags-mcp","plugin_tags-wordpress-ai","plugin_contributors-bytecorestack","plugin_committers-bytecorestack"],"banners":[],"icons":{"svg":false,"icon":"https:\/\/s.w.org\/plugins\/geopattern-icon\/bcs-mcp-manager_080f36.svg","icon_2x":false,"generated":true},"screenshots":[{"src":"https:\/\/ps.w.org\/bcs-mcp-manager\/assets\/screenshot-1.png?rev=3598182","caption":"Dashboard with server status, daily metrics, and recent activity."},{"src":"https:\/\/ps.w.org\/bcs-mcp-manager\/assets\/screenshot-2.png?rev=3598182","caption":"WordPress tools browser with searchable tool categories."},{"src":"https:\/\/ps.w.org\/bcs-mcp-manager\/assets\/screenshot-3.png?rev=3598182","caption":"Tool details with method and usage information."},{"src":"https:\/\/ps.w.org\/bcs-mcp-manager\/assets\/screenshot-4.png?rev=3598182","caption":"Connect &amp; settings with a guided setup for supported AI clients."},{"src":"https:\/\/ps.w.org\/bcs-mcp-manager\/assets\/screenshot-5.png?rev=3598182","caption":"Activity screen with filters and CSV export."},{"src":"https:\/\/ps.w.org\/bcs-mcp-manager\/assets\/screenshot-6.png?rev=3598182","caption":"WordPress dashboard widget with recent MCP activity."},{"src":"https:\/\/ps.w.org\/bcs-mcp-manager\/assets\/screenshot-7.png?rev=3598182","caption":"OAuth authorization screen for an AI client."}],"raw_content":"<!--section=description-->\n<p>ByteCoreStack - MCP Connector for AI Tools turns your WordPress site into a Model Context Protocol (MCP) server. Connect an MCP-compatible AI assistant and let it work with your site through structured WordPress tools. Use familiar requests to draft or update posts, review WooCommerce data, check SEO metadata, moderate comments, or inspect site health. Actions follow the connected WordPress user's capabilities.<\/p>\n\n<p>The plugin includes 335+ tools for WordPress core and optional integrations. These cover publishing and site administration, WooCommerce, SEO, forms, page builders, backups, CRM, analytics, translation, membership, community, and security. Integration tools appear when their supporting plugin is active, so the available tools match your site.<\/p>\n\n<p>Connect Claude.ai, Claude Desktop, ChatGPT, Cursor, or another compatible MCP client. Guided setup shows client-specific instructions and your endpoint, with a read-only prompt to verify the connection. Hosted AI clients generally require a publicly reachable HTTPS site.<\/p>\n\n<p>Authentication uses OAuth 2.0 with PKCE; there is no shared API key. The server stays disabled until you enable it. Requests are rate-limited, and you can optionally restrict access by IP address. Tool calls are recorded in the local Activity log with sensitive-looking values redacted. You can enable an additional confirmation step for supported destructive actions and revoke client access from the plugin settings.<\/p>\n\n<p>Use the admin dashboard to check calls and connected clients, browse available tools, and review recent activity. Connection health diagnostics help identify common setup problems, including HTTPS, permalink, firewall, and OAuth discovery issues. The plugin also provides a light or dark admin appearance and keeps its interface scoped to the plugin's own screens.<\/p>\n\n<p>No plugin-author telemetry is collected. See <strong>External Services<\/strong> for details about optional outbound requests.<\/p>\n\n<h3>External Services<\/h3>\n\n<p>This plugin does not send telemetry to the plugin author. Most features run on your WordPress site. Two tool groups can contact external services when explicitly invoked by an authenticated MCP client:<\/p>\n\n<ul>\n<li><strong>Plugin\/theme\/core install and update tools:<\/strong> use WordPress core installer and updater classes to contact official WordPress.org APIs. Plugin and theme installation accepts a directory slug, not an arbitrary download URL. Core update checks may send the standard WordPress version, locale, and environment details used by WordPress core.<\/li>\n<li><strong>wp_upload_media_from_url:<\/strong> makes an HTTP request to the image URL supplied to the tool to download that image into the Media Library. Private and loopback addresses are blocked, and the download is limited to 20 MB.<\/li>\n<\/ul>\n\n<p>These requests are made only when the corresponding tool is called. Activity records remain in your own WordPress database.<\/p>\n\n<!--section=installation-->\n<ol>\n<li>Install ByteCoreStack - MCP Connector for AI Tools from <strong>Plugins \u2192 Add New Plugin<\/strong>, or upload the bcs-mcp-manager folder to \/wp-content\/plugins\/.<\/li>\n<li>Activate the plugin from <strong>Plugins \u2192 Installed Plugins<\/strong>.