AI agents (MCP)
Zinn® Reseller Toolkit for AI agents
Your WordPress site is its own MCP server. An AI assistant signs in as a WordPress user with an application password and can do what that user may do with Zinn® Reseller Toolkit — nothing more.
12 actions: 12 free, 0 in Pro.
Developer reference: every action, its REST route and its parameters
The same guide in our knowledge base, with every free action listed
Set it up in three steps
Check the switch
You need WordPress 6.9 or later and Zinn® Reseller Toolkit 1.6.1 or later. In the plugin's settings, "Allow AI agents (MCP)" is on unless you turned it off.
Create an application password
In WordPress, open Users, then Profile, and add an application password named after your AI app. Copy it: WordPress shows it once.
Add the site to your AI app
Use your WordPress username, the application password and your site's connection address:
https://example.com/wp-json/zinn-reseller/v1/mcp
Configuration for popular AI apps
Every app below talks to your site through the official WordPress proxy, @automattic/mcp-wordpress-remote. Replace the address, username and password with yours.
Claude Desktop
// claude_desktop_config.json
{
"mcpServers": {
"zinn-reseller": {
"command": "npx",
"args": [
"-y",
"@automattic/mcp-wordpress-remote@latest"
],
"env": {
"WP_API_URL": "https://example.com/wp-json/zinn-reseller/v1/mcp",
"WP_API_USERNAME": "your-username",
"WP_API_PASSWORD": "your-application-password"
}
}
}
}Claude Code
claude mcp add zinn-reseller \
-e WP_API_URL=https://example.com/wp-json/zinn-reseller/v1/mcp \
-e WP_API_USERNAME=your-username \
-e WP_API_PASSWORD=your-application-password \
-- npx -y @automattic/mcp-wordpress-remote@latestCursor
// .cursor/mcp.json
{
"mcpServers": {
"zinn-reseller": {
"command": "npx",
"args": [
"-y",
"@automattic/mcp-wordpress-remote@latest"
],
"env": {
"WP_API_URL": "https://example.com/wp-json/zinn-reseller/v1/mcp",
"WP_API_USERNAME": "your-username",
"WP_API_PASSWORD": "your-application-password"
}
}
}
}VS Code
// .vscode/mcp.json — VS Code's key is "servers"
{
"servers": {
"zinn-reseller": {
"type": "stdio",
"command": "npx",
"args": [
"-y",
"@automattic/mcp-wordpress-remote@latest"
],
"env": {
"WP_API_URL": "https://example.com/wp-json/zinn-reseller/v1/mcp",
"WP_API_USERNAME": "your-username",
"WP_API_PASSWORD": "your-application-password"
}
}
}
}Other apps
Any app that supports MCP servers over standard input and output can use the same command and settings. Apps that only connect to remote HTTP servers can reach the connection address directly with the same username and application password. ChatGPT is the exception for now: it connects to MCP servers only by OAuth sign-in, so it cannot use an application password.
What an AI agent can do
Everything the plugin's own screens can do. Actions marked Pro need a Zinn® Reseller Toolkit Pro licence.
| Action | What it does | Edition |
|---|---|---|
| Create a client | Creates a client account under yours (name; default_currency, a three-letter code). Put them on a plan before their first site. | Free edition |
| Create a site for a client | Creates a hosted site for one of your clients (client_id, product_line, primary_domain). It is billed to your account at the client's plan, as from your shop. | Free edition |
| Read a client's plan | Returns which plan a client is on and what it costs you (client_id). | Free edition |
| Read your reseller account | Returns your reseller account in one read: brand, plans, clients and services counts, and what is set up. | Free edition |
| Read the Reseller Toolkit settings | Returns this plugin's settings (the API address, the plan new orders use, which features are on). The API key is never returned, only whether one is saved. | Free edition |
| List your clients | Lists your client accounts, a page at a time (cursor, limit). | Free edition |
| List the plans you can sell | Lists the hosting plans and their prices (product_line and currency narrow it). | Free edition |
| List your clients' sites | Lists everything you have provisioned for your clients (client_id and status narrow it), a page at a time. | Free edition |
| Put a client on a plan | Puts a client on one of your plans (client_id, plan_code; interval: month or year). Do this before their first site. | Free edition |
| Suspend a client's site | Puts a client's site on a non-payment hold (site_id; reason: your own note, never shown to the client). The site stops serving until it is unsuspended. | Free edition |
| Unsuspend a client's site | Lifts a non-payment hold, so the site serves again (site_id). | Free edition |
| Change the Reseller Toolkit settings | Changes the settings you send (plan_code, enable_domain_search, enable_panel_link, enable_woocommerce) and keeps the rest. The API key and address are changed on the screen only. | Free edition |
Safe by design
Each action checks the same WordPress permission as the plugin's own screen, for the exact page or post it touches. A subscriber cannot connect at all.
Application passwords can be revoked at any time under Users, Profile, without changing your normal password.
Turn "Allow AI agents (MCP)" off and the actions and the connection address disappear from the site.
Pages an agent changes keep their WordPress revisions, so any change can be undone.
Hosted with Zinn Digital®?
If Zinn Digital® hosts the site, our own MCP server can use these actions for you without an application password: connect your AI app to the Zinn Digital® MCP server and use wordpress_abilities_list and wordpress_ability_run.