Tool reference

All WordPress tools for Claude and ChatGPT, in one list.

Here is every tool AlphaBridge gives Claude and ChatGPT. 40 of them are free. Each card names the edition and says whether the tool reads or writes. With write access off, every writing tool is refused. Readers marked “only with write access” wait as well, such as the file and database readers.

143Tools
40Free
95Pro
8Agency
60Reads
83Writes

Content 10

wp_list_posts FREEREADS edit_posts

List or search posts/pages/any post type with filters and pagination.

wp_get_post FREEREADS edit_posts

Get a single post/page including raw content, meta and terms, and which page builder it was made with. In Pro, set include_protected=true (requires manage_options) to also return protected "_" meta keys such as _elementor_data.

wp_create_post FREEWRITES edit_posts

Create a post, page or custom post type entry (title, content, status, terms, meta).

wp_update_post FREEWRITES edit_posts

Update an existing post/page. Only provided fields change. Where the page builder shows its own data and post_content is only a copy (Elementor, Beaver Builder, SiteOrigin Page Builder, Enfold), a change to the content is refused while the builder is active, with the way to change the page instead.

wp_delete_post FREEWRITES delete_posts

Delete a post (trash by default, or permanently with force=true).

wp_list_revisions FREEREADS edit_posts

List revisions of a post.

wp_duplicate_post FREEWRITES edit_posts

Duplicate a post/page (as a new draft, including its terms).

wp_get_post_meta FREEREADS edit_posts

Get post meta: one key, or all public meta for a post. In Pro, set include_protected=true (requires manage_options) to also list protected "_" keys.

wp_restore_revision PROWRITES edit_posts

Restore a post to one of its revisions.

wp_update_post_meta PROWRITES edit_posts

Set a post meta value (protected keys starting with _ are blocked). Schema: id (integer), key (string), value (any JSON value; objects rejected).

Page builders 2

As of 2 October 2026. Free reads these pages, and Pro changes their texts, links and images: WordPress blocks, Elementor, Beaver Builder, SiteOrigin Page Builder, SeedProd (texts and links), GenerateBlocks, Kadence Blocks, Spectra, Stackable, Pagelayer, WPBakery, Divi 4, Avada, Flatsome and Enfold. Measured end to end on WordPress test installs (change, read back, undo): WordPress blocks, Elementor, Beaver Builder, SiteOrigin Page Builder and SeedProd. Not yet measured on a live install: GenerateBlocks, Kadence Blocks, Spectra, Stackable and Pagelayer. Built from vendor documentation and not yet measured either: WPBakery, Divi 4, Avada, Flatsome and Enfold. Elements a writer cannot change safely stay read only, and the answer says why. Read as plain blocks: Otter Blocks and CoBlocks. Recognised, not read: Brizy, Themify Builder, Zion Builder, Live Composer, Cornerstone, Thrive Architect, Bricks, Breakdance, Oxygen 6, Oxygen Classic, BeTheme (BeBuilder), Visual Composer Website Builder, Divi 5 and Etch.

wp_get_builder_layout FREEREADS edit_posts

Read a page built with a page builder or block library as an outline: the builder, and every element in page order with its id, type and visible text, link and image fields. Elements that cannot be changed safely (code, HTML, shortcodes, forms, dynamic, global or unknown elements) are listed as locked with the reason, without their content. layout_hash changes whenever any stored copy of the page changes.

wp_update_builder_element PROWRITES edit_posts

Change the text, link or image of one element on a page-builder or block page, by its id from wp_get_builder_layout. Dry run by default; apply=true saves. An undo point is recorded first; the change is saved through the builder where it has a save function, the page is read back and put back if a field does not show its new value, then the builder’s caches are emptied. Pass layout_hash so a page that changed in between is refused.

Media 6

wp_list_media FREEREADS upload_files

List media library attachments with pagination.

wp_get_media FREEREADS upload_files

Get a single attachment with URL, sizes, alt text and metadata.

wp_upload_media_from_url FREEWRITES upload_files

Download a file from a URL and add it to the media library.

wp_upload_media FREEWRITES upload_files

Upload a local image or PDF to the media library from base64-encoded content.

wp_update_media FREEWRITES upload_files

Update an attachment title, caption and alt text.

wp_delete_media FREEWRITES delete_posts

Delete an attachment from the media library.

