Dated 2026-08-31. Every claim below carries a source URL; nothing here is asserted without one. This follows the format WP Umbrella's own "ranked, and 2 to avoid" comparison uses (https://wp-umbrella.com/blog/best-wordpress-mcp-servers-2026-7-ranked-2-to-avoid/), maintenance status and archival dates first, because that format reads as independently sourced rather than self-promotional, and because most listicles in this category currently rank the author's own product first. This one ranks nothing; it states what each project documents about itself, with dates, and lets the axes speak.
Star counts, fork counts, and last-push dates below come from a single research pass on 2026-08-31 and will drift; treat them as a snapshot, not a live figure, and re-check the linked source before citing a number from this page elsewhere.
| Project | Status | Last push | Why it still surfaces | Source |
|---|---|---|---|---|
| Automattic/wordpress-mcp | Archived 2026-01-19 | 2025-08-30 | Still the most-recommended name in out-of-date roundups; its own README redirects to WordPress/mcp-adapter as the maintained successor. | https://github.com/Automattic/wordpress-mcp |
| mcp-wp/mcp-server | Archived | 2025-12-01 | Community CloudFest Hackathon project; docs site still live. | https://github.com/mcp-wp/mcp-server |
| mcp-wp/ai-command | Archived | 2025-12-07 | Same project family; mcp-wp.github.io still describes it as current. |
https://github.com/mcp-wp/ai-command, https://mcp-wp.github.io/ |
| aguaitech/Elementor-MCP | Not formally archived, but no commit in over a year at research date | 2025-05-14 | Still actively surfaced by mcpservers.org and Smithery's install index, and still ranks for Elementor-MCP-adjacent search despite being unmaintained. | https://github.com/aguaitech/Elementor-MCP, https://instawp.com/best-wordpress-mcp-servers-compared/ |
WordPress/mcp-adapter. Active: 1,640 stars, 188 forks, last push 2026-08-29. GPL-2.0. The official Abilities API to Model Context Protocol bridge, and the highest-authority source in the category: "if your code already registers abilities, you are one step away from letting an AI agent use them." No wp.org listing (install via GitHub release or Composer). No Elementor awareness, no SEO-plugin awareness, and no documented snapshot, rollback, or audit-log story; it is a protocol bridge, not a safety layer. Source: https://github.com/WordPress/mcp-adapter, https://developer.wordpress.org/news/2026/02/from-abilities-to-ai-agents-introducing-the-wordpress-mcp-adapter/.
| Project | License | Stars/forks (date) | Pro-gating | Safety vocabulary | Rank Math / SEO | Source |
|---|---|---|---|---|---|---|
| EMCP (msrbuilds/elementor-mcp) | GPL-2.0 (repo) | 658 / 138 (2026-08-30) | Freemium. The full ~269-tool set requires a paid plan, up to $149.99/yr on emcptools.com; the free GitHub plugin is the entry tier. | Per-tool capability checks; destructive operations disabled and opt-in by default; page-level snapshot with a "change ledger with rollback." | Vague: "SEO platforms when active," no named Rank Math tool, no read-back verification documented. | https://github.com/msrbuilds/elementor-mcp, https://emcptools.com/ |
| WPPilot (wppilot-labs/wordpress-mcp-elementor-wppilot) | GPL-2.0-or-later | 66 / 1 (2026-08-30); created 2026-08-10 | Free core (133 abilities) + Pro (1,042 abilities: Bricks, Divi, Oxygen, Beaver Builder, Etch, WPBakery, WooCommerce). | Three named tiers (Read Only / Production Safe / Developer Full Access); credential-attributed change ledger with rollback, more granular than any other competitor found in this research. | Rank Math is Pro-gated (8 abilities inside a 51-integration Pro table); free tier has none. | https://github.com/wppilot-labs/wordpress-mcp-elementor-wppilot |