<\/li>\n<li>Open <strong>ByteCoreStack - MCP Connector for AI Tools \u2192 Connect &amp; settings<\/strong> and enable the MCP server.<\/li>\n<li>Choose your AI client in the guided setup, copy the endpoint, and follow its connection instructions.<\/li>\n<li>Complete the OAuth authorization in your browser, then check <strong>Connection health<\/strong> or <strong>Activity<\/strong>.<\/li>\n<\/ol>\n\n<p>Your site must be publicly reachable over HTTPS for most hosted AI clients. A local site can be used with a compatible client running on the same computer, but cloud AI services cannot reach localhost.<\/p>\n\n<!--section=faq-->\n<dl>\n<dt id=\"is%20the%20plugin%20free%3F\"><h3>Is the plugin free?<\/h3><\/dt>\n<dd><p>Yes. No paid tiers, license keys, usage caps, or feature paywalls.<\/p><\/dd>\n<dt id=\"what%20is%20mcp%3F%20what%20can%20the%20ai%20tools%20do%3F\"><h3>What is MCP? What can the AI tools do?<\/h3><\/dt>\n<dd><p>MCP lets AI clients call tools provided by other services. This plugin exposes WordPress actions for content, orders, SEO, and site health, subject to the connected user's capabilities.<\/p><\/dd>\n<dt id=\"which%20ai%20clients%20can%20connect%3F\"><h3>Which AI clients can connect?<\/h3><\/dt>\n<dd><p>Guides are included for Claude.ai, Claude Desktop, ChatGPT, and Cursor. Other clients need OAuth and Streamable HTTP support; compatible older clients can use legacy SSE. Follow the in-plugin guide.<\/p><\/dd>\n<dt id=\"how%20do%20i%20connect%20an%20ai%20client%3F\"><h3>How do I connect an AI client?<\/h3><\/dt>\n<dd><p>Enable the server in <strong>Connect &amp; settings<\/strong>, choose your client, copy the endpoint, and follow the guide to authorize. Hosted clients generally require public HTTPS. Keep OAuth credentials private.<\/p><\/dd>\n<dt id=\"why%20does%20my%20ai%20client%20show%20fewer%20than%20335%20tools%3F\"><h3>Why does my AI client show fewer than 335 tools?<\/h3><\/dt>\n<dd><p>The total includes optional integrations. Clients see tools for your site; WooCommerce, ACF, forms, SEO, backups, CRM, page builders, and other tools appear when their supported plugin is active.<\/p><\/dd>\n<dt id=\"which%20plugins%20and%20features%20are%20integrated%3F\"><h3>Which plugins and features are integrated?<\/h3><\/dt>\n<dd><p>Integrations include WooCommerce, Easy Digital Downloads, ACF, Elementor, Bricks, Divi, Gravity Forms, WPForms, Ninja Forms, Formidable Forms, Contact Form 7, UpdraftPlus, FluentCRM, BuddyPress, bbPress, and The Events Calendar. SEO tools support Yoast SEO, Rank Math, All in One SEO, SEOPress, Slim SEO, and The SEO Framework. Availability depends on active plugins and configuration.<\/p><\/dd>\n<dt id=\"can%20an%20ai%20client%20change%20or%20delete%20content%20without%20permission%3F\"><h3>Can an AI client change or delete content without permission?<\/h3><\/dt>\n<dd><p>Actions follow the connected user's capabilities. The plugin cannot create users; role changes require promote_users. You can require confirmation for supported destructive actions. Activity is stored locally with sensitive-looking values redacted.<\/p><\/dd>\n<dt id=\"does%20the%20plugin%20send%20site%20data%20to%20bytecorestack%20or%20collect%20telemetry%3F\"><h3>Does the plugin send site data to ByteCoreStack or collect telemetry?<\/h3><\/dt>\n<dd><p>No plugin-author analytics or telemetry is collected. Activity stays in your database. Only explicitly called install\/update or image-download tools contact external services; see <strong>External Services<\/strong>.<\/p><\/dd>\n<dt id=\"does%20the%20plugin%20support%20rate%20limits%2C%20ip%20restrictions%2C%20and%20multisite%3F\"><h3>Does the plugin support rate limits, IP restrictions, and multisite?<\/h3><\/dt>\n<dd><p>The MCP endpoint is limited to 60 requests per minute per IP; client registration has a separate limit. An optional IP allowlist is available. On multisite, settings and activity are per site.<\/p><\/dd>\n<dt id=\"my%20client%20cannot%20connect.%20what%20should%20i%20check%3F\"><h3>My client cannot connect. What should I check?<\/h3><\/dt>\n<dd><p>Run <strong>Connection health \u2192 Run diagnostics<\/strong>. Confirm the server is enabled, use HTTPS, and avoid Plain permalinks. Save <strong>Settings \u2192 Permalinks<\/strong> once if needed. Security plugins, firewalls, CDNs, or hosts can restrict REST API access or block <code>\/.well-known\/<\/code> before WordPress loads. Follow the diagnostic's allowlist guidance; ask your provider to allow the discovery paths, <code>\/authorize<\/code>, <code>\/token<\/code>, <code>\/register<\/code>, and <code>\/wp-json\/bcs-mcp\/*<\/code> (including DELETE), and do not redirect OAuth POST requests. Exclude MCP routes from caching.