Taxonomies & comments 10

wp_list_terms FREEREADS edit_posts

List terms of a taxonomy (categories, tags, custom).

wp_create_term FREEWRITES manage_categories

Create a term in a taxonomy.

wp_update_term FREEWRITES manage_categories

Update a term.

wp_delete_term FREEWRITES manage_categories

Delete a term from a taxonomy.

wp_list_comments FREEREADS moderate_comments

List comments with status and post filters.

wp_moderate_comment FREEWRITES moderate_comments

Set a comment status: approve, hold, spam or trash.

wp_reply_comment FREEWRITES moderate_comments

Reply to a comment (or comment on a post) as the current user.

wp_delete_comment FREEWRITES moderate_comments

Delete a comment (trash by default, force to remove permanently).

wp_get_term FREEREADS edit_posts

Get a single term by id and taxonomy.

wp_get_comment FREEREADS moderate_comments

Get a single comment by id.

Users & menus 10

wp_list_users PROREADS list_users

List users with role/search filters.

wp_get_user PROREADS list_users

Get a user by id, login or email.

wp_create_user PROWRITES create_users

Create a user with a role.

wp_update_user PROWRITES edit_users

Update a user (role, name, email, password).

wp_delete_user PROWRITES delete_users

Delete a user, optionally reassigning their content.

wp_list_menus PROREADS edit_theme_options

List navigation menus.

wp_get_menu PROREADS edit_theme_options

Get a menu with its items.

wp_create_menu PROWRITES edit_theme_options

Create a navigation menu.

wp_add_menu_item PROWRITES edit_theme_options

Add an item to a menu (custom link, page or post).

wp_delete_menu_item PROWRITES edit_theme_options

Remove an item from a menu.

Widgets 5

wp_list_sidebars FREEREADS edit_theme_options

List the theme's registered sidebars (widget areas) with their widget counts.

wp_get_widgets FREEREADS edit_theme_options

List widgets and their settings, optionally filtered to one sidebar. A setting whose key looks like a credential (an API key, token, secret or password) is left out and named in hidden_keys.

wp_update_widget PROWRITES edit_theme_options

Update the settings of an existing widget instance (merges the given fields). The merged instance passes the widget's own update() sanitisation and the widget_update_callback filter, the same as the widgets screen — so HTML is filtered unless you may post unfiltered HTML. A value that wp_get_widgets leaves out as a credential stays as stored when you leave it out, also inside nested settings, and the answer leaves it out too.

wp_add_widget PROWRITES edit_theme_options

Add a widget of a given type to a sidebar and return its new id. Settings pass the widget's own update() sanitisation and the widget_update_callback filter, the same as the widgets screen.

wp_delete_widget PROWRITES edit_theme_options

Remove a widget instance from its sidebar and delete its settings. The widget option is rewritten directly, without the widget's own cleanup routines.

Options & settings 4

wp_get_site_settings FREEREADS manage_options

Get common site settings (title, tagline, url, admin email, timezone, language, posts per page).

wp_update_option PROWRITES manage_options

Create or update an option value. Security-relevant options are blocked, but the block list only knows what it knows: other plugins may keep security-relevant options under unremarkable names.

wp_delete_option PROWRITES manage_options

Delete an option. Security-relevant options are blocked, but the block list only knows what it knows: other plugins may keep security-relevant options under unremarkable names.

wp_update_site_settings PROWRITES manage_options

Update common site settings (title, tagline, admin email, timezone, start of week, posts per page).

Plugins & themes 9

wp_list_plugins PROREADS activate_plugins

List installed plugins with active state and version.

wp_activate_plugin PROWRITES activate_plugins

Activate a plugin by its file path (e.g. akismet/akismet.php).

wp_deactivate_plugin PROWRITES activate_plugins

Deactivate a plugin by its file path.

wp_list_themes PROREADS edit_theme_options

List installed themes.

wp_list_theme_files PROREADS edit_themes

List files inside a theme (defaults to the active theme).

wp_read_theme_file PROREADS edit_themes

Read the contents of a theme file.