| Novamira (use-novamira/novamira) | AGPL-3.0 | 640 / 104 (2026-08-29) | Free core + Pro-gated Elementor/Bricks abilities, persistent memory, curated skills. | None claimed for production; the opposite. | None found in free or Pro docs. | https://github.com/use-novamira/novamira, https://novamira.ai/docs/ |
| Stonewright (cosmincraciun97/stonewright-wp-mcp) | AGPL-3.0 (plugin) + MIT (companion) | 23 / 2 (2026-08-26); public beta 1.0.0-beta.13.2 | None documented. | Pre-write snapshots, "coalesced audit with actor attribution," an Audit Log admin screen, restore paths for supported mutations. | Generic "ACF + SEO (8 abilities)"; no named Rank Math distinction. | https://github.com/cosmincraciun97/stonewright-wp-mcp |
| tropk-ai/mcp-for-wordpress | GPL-3.0 | 29 / 9 (2026-07-25) | None documented. | Audit log with per-post snapshots before destructive writes; confused-deputy guard, origin allowlist, rate limiter. | Rank Math named in the About line and tool count, but no specific tool names and no read-back verification documented; breadth asserted, not documented with tool-level specificity. | https://github.com/tropk-ai/mcp-for-wordpress |
Novamira's own explicit production disclaimer, quoted directly because it is the sharpest documented contrast to the "safe on a live site" claim this comparison and its peers make: "development and staging environments only... always keep backups." (https://novamira.ai/docs/)
Royal MCP. wp.org-distributed. 70,000+ downloads (https://royalplugins.com/royal-mcp/) and, per an independent ranking, 9,000+ active installs with a 5.0 rating as of 2026-07-31 (https://wp-umbrella.com/blog/best-wordpress-mcp-servers-2026-7-ranked-2-to-avoid/). Free core: 185 tools (81 core + 99 plugin-aware), including 11 Elementor tools with no Pro requirement, plus activity logging and OAuth. Source contradiction, stated rather than resolved: one independent article reports a "Royal MCP Pro" tier at $79/yr founding rate ($149/yr regular), while Royal's own marketing states the base plugin has "no Pro tier." Sources: https://wordpress.org/plugins/royal-mcp/, https://royalplugins.com/royal-mcp/, https://royalplugins.com/blog/how-to-evaluate-wordpress-mcp-plugin/.
Agent Abilities for MCP. Free, wp.org-listed. 153 governed abilities, off-by-default, dual-layer capability gating, real WordPress user identity rather than a separate credential system, zero telemetry claimed. No Pro tier documented; the closest governance-positioning peer to Agent Bridge found in this research. Source: https://agentabilitieswp.com/.
Easy MCP AI. Small GitHub footprint (8 stars) but the widest documented SEO-plugin breadth found anywhere in this research: Yoast SEO, Rank Math, SEOPress, Slim SEO, and The SEO Framework, plus 100+ other plugin integrations. No Elementor or page-builder support, no snapshot or rollback, no kill switch documented anywhere in its marketing or README. Source: https://easymcpai.com/, https://easymcpai.com/blog/best-wordpress-mcp-server-plugin-2026.
Respira. GitHub repo has only 7 stars and 0 forks, but runs an active, founder-authored content operation. Its own July 2026 post claims 17 native page builders, 319 MCP tools, and, as a safety-net proof point, 2,086 snapshots and 680 rollbacks across 2,604 connected sites and 173,000+ operations. No Pro-tier or paywall information was found in the sources reviewed for this comparison. Source: https://www.respira.press/security, https://www.respira.press/blog/best-wordpress-mcp-servers.
