Bridgistic MCP Server
Connects an AI assistant to a self-hosted WordPress site, providing tools to read site information (WordPress and PHP versions, active theme, plugin list), manage content, and perform scoped write operations. Access is controlled by permission presets (Read-only, Content Manager, Safe Admin, Developer Mode), with request logging, approvals for destructive actions, automatic snapshots for undo, and instant key revocation.
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@Bridgistic MCP ServerRun bridgistic_get_site_info to verify my WordPress connection"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
Connecting Bridgistic — the complete guide
Branding source files and distribution rules are documented in docs/BRANDING.md.
This is the WordPressistic organization repository for the Bridgistic Claude marketplace, OpenAI plugin, Claude Desktop extension, MCP server, and release artifacts. npm publishing is configured through GitHub Actions trusted publishing; see docs/NPM_TRUSTED_PUBLISHER.md.
This is the single walkthrough to go from "I just installed the plugin" to "my AI assistant can safely read and edit my WordPress site." It's written for site owners, not developers — if something below doesn't match what you see, jump to Troubleshooting or run Bridgistic → Health Check first.
Read this if: you want the shortest, least error-prone path to a working connection. Skip to a specific client's page (Claude Desktop, Claude Code, Codex CLI, Gemini CLI, ChatGPT) only if you already know which one you're using and want copy-paste config details.
Before you start: two ways to connect
Bridgistic has two ways to connect an AI assistant to your site.
Local connection (this guide) | Cloud connector | |
Status | Live, fully supported, most-used path | Live, public beta — no independent security review yet |
How it works | Your AI app runs a small server on your own computer that talks to your site | A hosted relay ( |
Setup effort | One key to create, one app to configure | Paste one URL into your AI client, approve in WP Admin |
Works with | Claude Desktop, Claude Code, Codex CLI, Gemini CLI | ChatGPT and any other remote-only MCP client (also works with Claude's remote connector) |
Use the local connection (below) if you're using Claude Desktop, Claude Code, Codex CLI, or Gemini CLI — it's the most battle-tested path and never sends your credentials anywhere but between your own computer and your own site. Use the cloud connector (WP Admin → Bridgistic → Bridgistic Cloud) only if your client can't run a local server (ChatGPT is the main case) — it's functional but hasn't had an independent security review yet, so avoid it for sites you can't afford to risk, and prefer a Read-only or Content Manager preset over Developer Mode when you do use it. See CLOUD_CONNECTOR.md for its full status.
Related MCP server: WordPress MCP Server
The five-minute path (recommended for almost everyone)
This is Claude Desktop + the one-click extension — the fewest steps, no terminal, no Node.js install.
Step 1 — Install the WordPress plugin
Download
bridgistic-wordpress-plugin.zipfrom the Releases page.In WordPress: Plugins → Add New → Upload Plugin, choose the zip, click Install Now, then Activate.
A new Bridgistic menu appears in your left sidebar. That confirms it worked — nothing on your site's content or theme was touched.
Before continuing, make sure:
Your site uses HTTPS (a plain
http://address only works for local development sites).Settings → Permalinks is set to anything other than "Plain."
Step 2 — Create a key
Go to Bridgistic → AI / MCP Connections.
Step 1 of the wizard: choose Claude Desktop Extension.
Step 2: choose a permission preset. Start with Read-only — you can widen this later once you trust the connection; it cannot create, change, or delete anything on this preset.
Step 3: click Create key.
A Key ID (
wpk_…) and a Secret (wps_…) appear. Copy both somewhere safe right now — the secret is shown exactly once. If you navigate away before copying it, the key still exists but you'll need to click Rotate to get a new secret.
Step 3 — Install the extension in Claude Desktop
Download
bridgistic.mcpb(there's also a direct download button on the wizard's Step 4).Double-click the downloaded file. Claude Desktop opens and asks to install the extension.
Claude Desktop then prompts for three values — paste in what you copied in Step 2:
WordPress Site URL — exactly as it appears in WP Admin → Settings → General (e.g.
https://example.com, no trailing slash)Bridgistic Key ID
Bridgistic Key Secret
Click Enable. The secret is stored securely by Claude Desktop itself — it is never written to a plain text file.
Step 4 — Verify it's working
In Claude Desktop, start a new chat and ask:
Run bridgistic_get_site_info
Claude should reply with your WordPress version, PHP version, active theme, and plugin list.
Back in WordPress, open Bridgistic → Logs — you should see that request recorded. The Bridgistic → Dashboard connection badge also flips from "Waiting for first request" to "Connected."
That's it — done. If step 4 didn't work, go to Troubleshooting.
Using a different AI client
The plugin's setup wizard (Bridgistic → AI / MCP Connections) generates ready-to-paste configuration for each of these — pick your client on Step 1 of the wizard, then follow its guide for the one-time setup around it (installing the CLI/app itself, where its config file lives, restarting it):
Client | Runs locally? | Guide |
Claude Desktop (manual config, no extension) | Yes | |
Claude Code | Yes | |
OpenAI Codex CLI | Yes | |
Gemini CLI | Yes | |
ChatGPT | No — remote only | CHATGPT_SETUP.md (uses the cloud connector, a free public beta) |
Anything else that speaks MCP | Depends | Use the wizard's "Manual MCP JSON" option |
All of the "runs locally" options follow the same shape as the extension path above, with one
extra manual step: you paste a JSON snippet into that client's own config file, and you need
Node.js 20+ installed (node --version to check) unless you're using the pre-built extension.
The wizard's Step 4 generates the exact JSON for you, and Bridgistic → Export Package
downloads it as a ready-made zip with install scripts.
