WordPress MCP Server (Claudeus)

WordPress sites management via 145 tools covering posts, FSE, and WooCommerce.

Data last scanned today · Reviewed yesterday

3717 dangerous tools126 tools155TypeScriptNOASSERTION

Overview

Claudeus provides a comprehensive suite of 145 tools designed to interface directly with WordPress installations. It handles broad administrative categories including content CRUD operations, user management, site diagnostics, and Full Site Editing (FSE) configurations. It also includes specific modules for WooCommerce and Astra Pro integration, enabling automated maintenance and content workflows through the MCP protocol.

Our verdict

This server carries a high-risk rating with a security score of 22/100. The primary concern is the lack of any authentication method, meaning anyone with access to the server configuration can execute commands against the connected WordPress site. Additionally, every installation defaults to full write access without a restricted read-only mode, and the repository is community-maintained rather than official. It should be avoided for use on critical production environments unless strict network-level isolation is applied.

  • Supports 145 diverse WordPress management tools
  • Includes specialized modules for WooCommerce and Astra Pro
  • Small footprint with only eight direct dependencies
  • Lacks any built-in authentication mechanism
  • Provides full write access to WordPress by default
  • Community-maintained project with NOASSERTION license

Setup

Claude Desktop
{
  "mcpServers": {
    "claudeus-wp-mcp": {
      "args": [
        "-y",
        "claudeus-wp-mcp"
      ],
      "command": "npx"
    }
  }
}

Paste into ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) or %APPDATA%\Claude\claude_desktop_config.json (Windows), then restart Claude Desktop. Some servers require API keys or tokens as environment variables — check the project's README and add an "env" object if needed.

  • No read-only mode — running this grants full read/write access.
  • No built-in authentication — anyone with access to this config can invoke every tool it exposes.