wp_write_theme_file PROWRITES edit_themes

Write (overwrite or create) a theme file. Content is raw by default; set "encoding":"base64" to write binary/base64 data. Blocked when DISALLOW_FILE_MODS or DISALLOW_FILE_EDIT is set. Before a PHP file is written it is parse-checked (up to 512 KB; the answer says when the check could not run) and, where the server has a PHP command line of the same version, compiled with php -l; a file that fails is not written. After a PHP file of an active plugin or theme is written, test requests check the home page, this endpoint and admin-post.php, and a fatal error puts the previous file back. By default each write records an undo point first.

wp_delete_theme_file PROWRITES edit_themes

Delete a file inside a theme. Blocked when DISALLOW_FILE_MODS or DISALLOW_FILE_EDIT is set. By default it records an undo point first (wp_undo puts the file back). Deletes are not test-requested: make sure nothing loads a PHP file before you delete it.

wp_activate_theme PROWRITES switch_themes

Activate an installed theme by its folder name. Refuses unknown, broken or disallowed themes; records an undo point that switches back to the previous theme.

Database 4

wp_db_tables PROREADS manage_options

List database tables with row counts.

wp_db_schema PROREADS manage_options

Describe the columns of a table.

wp_db_query PROREADS manage_options

Run a read-only query: a single, comment-free SELECT. Runs only with write access on, like every database tool. Only SELECT — SHOW/DESCRIBE/EXPLAIN are handled by wp_db_tables/wp_db_schema, and EXPLAIN ANALYZE would actually execute the query. Blocked: prepared statements, CTEs, UNION, system schemas (mysql/information_schema/performance_schema/sys), file and timing functions, and the users/usermeta/options AND the postmeta/termmeta/commentmeta tables (read those through the structured meta tools, which redact secrets). An outer LIMIT and a statement timeout are enforced; results are capped by row count and total payload size (truncated=true means more matched — narrow the query or raise limit).

wp_db_execute PROWRITES manage_options

Write a row set with a STRUCTURED statement (no raw SQL). Pass operation (insert/update/delete), table, and values/where as objects; the query is built with prepared statements, so the whole class of injection and "whole-table rewrite" bypasses is gone. update and delete REQUIRE a non-empty where object. The users, usermeta, options and network tables are refused — use the dedicated user/option tools for those. Dry-run by default: set apply=true to run it. The object cache is flushed after a successful write. Prefer the structured content/meta/option tools where they fit; this is the escape hatch for custom and plugin tables.

System & diagnostics 7

wp_site_info FREEREADS manage_options

Environment overview: WordPress/PHP/MySQL versions, active theme, plugin counts, URLs, multisite, memory, HTTPS.

wp_get_post_types FREEREADS edit_posts

List registered post types.

wp_get_taxonomies FREEREADS edit_posts

List registered taxonomies.

wp_get_cron PROREADS manage_options

List scheduled cron events.

wp_get_error_log PROREADS manage_options

Return the tail of the WordPress debug.log if enabled.

wp_clear_cache PROWRITES manage_options

Flush the WordPress object cache (and OPcache if available).

wp_flush_rewrite_rules PROWRITES manage_options

Flush permalink / rewrite rules (fixes 404s after structural changes).

Lifecycle 10

wp_get_update_status FREEREADS update_core

Report available core, plugin and theme updates as of WordPress's own last scheduled check (read-only, cached data; triggers no remote request).

wp_install_plugin PROWRITES install_plugins

Install a plugin from the WordPress.org directory by slug, optionally activating it.

wp_install_plugin_zip PROWRITES install_plugins

Install a plugin from an uploaded ZIP (base64 "content", a "url" or a committed upload "session"), optionally activating it.

wp_install_theme_zip PROWRITES install_themes

Install a theme from an uploaded ZIP (base64 "content", a "url" or a committed upload "session"), optionally activating it.

wp_update_plugin PROWRITES update_plugins

Update an installed plugin to the latest version.

wp_delete_plugin PROWRITES delete_plugins

Delete an installed plugin (deactivates it first if active).

wp_install_theme PROWRITES install_themes

Install a theme from the WordPress.org directory by slug.

wp_update_theme PROWRITES update_themes

Update an installed theme to the latest version.

wp_delete_theme PROWRITES delete_themes

Delete an installed theme (cannot delete the active theme).

wp_update_core PROWRITES update_core

Update WordPress core to the latest available version. High impact — use with care.

