Linux 软件免费装
Banner图

WindCodex Ops – Safe AI Actions

开发者 windcodex
更新时间 2026年9月28日 21:59
PHP版本: 7.4 及以上
WordPress版本: 7.1
版权: GPLv2 or later
版权网址: 版权信息

标签

automation chatgpt claude ai agent mcp server

下载

1.0.0 1.1.0 1.1.1

详情介绍:

WindCodex Ops connects Claude, ChatGPT, and other MCP-compatible AI platforms to your WordPress site through a fixed, tested list of actions – not open-ended code execution. If an action isn't on the list, the AI simply cannot do it, full stop. This plugin covers everyday content management, entirely free: posts, pages, media, SEO, site structure, and site health. Why Site Owners Choose WindCodex Ops Key Features 100+ tools across 5 groups, entirely free, no license key required, every group on by default: A flat 120 requests/minute rate limit applies. The undo window (72 hours by default, selectable 72, 96, or 168) applies to every write tool that supports undo: posts, pages, categories, and tags in this plugin. Use Cases For Store Owners The content, media, SEO, and structure tools below work on any post type, including WooCommerce products, so an AI assistant can help with all of this out of the box: Risk Levels Every tool group is tagged low or medium risk, shown as a badge in Settings > WindCodex Ops > Tools – this is informational, not a gate. Every group is on by default; the risk label helps a site owner decide which groups to turn off for their particular site. How It Works
  1. Install and activate the plugin.
  2. Go to Settings > WindCodex Ops and review which tool groups are enabled.
  3. Copy the Connector URL from the Connection tab and add it to Claude, ChatGPT, or any other MCP-compatible AI platform as a custom connector.
  4. Authenticate once via OAuth while logged in as an Administrator – most platforms register themselves automatically from the discovery URLs on the Connection tab.
  5. The AI can now use any enabled tool group against your site. Revoke any connected app at any time from the Connection tab.
Requirements Privacy This plugin has no code-execution capability of any kind – that's not present anywhere in the codebase. It does not collect data for WindCodex or sell any data. All tool calls run locally against your own site's database through WordPress's normal APIs. The plugin does send data externally in two specific, limited cases – see External services below for exactly what's sent, when, and to whom: (1) whatever a specific tool returns, sent only to the AI platform you've explicitly connected via OAuth and only when that platform calls that tool, and (2) a plugin slug (no site or user data) sent to the WordPress.org API only when the plugin-staleness tool is used. By default, deleting the plugin leaves all data in place; opt into full cleanup via Settings > WindCodex Ops > General > Data & Privacy.

安装:

From your WordPress dashboard
  1. Go to Plugins > Add New.
  2. Search for WindCodex Ops.
  3. Click Install Now, then Activate.
Manual installation
  1. Download the plugin ZIP file.
  2. Upload the windcodex-ops folder to /wp-content/plugins/.
  3. Activate through the Plugins screen in WordPress.
After activation
  1. Go to Settings > WindCodex Ops.
  2. Review which tool groups are on – everything is enabled by default; turn off anything you'd rather a connected AI not touch.
  3. Copy the Connector URL from the Connection tab and add it to your AI platform as a custom connector.

屏幕截图:

  • Settings > WindCodex Ops – Tools tab, showing every tool group with its risk badge and on/off toggle.
  • Settings > WindCodex Ops – General tab, including "Who can connect" and the Data & Privacy uninstall cleanup option.
  • Settings > WindCodex Ops – Activity tab, showing the log of AI actions with what ran, when, and whether it succeeded.

升级注意事项:

1.1.1 High-risk previews, email alerts on high-risk actions and the weekly activity summary now work. Also adds a Help menu to the settings page, plus Settings and Docs links on the Plugins screen. 1.1.0 Adds "Who can connect" (Administrators only by default). AI connections approved by an Editor or lower role stop working until you allow Editors in Settings > WindCodex Ops > General, or reconnect as an Administrator. 1.0.0 Initial release – no upgrade steps required.

常见问题:

Does this plugin phone home or require an account?

No license key or WindCodex account is required. The plugin does talk to external services in two specific cases – see External services above – but only to the AI platform you explicitly connect over the OAuth connector you set up yourself, and to the WordPress.org API when the plugin-staleness tool is used.

Can the AI run arbitrary code or SQL through this plugin?

No. WindCodex Ops has no code-execution capability of any kind – not client-side, not server-side. The AI can only call the fixed, pre-approved list of tools this plugin exposes.

How does authentication work?

OAuth only. Most platforms register themselves automatically via the discovery URLs shown on the Connection tab. If auto-registration fails, paste the Client ID/Secret from that same tab into the platform's Advanced/OAuth settings instead. The Connection tab lists every app that's ever connected, who it's currently acting as, and lets you revoke any one of them individually.

Who can connect an AI app?

Only Administrators, by default. Anyone else who reaches the consent screen is told their account isn't allowed to connect. To let Editors connect too, change Settings > WindCodex Ops > General > Who can connect. Each connection acts with the permissions of the person who approved it – there is no shared or fallback account – and stops working immediately if that person loses the role or is deleted. An Editor's connection can only do what an Editor can do in the dashboard.

Which AI platforms can connect to WindCodex Ops?

Any platform that supports the Model Context Protocol (MCP) as a client, including Claude and ChatGPT. Connection uses standard OAuth, so most platforms auto-register themselves from the discovery URLs on the Connection tab.

Can I undo a change the AI made?

Yes, for any write tool that supports it: post/page edits and deletes, and category/tag edits and deletes. WindCodex Ops keeps an undo window (72 hours by default, extendable to 96 or 168 hours under Settings > WindCodex Ops > General > Preferences) so a mistaken edit can be rolled back instead of manually fixed. Note: WordPress has no trash for categories or tags, so undoing a deleted term recreates it from its saved name/slug/description rather than restoring it in place – posts that had it aren't automatically reassigned. "Show activity feed" and "Keep undo history" are separate toggles in Settings > WindCodex Ops > General > Preferences – turning off the feed doesn't affect undo.

Will this work with any SEO plugin?

Yes. The SEO tools auto-detect Yoast SEO, Rank Math, All in One SEO, and SEOPress, and read/write the correct plugin-specific meta fields automatically – no manual configuration needed.

Can I turn off specific tool groups?

Yes. Every one of the 5 tool groups can be switched off independently in Settings > WindCodex Ops > Tools, regardless of its risk level. Everything is on by default.

Does this plugin affect site performance?

No. Tools only run when an AI platform actively calls them through the connector; there is no background processing or scheduled task running on every page load.

What happens to my data if I uninstall the plugin?

By default, all plugin data (settings, connected apps) is left in place in case you reinstall later. If you want everything removed, opt into full cleanup under Settings > WindCodex Ops > General > Data & Privacy before uninstalling.

Is my data sent to WindCodex or any third-party server?

Nothing is ever sent to WindCodex, and this plugin does not collect or sell any data. Data is sent externally only as described in External services above: to the AI platform you've explicitly connected via OAuth (only what an enabled tool returns, only when that platform calls it), and a plugin slug to the WordPress.org API when the plugin-staleness tool is used. Every public, unauthenticated endpoint (OAuth token exchange, dynamic client registration) is rate-limited per IP.

更新日志:

1.1.1 1.1.0 1.0.0 Initial release of WindCodex Ops as its own standalone, entirely free plugin covering content, media, SEO, site structure, and site health.