Tools

ToolDescriptionRisk
get_postsRetrieve list of postslow
get_postRetrieve a specific postlow
get_pagesRetrieve list of pageslow
get_pageRetrieve a specific pagelow
get_blocksRetrieve list of blockslow
get_blockRetrieve a specific blocklow
create_postCreate a postmedium
create_pageCreate a pagemedium
create_blockCreate a blockmedium
update_postUpdate a postmedium
update_pageUpdate a pagemedium
update_blockUpdate a blockmedium
delete_postDelete a posthigh
delete_pageDelete a pagehigh
delete_blockDelete a blockhigh
get_mediaList media librarylow
get_media_itemGet specific medialow
upload_mediaUpload filesmedium
update_mediaUpdate metadatamedium
delete_mediaRemove fileshigh
update_alt_textSEO optimizationmedium
get_categoriesRetrieve categorieslow
get_categoryRetrieve a specific categorylow
create_categoryCreate a categorymedium
update_categoryUpdate a categorymedium
delete_categoryDelete a categoryhigh
get_tagsRetrieve tagslow
get_tagRetrieve a specific taglow
create_tagCreate a tagmedium
update_tagUpdate a tagmedium
delete_tagDelete a taghigh
get_taxonomiesRetrieve taxonomieslow
get_termsRetrieve taxonomy termslow
get_usersRetrieve userslow
get_userRetrieve a specific userlow
get_meRetrieve current userlow
create_userCreate a usermedium
update_userUpdate a usermedium
delete_userDelete a userhigh
create_app_passwordCreate application passwordmedium
list_app_passwordsList application passwordslow
revoke_app_passwordRevoke application passwordhigh
introspect_passwordIntrospect application passwordlow
get_commentsRetrieve commentslow
get_commentRetrieve a specific commentlow
create_commentCreate a commentmedium
update_commentUpdate a commentmedium
delete_commentDelete a commenthigh
approveApprove a commentmedium
spamMark comment as spammedium
trashMove comment to trashhigh
get_menusRetrieve menuslow
get_menuRetrieve a specific menulow
create_menuCreate a menumedium
update_menuUpdate a menumedium
delete_menuDelete a menuhigh
get_menu_itemsRetrieve menu itemslow
create_menu_itemCreate a menu itemmedium
update_menu_itemUpdate a menu itemmedium
delete_menu_itemDelete a menu itemhigh
get_locationsRetrieve menu locationslow
get_templatesRetrieve templateslow
get_templateRetrieve a specific templatelow
create_templateCreate a templatemedium
update_templateUpdate a templatemedium
delete_templateDelete a templatehigh
get_template_partsRetrieve template partslow
get_template_partRetrieve a specific template partlow
create_template_partCreate a template partmedium
update_template_partUpdate a template partmedium
delete_template_partDelete a template parthigh
get_global_stylesRetrieve global styleslow
update_global_stylesUpdate global stylesmedium
get_theme_global_stylesRetrieve theme global styleslow
get_global_style_variationsRetrieve global style variationslow
get_global_style_revisionsRetrieve global style revisionslow
get_global_style_revisionRetrieve a specific global style revisionlow
get_local_patternsRetrieve local block patternslow
get_pattern_categoriesRetrieve pattern categorieslow
search_pattern_directorySearch pattern directorylow
get_mega_menuRetrieve mega menu settingslow
update_mega_menuUpdate mega menu settingsmedium
enable_mega_menuEnable mega menumedium
disable_mega_menuDisable mega menumedium
get_custom_layoutsRetrieve custom layoutslow
get_custom_layoutRetrieve a specific custom layoutlow
create_custom_layoutCreate a custom layoutmedium
update_custom_layoutUpdate a custom layoutmedium
delete_custom_layoutDelete a custom layouthigh
get_settingsRetrieve site settingslow
update_settingsUpdate site settingsmedium
get_post_typesRetrieve post typeslow
get_post_typeRetrieve a specific post typelow
get_post_statusesRetrieve post statuseslow
listList pluginslow
getGet plugin detailslow
activateActivate pluginmedium
deactivateDeactivate pluginmedium
deleteDelete pluginhigh
get_sidebarsRetrieve sidebarslow
get_sidebarRetrieve a specific sidebarlow
get_widgetsRetrieve widgetslow
get_widgetRetrieve a specific widgetlow
create_widgetCreate a widgetmedium
update_widgetUpdate a widgetmedium
delete_widgetDelete a widgethigh
list_themesList themeslow
get_custom_cssRetrieve custom CSSlow
update_custom_cssUpdate custom CSSmedium
test_authAuthorization header testlow
test_background_updatesBackground updates checklow
test_dotorg_communicationWordPress.org connectivitylow
test_httpsHTTPS validationlow
test_loopbackLoopback requests testlow
test_page_cachePage cache validationlow
get_directory_sizesStorage monitoringlow
run_all_testsComprehensive health reportlow
searchUniversal content searchlow
oembedRich embed data retrievallow
oembed_proxyExternal oEmbed proxylow
get_url_detailsURL metadata for blockslow
block_directoryWordPress.org block searchlow
get_productsProduct cataloglow
get_ordersOrder managementlow
get_salesSales analyticslow
discover_endpointsList all available endpointslow

Compatibility

ClientLocalDockerRemoteRead-only
ChatGPT
Claude Desktop
Cursor
VS Code
Windsurf

Frequently asked questions

What are the system requirements for running the Claudeus WordPress MCP server?

The server requires Node.js version 22.0.0 or higher.

Does this MCP server support WooCommerce management?

Yes, the server includes dedicated tools for managing WooCommerce products, orders, and sales.

Can I manage Astra Pro settings through this server?

Yes, it includes 11 tools specifically for Astra Pro, covering mega menus, custom layouts, and theme settings.

How are WordPress user accounts handled?

The server provides comprehensive user management tools and includes support for creating and revoking application passwords.

Does the server support Full Site Editing (FSE)?

Yes, it provides 27 tools for managing FSE, including templates, template parts, global styles, and block patterns.

Alternatives

Badge

WordPress MCP Server (Claudeus) security score, rated on RepoAI

Maintain this server? Add the live badge to your README.