Important — what "Test connection" in the wizard actually checks: Step 5's "Run test" button only confirms your WordPress site and key are configured correctly on the server side. It does not confirm your AI client is set up right — that's what Step 4 above (asking Claude to run a tool) is for. Don't stop at a green "Run test" result and assume you're fully connected; always do the "ask Claude to run bridgistic_get_site_info" check too.
Managing more than one WordPress site? See CONNECT_OTHER_AI.md for the
multi-site connections.json registry — one key per site, one shared config file.
Understanding what you just gave access to
Scoped, not all-powerful. The key you created only allows what its permission preset says (Read-only / Content Manager / Safe Admin / Developer Mode). Check Bridgistic → Keys & Scopes any time to see or change this.
Every request is logged. Bridgistic → Logs shows exactly what was requested, when, and by which key.
Destructive actions can require your approval. If your preset includes approvals, risky operations pause in Bridgistic → Approvals until you personally allow them.
Changes can be undone. Before any destructive write, Bridgistic automatically snapshots the affected data — Bridgistic → Snapshots lets you restore with one click.
You can revoke access instantly. Bridgistic → Keys & Scopes → Revoke disables a key immediately; nothing further can be done with it.
Troubleshooting
Run Bridgistic → Health Check first — it runs 16 diagnostics and tells you exactly what's wrong and how to fix it. The most common issues:
Symptom | Likely cause | Fix |
"Run test" fails in the wizard | REST API blocked, permalinks set to "Plain," or clock drift between server and your computer | Health Check names the exact failing check and its fix |
Claude says the tool doesn't exist / times out | The extension/config wasn't restarted after setup, or the site URL has a typo | Fully quit and reopen your AI client; double-check the site URL has no trailing slash and matches Settings → General exactly |
"Invalid signature" or "Unauthorized" errors | The secret was mistyped, or the key was rotated/revoked since you configured it | Recreate or rotate the key in Keys & Scopes, and re-paste the new secret into your AI client |
Nothing appears in Logs after asking Claude to run a tool | Your AI client isn't actually using this key — check its own MCP server list/settings | Re-check the config was pasted into the right file and the client was restarted |
A hosting firewall (WAF) is blocking requests | Some managed WordPress hosts block unfamiliar REST API traffic | Health Check's "REST API reachable" and "WAF interference" checks flag this with host-specific guidance |
Full diagnostic reference: plugins/bridgistic/package/TROUBLESHOOTING.md. Still stuck? Open a
GitHub issue or copy
the no-secrets debug report from Bridgistic → Health Check into it.
FAQ
Do I need to know how to code? No. The five-minute path above involves no terminal and no file editing.
Is my API key/password shared with Claude, WordPress.com, or Anthropic? No. The key lives only between your AI client (running on your own computer) and your own WordPress site. Bridgistic never sends it anywhere else.
What if I lose the secret? You can't view it again, but nothing is broken — go to Keys & Scopes and click Rotate to generate a fresh secret, then re-paste it into your AI client.
Can I use this on more than one site? Yes — WP Admin → Bridgistic → Multi-Site is a guided builder for the config file this needs. See CONNECT_OTHER_AI.md for details.
Can I just paste one cloud URL like some other tools? Yes — that's WP Admin → Bridgistic → Bridgistic Cloud. It's live and free, but hasn't had an independent security review yet, so the local connection above is still the recommended default for most people. See CLOUD_CONNECTOR.md for its current state.
This server cannot be deployed
Maintenance
Related MCP Connectors
Secure MCP Server for WordPress connects AI assistants and agents to WordPress with secure, controlled access. It lets AI interact with WordPress through MCP while helping organizations manage access, enforce policies, protect non-human identities (NHI), and require human approval for sensitive actions. Use it to securely connect tools such as ChatGPT, Claude, and Cursor with WordPress. Marketplace Link: https://wordpress.org/plugins/miniorange-secure-mcp-server/ Official website: https://plugins.miniorange.com/mcp-server-ai-policy-enforcement-wordpress ChatGpt Marketplace: https://chatgpt.com/plugins/plugin_asdk_app_6a312802286c8191bad0a7278a4e53ef Claude Marketplace: https://claude.ai/directory/miniorange-mcp-for-wordpress Cursor Marketplace: https://cursor.com/marketplace/miniorange
Security-first WordPress MCP server. 129 tools for Claude, ChatGPT, Gemini. Free on wp.org.
Manage WordPress blogs and WooCommerce shops from Claude, ChatGPT, Cursor and other MCP apps.
Zero-setup MCP gateway securely connecting AI to your tools with authentication and workflows
Related MCP Servers
- AlicenseNot gradedqualityDmaintenanceEnables AI assistants to manage and interact with WordPress sites through MCP, providing tools for content creation, moderation, WooCommerce operations, and governance.47GPL 2.0
- FlicenseNot gradedqualityFmaintenanceEnables AI assistants to interact with a WordPress site, allowing content and taxonomy management (list, create, update, delete) through 17 MCP tools.2-
- AlicenseNot gradedqualityBmaintenanceEnables AI agents to interact with WordPress sites over MCP, providing read-only tools for AEO/GEO readiness, AI visibility, traffic, request logs, bot identification, page checks, and schema/markdown previews, plus opt-in write tools to draft, edit, and publish posts with permission checks and auditing.2GPL 2.0
- FlicenseNot gradedqualityBmaintenanceEnables MCP-compatible AI agents to securely manage multiple self-hosted WordPress sites, including content editing, theme management, and maintenance operations with fine-grained permission controls.-