47
/ 100
1 month ago
glama

LocalWP MCP

An MCP server that enables AI agents to discover, manage, and interact with LocalWP sites through integrated WP-CLI, SQL access, and backup workflows. It provides cross-platform site diagnostics and environment resolution for seamless local WordPress development.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
⚠️
Tool annotations don’t match behaviour
3 read-only tools perform write/delete/exec — execute_wp_php_readonly (line 102: rm(cleanupPath, {); wp_call_function (line 212: rm(files.cleanupPath, {); wp_call_static_method (line 212: rm(files.cleanupPath, {)
⚠️
Tool descriptions don’t match what handlers do
3 tools describe read intent but their handlers mutate — execute_wp_php_readonly (line 102: rm(cleanupPath, {); wp_call_function (line 212: rm(files.cleanupPath, {); wp_call_static_method (line 212: rm(files.cleanupPath, {)
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configLOCALWP_MCP_BACKUPS_DIR
configLOCALWP_MCP_PROFILE"": "safe"
configLOCAL_APP_SUPPORT_DIR
configLOCAL_EXTRA_RESOURCES_DIRS
configLOCAL_GRAPHQL_CONNECTION_INFO
configLOCAL_HELPER_BIN_DIRS
configLOCAL_LIGHTNING_SERVICES_DIR
configLOCAL_LIGHTNING_SERVICES_DIRS
configLOCAL_MYSQL_HOST
configLOCAL_RUN_DIR
configLOCAL_SITES_JSON
configLOCAL_SITE_ID
configLOCAL_SITE_NAME"": "example-site"
configLOCAL_SITE_STATUSES_JSON
configLOCAL_WP_CLI_CONFIG
configLOCAL_WP_CLI_PHAR
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 8 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/kazimshah39-localwp-mcp-1xnsrv)](https://m8ven.ai/mcp/kazimshah39-localwp-mcp-1xnsrv)
commit: 35bd0df11cef82fbcba9db589b5ec7707a38cad3
code hash: e9ab50e1c17ea2ce8801076986449fa43e166fbc4ab6f01129ac87975028b14d
verified: 6/12/2026, 10:57:04 AM
view raw JSON →