Linux 软件免费装
Banner图

Secure MCP Server for Claude, ChatGPT, Gemini and other AI providers

开发者 cyberlord92
更新时间 2026年8月12日 20:17
PHP版本: 7.4 及以上
WordPress版本: 7.0
版权: Expat
版权网址: 版权信息

标签

ai chatgpt claude mcp mcp-server

下载

1.0.0 1.2.0 1.2.1 1.2.2 1.3.0 1.3.1 1.4.0 1.1.0 1.1.1 1.2.3 1.4.3 1.4.4 1.4.1 1.4.2 1.4.5

详情介绍:

miniOrange Secure MCP Server is a complete WordPress MCP server plugin that turns your WordPress site into a fully working Model Context Protocol (MCP) server. Once installed, you can connect Claude to WordPress, connect ChatGPT to WordPress, or link any MCP-compatible AI in just 2 minutes. Ask AI to write blog posts, update WooCommerce products, manage Yoast SEO, moderate comments, handle contact form submissions, and much more, all through simple chat. Unlike other WordPress MCP server plugins that give AI full admin access, we put you in complete control. Role-based AI permissions, Turn each tool on or off, self-hosted OAuth 2.1 login, and full activity logs are all included, with no restrictions.

安装:

How to Install the WordPress MCP Server (2 Minutes)
  1. Log in to your WordPress admin dashboard.
  2. Go to Plugins → Add New.
  3. Search "Secure MCP Server"
  4. Click Install Now, then Activate.
  5. Done — the plugin is now active.
How to Connect Claude to WordPress
  1. Open Tools Secure MCP Server.
  2. Go to the "Connect to AI" tab.
  3. Copy your MCP server URL: https://YOUR-SITE/wp-json/mosmcp/v1/mcp
  4. Open Claude Desktop > Settings > Connector> Add custom connector.
  5. Paste the URL.
  6. Sign in to WordPress.
  7. Approve MCP tool access.
  8. Start chatting with your site through Claude.
How to Connect ChatGPT to WordPress
  1. Open Tools Secure MCP Server.
  2. Go to the "Connect to AI" tab.
  3. Copy your MCP server URL: https://YOUR-SITE/wp-json/mosmcp/v1/mcp
  4. Open Claude Desktop > Settings > Plugins>Browse Plugins> Add New Plugin.
  5. Paste the URL.
  6. Sign in to WordPress.
  7. Approve MCP tool access.
  8. Start chatting with your site through Chagpt.
Requirements

屏幕截图:

  • The AI Agents list — role-based ability policies for each registered agent, plus which ability packs are ready to use.
  • An agent's Overview tab — configuration, the access policy granted to each role, and its latest activity.
  • The Activity Log — every ability execution across every agent, filterable by agent, status, ability, user, and date.
  • Connecting an AI client: create a connector in ChatGPT, Claude, or any other MCP-compatible client, then paste the MCP URL via the miniOrange Gateway or a direct connection.
  • The Dashboard — active agents, total executions, success rate, and average latency at a glance.
  • A member's "Your AI Access" view — the tools available to their role, with a one-click path to connect an AI client.

升级注意事项:

1.4.5 ChatGPT onboarding improvements, a localhost-reachability warning, and a refreshed sign-in screen. No database changes and no manual upgrade steps required. 1.4.4 Onboarding UI improvements. No database changes and no manual upgrade steps required. 1.4.3 Minor bug fixes. 1.4.2 Redesigns the role & ability editor as a role-by-resource matrix and adds a guided onboarding checklist for new installs. No database changes and no manual upgrade steps required. 1.4.1 Adds an "Update Page" ability so an AI client can edit pages. 1.4.0 Adds a bundled library of 260+ ready-to-use WordPress abilities (core content, users & roles, comments, plus sets that auto-activate for WooCommerce, Advanced Custom Fields, Yoast SEO, Contact Form 7, WPForms, and Gravity Forms — every ability capability-gated and governed by the NHI Registry), a Test Connection check, and a Troubleshooting guide for diagnosing AI-client connection issues. Also fixes false "capability conflict" warnings for object-level abilities (display-only; permission enforcement is unchanged). No database changes and no manual upgrade steps required. 1.3.1 Minor fixes and reliability improvements. No upgrade steps required. 1.3.0 Adds a full execution activity log and a redesigned dashboard. Existing installs are migrated automatically; no manual upgrade steps are required. 1.2.3 UI refinements to the role & ability editor and general polish and fixes 1.2.2 Adds role-based access control to the NHI Registry and a member "My AI Access" view. Existing NHIs are migrated automatically and continue to work; review each one to scope its abilities per role. No manual upgrade steps are required. 1.2.1 Adds a floating Contact Support button, a quick Setup Guide link, and an improved deactivation feedback experience. No database changes or upgrade steps are required. 1.2.0 Adds the NHI Registry screen for managing connected AI clients, per-ability toggles on the Abilities screen, and a revamped plugin UI. No database changes; no upgrade steps required. 1.1.1 Adds support and deactivation feedback forms. No database changes; no upgrade steps required. 1.1.0 Introduces the OAuth-protected MCP server. The plugin now creates database tables; review the updated privacy note in the FAQ. 1.0.0 Initial release. No upgrade steps required.

常见问题:

What is the NHI Registry?

The NHI (Non-Human Identity) Registry is where you create and manage named, role-based ability policies for AI clients. Each NHI maps WordPress roles to the abilities those roles may invoke. When an AI client makes an MCP request, the effective set of allowed abilities is the union — across every enabled NHI — of the abilities granted to the connecting user's role(s). So two users connecting the same client to the same site can see different tools, based on their roles. You can create as many NHIs as you need and toggle them on or off independently.

Can I disable an NHI without deleting it?

Yes. Every NHI has an enable/disable toggle in the NHI Registry screen. A disabled NHI has no effect on MCP requests but its name and ability list are preserved, so you can re-enable it at any time without reconfiguring it.

Does this WordPress MCP server work with WooCommerce?

Yes — full WooCommerce MCP support with 45 tools covering products, variations, orders, customers, coupons, and reports. Perfect for AI-powered store management.

Does it work with Yoast SEO?

Yes. 8 dedicated Yoast SEO MCP tools for meta descriptions, focus keywords, Open Graph tags, robots meta, and sitemap inclusion. Deepest Yoast integration of any WordPress MCP server.

Does it work with Contact Form 7, WPForms, and Gravity Forms?

Yes — all three form plugins supported with 40 MCP tools total. Read entries, export CSV, moderate submissions, delete for GDPR compliance.

Is it safe to connect AI to my WordPress site?

With this MCP plugin, absolutely. AI never sees your WordPress password (OAuth 2.1 with PKCE). Every action is capability-checked at the WordPress core level. Role-based permissions limit what each AI can do. All actions are logged. You can revoke access anytime.

Can I disable specific MCP tools?

Yes. Every MCP tool has a global on/off toggle. Turn off dangerous actions like "delete permanently" while keeping safe ones enabled. One-click safety.

How do I revoke AI access?

Open the NHI Registry and click Revoke. The AI immediately loses access. You can also disable specific NHIs (preserving their config) or turn off individual tools instantly.

Can multiple AI connect at once?

Yes. Connect Claude, ChatGPT, Cursor, and Gemini simultaneously, each with different permissions. Track their activity separately in the audit log.

Why does the "Source" column show a namespace instead of a plugin name?

The Abilities API does not record which plugin registered a given ability. The namespace prefix (the part before the slash in the ability name) is the most reliable indicator of where an ability comes from.

更新日志:

1.4.5 1.4.4 1.4.3 1.4.2 1.4.1 1.4.0 1.3.1 1.3.0 1.2.3 1.2.2 1.2.1 1.2.0 1.1.1 1.1.0 1.0.0