<\/p><\/dd>\n<dt id=\"i%20restored%20a%20backup%20or%20want%20to%20disconnect%20a%20client.%20how%20do%20i%20reconnect%3F\"><h3>I restored a backup or want to disconnect a client. How do I reconnect?<\/h3><\/dt>\n<dd><p>Remove the connector from the AI client, then use <strong>Reset OAuth State<\/strong> in the plugin to revoke registered clients. Add the endpoint again and authorize. This disconnects all clients for that site.<\/p><\/dd>\n<dt id=\"can%20i%20add%20custom%20tools%3F\"><h3>Can I add custom tools?<\/h3><\/dt>\n<dd><p>Developers can register tools with bcs_mcp_register_tool() or use the bcs_mcp_tools filter. Callbacks should validate input and enforce WordPress capabilities.<\/p><\/dd>\n<dt id=\"what%20happens%20when%20i%20uninstall%20the%20plugin%3F\"><h3>What happens when I uninstall the plugin?<\/h3><\/dt>\n<dd><p>The uninstall routine removes the plugin's database tables, options, and transients. Export any activity data you want to keep before uninstalling.<\/p><\/dd>\n\n<\/dl>\n\n<!--section=changelog-->\n<h4>1.2.4<\/h4>\n\n<ul>\n<li>Security: Restrict user meta reads, writes, and deletes to safe profile fields. Writes and deletes require permission to promote users and reject array or object values, preventing role and capability changes through user meta. Role assignment also checks permission to edit the target user.<\/li>\n<\/ul>\n\n<h4>1.2.3<\/h4>\n\n<ul>\n<li>Added guided setup for Claude.ai, Claude Desktop, ChatGPT, and Cursor, with client-specific instructions, endpoint copying, and a read-only connection-check prompt.<\/li>\n<li>Reworked the compact admin page navigation and reorganized Connect &amp; settings to make the setup flow easier to follow and reduce repeated endpoint details.<\/li>\n<li>Added four dashboard metrics: Available Tools, Calls Today, Failed Today, and Connected Clients; refreshed the tool browser and recent activity presentation.<\/li>\n<li>Improved Connection health status, diagnostic results, and the Run Diagnostics card; refreshed Activity filters and layout for easier scanning.<\/li>\n<li>Polished the light and dark admin themes, card layouts, spacing, and button hover, focus, and active states.<\/li>\n<li>Kept existing OAuth connections, settings, and activity history intact on upgrade; addressed WordPress coding-standard findings in translated strings and template variables.<\/li>\n<li>Updated setup and troubleshooting documentation.<\/li>\n<\/ul>\n\n<h4>1.2.2<\/h4>\n\n<ul>\n<li>Added 19 WordPress tools, optional confirmation for destructive actions, and admin theme and tools-browser improvements.<\/li>\n<\/ul>\n\n<h4>1.2.1<\/h4>\n\n<ul>\n<li>Improved OAuth\/firewall diagnostics, connection-failure logging, credential redaction, and security-plugin compatibility.<\/li>\n<\/ul>\n\n<h4>1.2.0<\/h4>\n\n<ul>\n<li>Added 96+ tools and integrations, including analytics and translation support; removed external font requests from admin pages.<\/li>\n<\/ul>\n\n<h4>1.1.0<\/h4>\n\n<ul>\n<li>Added SEO, forms, LMS, e-commerce, page-builder, backup, CRM, community, and events integrations plus diagnostics and admin improvements.<\/li>\n<\/ul>\n\n<h4>1.0.0<\/h4>\n\n<ul>\n<li>Initial release with OAuth 2.0\/PKCE, MCP transports, WordPress tools, dashboard, and activity log.<\/li>\n<\/ul>","raw_excerpt":"Connect Claude, ChatGPT and other AI clients to WordPress with MCP, OAuth 2.0, and 335+ tools for content, WooCommerce and SEO.","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin\/326332","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin"}],"about":[{"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/types\/plugin"}],"replies":[{"embeddable":true,"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/comments?post=326332"}],"author":[{"embeddable":true,"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wporg\/v1\/users\/bytecorestack"}],"wp:attachment":[{"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/media?parent=326332"}],"wp:term":[{"taxonomy":"plugin_section","embeddable":true,"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_section?post=326332"},{"taxonomy":"plugin_tags","embeddable":true,"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_tags?post=326332"},{"taxonomy":"plugin_category","embeddable":true,"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_category?post=326332"},{"taxonomy":"plugin_contributors","embeddable":true,"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_contributors?post=326332"},{"taxonomy":"plugin_business_model","embeddable":true,"href":"https:\/\/bn-in.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_business_model?post=326332"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}