WooCommerce 9

wp_wc_list_orders PROREADS manage_woocommerce

WooCommerce: list orders, filterable by status. Requires WooCommerce.

wp_wc_get_order PROREADS manage_woocommerce

WooCommerce: get one order with items, totals and customer. Requires WooCommerce.

wp_wc_update_order_status PROWRITES manage_woocommerce

WooCommerce: set an order to one of the statuses this shop knows (e.g. completed); unknown statuses are refused. Requires WooCommerce.

wp_wc_list_products PROREADS manage_woocommerce

WooCommerce: list products with search and status filters. Requires WooCommerce.

wp_wc_get_product PROREADS manage_woocommerce

WooCommerce: get one product (price, stock, sku, status). Requires WooCommerce.

wp_wc_update_product PROWRITES manage_woocommerce

WooCommerce: update a product price, stock quantity or status. Requires WooCommerce.

wp_wc_list_coupons PROREADS manage_woocommerce

WooCommerce: list coupons. Requires WooCommerce.

wp_wc_create_coupon PROWRITES manage_woocommerce

WooCommerce: create a coupon. Requires WooCommerce.

wp_wc_list_customers PROREADS manage_woocommerce

WooCommerce: list customers with order counts. Requires WooCommerce.

SEO 3

wp_seo_detect FREEREADS edit_posts

Detect the active SEO plugin (Yoast, Rank Math, AIOSEO or none).

wp_seo_get FREEREADS edit_posts

Get the SEO title, meta description and focus keyword for a post.

wp_seo_set PROWRITES edit_posts

Set the SEO title, meta description and/or focus keyword for a post (Yoast or Rank Math).

Meta & credentials 7

wp_get_user_meta FREEREADS list_users

Get standard profile fields (user meta) for a user: one field, or all standard fields. Only a fixed list of non-sensitive profile keys is available.

wp_get_term_meta FREEREADS edit_posts

Get term meta: one key, or all public meta for a term.

wp_list_application_passwords FREEREADS list_users

List a user's application passwords (names, created/last-used, never the secret).

wp_update_user_meta PROWRITES edit_users

Set a user meta value (privilege/auth keys are blocked).

wp_update_term_meta PROWRITES manage_categories

Set a term meta value.

wp_create_application_password PROWRITES edit_users

Create an application password for a user. The secret is returned once.

wp_revoke_application_password PROWRITES edit_users

Revoke a user's application password by its UUID.

Operations 8

wp_site_health FREEREADS manage_options

Site health summary: PHP/WordPress versions, HTTPS, debug, memory, object cache, and pending updates.

wp_dashboard_counts FREEREADS manage_options

Content at a glance: posts by type/status, users by role, comments and media counts.

wp_schedule_cron PROWRITES manage_options

Schedule a cron event: a one-off at a timestamp, or recurring (hourly/twicedaily/daily/weekly). Only hooks explicitly allowed via the "ab_mcp_pro_cron_hook_allowlist" filter can be scheduled; the list is empty by default.

wp_unschedule_cron PROWRITES manage_options

Clear all scheduled events for a hook.

wp_set_transient PROWRITES manage_options

Set a transient value with an optional expiration (seconds).

wp_delete_transient PROWRITES manage_options

Delete a transient by name.

wp_db_optimize PROWRITES manage_options

Run OPTIMIZE TABLE on this site's database tables.

wp_cleanup_transients PROWRITES manage_options

Delete expired transients to tidy the options table.

Files 8

wp_list_plugin_files PROREADS edit_plugins

List files inside an installed plugin folder.

wp_read_plugin_file PROREADS edit_plugins

Read a file inside a plugin folder. Raw source access: plugin code may contain hardcoded API keys, credentials or other secrets.

wp_write_plugin_file PROWRITES edit_plugins

Write (overwrite or create) a file inside a plugin folder. Content is raw by default; set "encoding":"base64" to write binary/base64 data. Blocked when DISALLOW_FILE_MODS or DISALLOW_FILE_EDIT is set. Before a PHP file is written it is parse-checked (up to 512 KB; the answer says when the check could not run) and, where the server has a PHP command line of the same version, compiled with php -l; a file that fails is not written. After a PHP file of an active plugin or theme is written, test requests check the home page, this endpoint and admin-post.php, and a fatal error puts the previous file back. By default each write records an undo point first.