| Axis | Agent Bridge | EMCP | WPPilot | Novamira | Royal MCP | Easy MCP AI | Respira |
|---|---|---|---|---|---|---|---|
| Rank Math read/write with read-back verification, documented | Yes | No | No (Pro-only, undocumented depth) | No | No | No (breadth, no verification loop documented) | No |
| JSON-LD schema as a named, addressable operation | Yes | No | No | No | No | No | No |
| Hashed content snapshots with a documented verified restore (write, read back, hash-compare) | Yes | Page-level change ledger, no hash-compare documented | Credential-attributed ledger, no hash-compare documented | "Keep backups" | Activity log, no restore-verification documented | No | Snapshot/rollback counts cited, no restore-verification documented |
| Named, documented kill switches | Yes (AGENT_BRIDGE_DISABLED, AGENT_BRIDGE_READ_ONLY, AGENT_BRIDGE_ABILITIES) |
No (opt-in/confirmation framing, not a named switch) | Three safety tiers, not a single named switch | No | No | No | No |
| Additive-only default posture | Yes | No | "Production Safe" tier still permits outright writes | No | No | No | No |
| Any Pro paywall on the above | No | Yes, up to $149.99/yr | Yes, Rank Math and non-Elementor builders are Pro-only | Yes, Elementor/Bricks Pro-only | Disputed (see contradiction above) | N/A (no page-builder story to gate) | Not documented in sources found |
| Built on the official Abilities API / mcp-adapter | Yes | No | No | No | No | No | No |
| Page-builder editing | No (by design; pairs with EMCP) | Yes | Yes | Pro-only | Free-tier Elementor tools | No | Yes (17 builders) |
No competitor surveyed for this research combines all of: Rank Math read/write with a documented read-back verification loop, JSON-LD schema as a named operation, hash-verified restore, named kill switches, an additive-only default, and zero Pro paywall on any of it, while explicitly pairing with (rather than competing against) a dedicated builder tool. That combination is what Agent Bridge is built to be first at documenting; it is also, by the same table, not a page-builder tool at all, which is the trade made deliberately in exchange.
- Rank Math only. No Yoast, AIOSEO, SEOPress, or The SEO Framework support. Easy MCP AI documents five SEO plugins; Agent Bridge documents one, with a verification loop the others do not document, but the plugin coverage itself is narrower. The plugin's own readme states support for other SEO plugins "may follow."
- No page-builder editing at all, by design. Agent Bridge never writes
_elementor_dataexcept byte-for-byte during a verified restore from a prior snapshot. It depends entirely on pairing with a separate tool (EMCP in this guide) for layout work; a site running Agent Bridge without such a tool gets the SEO/schema/snapshot/safety layer with nothing to edit layouts. - Application Passwords only, no OAuth 2.1. Royal MCP, Agent Abilities, WordPress.com's own MCP, and WPPilot's OAuth 2.1 option all move toward or already ship a scoped OAuth flow. Agent Bridge's only credential is a WordPress Application Password, which grants the same access as the account it belongs to; see THREAT-MODEL.md.
- LiteSpeed-only cache purge.
/cache/purgeand thepurge-cacheability do nothing on WP Rocket, a CDN edge cache, or an object cache; the response says so explicitly rather than silently pretending to purge, but real coverage exists only on LiteSpeed hosts. - The audit log is a 50-entry rolling option, not a dedicated table or an
admin screen. Stonewright's Audit Log admin screen and Respira's
hash-chained sequence numbers are both more durable and more inspectable
than Agent Bridge's
agent_bridge_auditoption, which is readable only by queryingwp_optionsdirectly and keeps only the most recent 50 writes. - One schema per
@typeper post. Rank Math's own UI can store more than one schema of the same@typeon a post, addressed by a separatemeta_id. Agent Bridge keeps at most one per type, a stated v1 simplification in its own code comments, not a Rank Math contract deviation. - No wp.org listing. Royal MCP (70,000+ downloads) and WPVibe (backed by AwesomeMotive's existing content-distribution reach) both use wp.org as an acquisition channel Agent Bridge does not currently use.
- Pre-1.0, no independent installs or third-party reviews yet, unlike Novamira (5+ independent review placements found in this research) or Respira (an active content-marketing operation with real usage numbers).
- Restore is REST-only, never exposed as an Abilities API ability, so any MCP client driving a restore has to fall back to a direct REST call under an administrative credential rather than the same tool-call interface every other bridge operation uses.