Agentic Governance for WordPress

Your site.
Your agents.
Your rules.

BotCreds gives WordPress sites a proper identity and access layer for AI agents โ€” scoped credentials, real-time activity logs, and the governance controls you need as agents take on more.

โœ“ Free WordPress plugin โœ“ Works with any AI agent โœ“ No lock-in
Connected Agents 3 Active
๐Ÿค–
Claude (Sonnet)
posts:write ยท media:upload coming soon
2 min ago
โš™๏ธ
WordPress.com MCP
posts:read ยท posts:edit coming soon
14 min ago
โœจ
Custom Workflow
posts:read ยท comments:moderate coming soon
1 hr ago
Activity Log โ€” Last 24h
POST /wp/v2/posts Claude
PATCH /wp/v2/posts/482 WP.com MCP
DELETE /wp/v2/posts/491 Claude
Works with the tools your agents already use

Everything you need for
agentic governance

As AI agents become collaborators โ€” writing posts, editing content, managing media โ€” you need more than usernames. BotCreds is the identity layer in between.

๐Ÿ”‘
Scoped Credentials
Issue purpose-built app passwords per agent. Define exactly what each credential can touch โ€” posts only, read-only, media upload. One agent, one credential, one scope.
๐Ÿ“‹
Activity Logs
See every REST API call any agent makes โ€” method, route, object, timestamp, IP, and source. Know exactly what was read, written, or changed and by which agent.
๐Ÿ›ก๏ธ
Instant Revocation
One click to disconnect any agent. No hunting through Settings โ†’ Application Passwords. Revoke access immediately when an agent misbehaves or a project ends.
๐Ÿ”
MCP Detection
Automatically identifies requests from WordPress.com MCP, Jetpack-connected agents, and other MCP clients. Tag and track activity by source, not just by user.
๐Ÿ‘ค
Per-User Control
Each user manages their own agent connection from their profile page. Admins get a site-wide view. Governance without micromanagement.
๐Ÿ“ฆ
Drop-In Plugin
Install from WordPress.org. No SaaS account, no API keys, no external services. Everything lives in your database. Uninstall cleanly if you ever need to.

Up in three steps

1
Install the plugin
Add BotCreds Agent Access from the WordPress plugin directory. No configuration needed out of the box.
2
Connect your agent
From your user profile, click “Connect Agent.” Copy the generated credentials and paste them into your agent’s config.
3
Watch the log
Every action your agent takes appears in the Activity Log. Filter by source, method, or date. Know what’s happening.

Built for publishers,
developers, and teams

If you’re using AI agents to do real work on WordPress, BotCreds gives you the governance layer that was always missing.

๐Ÿ“ฐ
Publishers & Newsrooms
Using AI writing assistants, summarizers, or automated content pipelines? Know exactly what’s being published on your behalf, by which agent, and when.
โš™๏ธ
Developers & Agencies
Building agent-powered workflows for clients? Issue scoped credentials per project, per agent, per client. Revoke cleanly when the engagement ends.
๐Ÿค
WordPress.com + MCP Users
Using the WordPress.com MCP server with Claude or ChatGPT? BotCreds automatically detects and logs MCP activity alongside your other agents.
๐Ÿ—๏ธ
AI-Native Teams
Multiple agents, multiple users, multiple workflows. Get a single pane of glass across all agent activity on your site. No spreadsheet required.
The bigger picture

Agentic governance isn’t optional anymore

AI agents are already writing your posts, editing your pages, and uploading your media. The question isn’t whether to use them โ€” it’s whether you know what they’re doing. BotCreds makes the answer yes.

  • Credential isolation: one breach doesn’t compromise everything
  • Audit trail: regulatory and editorial accountability built in
  • Instant revocation: no waiting for password resets
  • Source attribution: distinguish human from agent edits
  • Works alongside Jetpack Activity Log and Automattic’s stack
Agent requests logged today
1,284
across 3 agents
Sources identified
Agent Access ยท WP MCP ยท n8n
Last revocation event
n8n workflow ยท 3 days ago
Credential rotated in 1 click

Govern your agents.
Starting today.

Free plugin, no account required. Works with any WordPress site and any AI agent that speaks REST.