wp_delete_plugin_file PROWRITES edit_plugins

Delete a file inside a plugin folder. Blocked when DISALLOW_FILE_MODS or DISALLOW_FILE_EDIT is set. By default it records an undo point first (wp_undo puts the file back). Deletes are not test-requested: make sure nothing loads a PHP file before you delete it.

wp_list_uploads PROREADS manage_options

List files in the uploads directory (optionally a subfolder). Raw filesystem access to the uploads directory; administrators only. Use wp_list_media / wp_get_media for the attachment-aware tools.

wp_read_upload_file PROREADS manage_options

Read a file from the uploads directory. Raw filesystem access to the uploads directory; administrators only. Use wp_get_media / wp_list_media for the attachment-aware tools.

wp_write_upload_file PROWRITES manage_options

Write a text/asset file to the uploads directory. Raw filesystem access to the uploads directory; administrators only. Content is raw by default; set "encoding":"base64" to write binary/base64 data. Executable and browser-executable extensions (php, js, svg, html, xml …) are blocked. Use wp_upload_media / wp_get_media for the attachment-aware tools.

wp_delete_upload_file PROWRITES manage_options

Delete a file from the uploads directory. Raw filesystem access to the uploads directory; administrators only. Use wp_delete_media / wp_get_media for the attachment-aware tools.

PHP snippets (Code Snippets, WPCode) 5

wp_list_php_snippets PROREADS manage_options

List the snippets of Code Snippets or WPCode, whichever is active: id, name, type, location, active, priority, sha256 of the code and the last error WPCode recorded. AlphaBridge keeps no snippets of its own. Administrators only (manage_options and edit_plugins); not on multisite; blocked by DISALLOW_FILE_EDIT and DISALLOW_FILE_MODS.

wp_get_php_snippet PROREADS manage_options

Read one snippet of Code Snippets or WPCode with its code. Raw code access: a snippet may hold API keys or other secrets.

wp_save_php_snippet PROWRITES manage_options

Create or change a PHP snippet in Code Snippets or WPCode. Without apply=true a preview. Checked without running it: a parse check (up to 512 KB; the answer says when it could not run), php -l where the server has a PHP command line of the same version, and no function or class that exists already. By default each change records an undo point first. The snippet is saved switched off, then switched on, and test requests follow; a changed snippet whose test requests fail goes back to its previous version, a new one stays saved and off. Single-use snippets are refused.

wp_toggle_php_snippet PROWRITES manage_options

Switch a PHP snippet of Code Snippets or WPCode on or off. Switching on runs the checks of wp_save_php_snippet first; both directions are followed by test requests, and a fatal error puts the previous state back.

wp_delete_php_snippet PROWRITES manage_options

Move a PHP snippet of Code Snippets or WPCode to the plugin’s trash, or delete it for good with force=true. An active snippet stops running, so test requests follow; a fatal error brings it back.

Vendor abilities 2

wp_list_abilities PROREADS read

List the abilities that plugins and WordPress register with the Abilities API (WordPress 6.9 and newer): name, label, category, the read-only and destructive annotations, a short input schema, whether it can run and, if not, the way there, and whether a run has a way back.

wp_run_ability PROWRITES per ability

Run an ability by its name from wp_list_abilities, through the Abilities API. The ability checks the input and your permission itself. It runs when write access is on and the connection has full access. Then every ability runs that an administrator has not switched off under Fine-tuning. Read-only ones run at once. Every other one previews by default and runs with apply=true. Where the input names a post, an undo point of that post comes first (up to 25 posts per call). The posts are read back afterwards. Without such a post, the preview says there is no way back.

File transfer (chunked) 4

wp_upload_begin PROWRITES upload_files

Start a chunked upload session for a large file. Returns a session id; send the file with wp_upload_append and finish with wp_upload_commit.

wp_upload_append PROWRITES upload_files

Append one base64 chunk (recommended 1–4 MB of raw data per call) to an upload session, in order.

wp_upload_commit PROWRITES upload_files

Finish an upload session. Optionally verifies a sha256 checksum. The committed file can then be used via the "session" argument of the install and deploy tools.

wp_upload_abort PROWRITES upload_files

Abort an upload session and delete its data.

