Connect AI-assisted development workflows to WordPress through a secure capability layer.
AI Site Bridge is a secure capability layer between WordPress and your AI-assisted development workflow. Every request uses a scoped credential, every response is redacted, and every call is audited.
Authorization: Bearer aisb_live_••••••••3f9a
Everything passes through the capability layer.
Your AI tools never talk to WordPress directly. They can only call explicit capabilities that a credential has been granted, and every response is redacted, limited and logged.
The context your AI assistant needs to help you.
Safe environment metadata, theme and plugin details, and registered post types and taxonomies. Enough to reason about your site, nothing that could compromise it.
One credential per connection. Only the scopes it needs.
Connection credentials are separate from WordPress user passwords. Create, name, rotate and revoke them at any time.
A safe, read-only connection.
Lite is deliberately read-only. It gives your AI tools the site context it needs, and it does not provide filesystem access or code execution.
-
1
Create a credentialaisb_live_…3f9aName it and choose read scopes.
-
2
Connect your AI workflowBearer tokenUse the credential for every request.
-
3
Request contextGET /v1/siteCall an explicit read capability.
-
4
Receive a safe response200 · redactedRedacted, rate-limited and size-limited.
-
5
Audit event recordedsite.read · allowedYou can see what was requested and when.
- Secure connection authentication
- Separate high-entropy connection credentials
- Create connection credential
- Name credential
- Revoke credential
- Rotate credential
- Capability-based REST API
- site.read
- theme.read
- plugins.read
- Safe WordPress environment metadata
- WordPress/PHP version information
- Theme metadata
- Plugin metadata
- Registered post types/taxonomies
- Safe development information
- Secret redaction
- Rate limiting
- Request-size limits
- Authentication protection
- Basic audit events
- Strictly read-only architecture
A controlled development workflow, with explicit boundaries.
Pro adds scoped access to logs and permitted files, and optional file changes that are off by default, limited to an allowlist, reviewed as a diff, backed up and reversible.
- 01Admin enables write modeOff by default. Only an administrator can switch it on.
- 02Define file allowlistPaths are validated; traversal is blocked.
- 03The AI proposes a changeWithin allowlisted files only.
- 04Diff reviewYou see exactly what changes.
- 05Backup, then writeA backup is made before an atomic change.
- 06Rollback if neededRestore the previous version.
- 07Advanced audit logEvery step is recorded.
- Expanded secure development capabilities
- Advanced scoped access
- Controlled logs.read capabilities
- Controlled files.read where explicitly permitted
- Optional controlled files.write workflows
- Write mode OFF by default
- Explicit administrator enablement
- File allowlists
- Path validation
- Protection against path traversal
- Backup-before-write
- Diff review workflows
- Atomic controlled changes
- Rollback support
- Advanced WooCommerce inspection
- Advanced audit logging
- Advanced credential/scoping controls
- Emergency kill switch
- Extended developer diagnostics
- Commercial updates and support
Secure by design, not by configuration.
The safe defaults are built into the architecture. There is nothing to forget to switch off.
Scoped capabilities
Each credential can only call the capabilities it was granted.Separate connection credentials
High-entropy keys, separate from WordPress user passwords.Secret redaction
Sensitive values are removed from every response.Credential revocation
Revoke or rotate a credential instantly.Rate limiting
Rate and request-size limits protect the site.Audit trail
Every request is recorded with credential and result.Explicit permissions
Nothing is allowed unless it is explicitly granted.No generic execute endpoint
There is no endpoint to run commands, PHP or SQL.Write disabled by default
In Pro, write access stays off until an admin enables it.Controlled file boundaries
Allowlists, path validation and traversal protection.Every request, on the record.
See which credential called which capability, when, and with what result. Lite records basic audit events; Pro adds advanced audit logging.
Read-only with Lite. Controlled development with Pro.
| Feature | LiteFree | ProFrom €59 / year |
|---|---|---|
| Secure connection authentication | ✓ | ✓ |
| Separate high-entropy credentials: create, name, revoke, rotate | ✓ | ✓ |
| Capability-based REST API | ✓ | ✓ |
| site.read, theme.read, plugins.read | ✓ | ✓ |
| WordPress/PHP, theme, plugin, post type and taxonomy metadata | ✓ | ✓ |
| Secret redaction | ✓ | ✓ |
| Rate limiting and request-size limits | ✓ | ✓ |
| Authentication protection | ✓ | ✓ |
| Audit logging | Basic events | Advanced |
| Access model | Strictly read-only | Scoped + controlled write |
| Controlled logs.read | — | ✓ |
| Controlled files.read where explicitly permitted | — | ✓ |
| Controlled files.write workflows | — | Optional · off by default |
| File allowlists, path validation, traversal protection | — | ✓ |
| Backup-before-write, diff review, atomic changes, rollback | — | ✓ |
| Advanced WooCommerce inspection | — | ✓ |
| Advanced credential/scoping controls | — | ✓ |
| Emergency kill switch | — | ✓ |
| Extended developer diagnostics | — | ✓ |
| Commercial updates and support | — | ✓ |
| Not available in any edition | ||
| Unrestricted shell access | Never | Never |
| Arbitrary PHP execution or eval | Never | Never |
| Unrestricted SQL | Never | Never |
| Unrestricted filesystem access | Never | Never |
| wp-config secrets and WordPress salts | Never | Never |
| User passwords | Never | Never |
| Unrestricted remote code execution | Never | Never |
| Get Lite Free | Get Pro | |
AI Site Bridge Pro
Yearly licence with all Pro capabilities, commercial updates and support.
Lite
- site, theme, plugins.read
- Credential management
- Redaction and rate limits
- Basic audit events
Pro · Business
- 5 websites
- All Pro capabilities
- Updates and support
Pro · Agency
- Unlimited websites
- All Pro capabilities
- Priority support
Need more plugins? The Pro Bundle includes all six Pro plugins for €149 / year.
Developer FAQ
More detail in the documentation and the security model.
Can an AI tool change my site with Lite?
No. Lite is strictly read-only. It has no write capabilities, no filesystem access and no code execution.
Is there an endpoint to run commands, PHP or SQL?
No. There is no generic execute endpoint in Lite or Pro. The plugin does not provide shell access, arbitrary PHP execution, eval or unrestricted SQL.
Which data is never exposed?
wp-config secrets, WordPress salts and passwords are never exposed. Secret redaction removes sensitive values from responses.
How do connection credentials work?
Each connection gets its own high-entropy credential, separate from WordPress user accounts. You can name, scope, rotate and revoke credentials at any time.
How does write access work in Pro?
Write mode is off by default and must be explicitly enabled by an administrator. Changes are limited to allowlisted files, paths are validated, a backup is made first, you review the diff, and changes can be rolled back.
Can Pro read any file on my server?
No. files.read only works where it has been explicitly permitted, with path validation and protection against path traversal.
What if I need to cut off access immediately?
Revoke a single credential, or use the emergency kill switch in Pro to disable all connections at once.
Is every request logged?
Lite records basic audit events. Pro adds advanced audit logging with credential, capability, detail and result.
What happens when my Pro licence expires?
The plugin keeps working. You stop receiving commercial updates and support until you renew.
Useful context for AI. Full control for you.
Start with a free, read-only connection. Move to Pro when you need a controlled development workflow with explicit boundaries.