Site Deploy (FTP/SFTP) 7

wp_deploy_diff AGENCYREADS manage_options

Preview a deploy before it happens: compare the ZIP you are about to push against what is really on the server. Nothing is uploaded, written or deleted — only directory listings and the ZIP index are read, never file contents. Per path it reports new, changed and, with atomic mode, removed.

wp_deploy_test AGENCYREADS manage_options

Check the Site-Deploy connection: configuration, same-server verification and a live directory listing of the deploy root. Opens an authenticated connection with the stored credentials, so like every deploy tool it runs only with write access on.

wp_deploy_list AGENCYREADS manage_options

List a directory in the deploy area (path is relative to the deploy root).

wp_deploy_read AGENCYREADS manage_options

Read a file from the deploy area (max 2 MB per call). Binary content is returned base64-encoded.

wp_deploy_push_file AGENCYWRITES manage_options

Write one file into the deploy area. Content sources: "content" (with optional "encoding":"base64") or a committed upload "session". Missing directories are created.

wp_deploy_push_zip AGENCYWRITES manage_options

Upload and unpack a ZIP archive into the deploy area — deploys a whole site or folder in one step. Source: a committed upload "session" (recommended for large archives) or base64 "content". With "atomic":true (recommended for a full site) the archive is unpacked into a staging folder, every file is size-verified, the current target is moved aside as a backup, and only then swapped in by a near-instant rename — a failed or interrupted upload leaves the live target untouched, and a failed swap rolls back automatically. Without atomic, files are written straight into the target and existing files are overwritten in place.

wp_deploy_delete AGENCYWRITES manage_options

Delete a file — or, with "recursive":true, a whole directory — in the deploy area.

Blueprint 3

wp_blueprint_export PROREADS manage_options

Export the STRUCTURE of this site as a portable JSON blueprint: writable site settings, taxonomy terms, the page hierarchy, navigation menus with their item tree and theme locations, widget placement, the plugin set and the active theme. Post content is never exported, and neither are widget settings, credentials or user data.

wp_blueprint_diff PROREADS manage_options

Compare a blueprint against the CURRENT state of this site and return exactly what an apply would do. Works on every plan. Read-only: writes nothing. Per section you get create, update, unchanged and extra_on_target — structure that exists here but not in the blueprint is never touched, there is no delete mode.

wp_blueprint_apply AGENCYWRITES manage_options

Apply the applicable parts of a blueprint to this site. Dry run by default: review the plan, then set apply=true. It NEVER deletes, deactivates or removes anything, and a second run reports everything as unchanged. Every write goes through the ordinary tools, so their permissions, your token scope and the per-tool switches all apply.

Undo 3

wp_undo_list PROREADS read

List your undo points: the snapshots that destructive tools took before they changed something. Each entry has a token, the tool it came from, a short summary and an expiry. Only your own undo points are visible. They expire after the site’s undo window, 7 days unless an administrator set 1 to 30 days; by default the store keeps the newest 50 (100 MB in total). Listing also clears out what these limits already drop — expired points and the oldest beyond the bounds, of every user, with their snapshots — as recording a new point does.

wp_undo PROWRITES read

Reverse one earlier change using its undo token. Pass dry_run=true first to see exactly what would be restored and what would be refused. Undoing needs the same permission as the original action, and each item is re-checked against the CURRENT state, so an option that has since been protected is reported as blocked rather than restored. An undo of a page-builder change or of an ability run puts every stored copy of the page back byte for byte and refuses a page someone changed since, unless force=true.

wp_undo_discard PROWRITES read

Throw away an undo point and its snapshot without restoring anything. Use it once a change is confirmed good, or pass all=true to drop all of your undo points at once. Other users’ undo points are never touched.

Migration 1

wp_export_content PROWRITES export

Export content as a WordPress WXR file into a protected uploads subfolder with no public URL; returns upload_path. Fetch the file over the filesystem or SFTP, then delete it.

Multisite 3

wp_network_list_sites PROREADS manage_sites

Multisite: list the sites in the network. Requires multisite.

wp_network_create_site PROWRITES manage_sites

Multisite: create a new site in the network. Requires multisite.

wp_network_activate_plugin PROWRITES manage_network_plugins

Multisite: network-activate a plugin across all sites. Requires multisite.

No tools match your filter.

Labels reflect the free plugin 4.5.0 and Pro 4.7.0.