— HUMAN GUIDE / WORDPRESS ADMIN

USE SITE
AGENT.
WITH CONTROL.

From first login to a verified change: here is the plain-English way to ask questions, review exact plans, act safely, and understand what Site Agent can—and cannot—do.

GUIDE FOR SITE AGENT 0.2.4 / DEVELOPER TEST BUILD
CONNECT OPENAIREBUILD KNOWLEDGEASK IN PLAIN ENGLISHREVIEW THE PLANEXECUTE ONCECHECK HISTORY
01 / FIRST-TIME SETUP

READY IN
FIVE STEPS.

Use a backed-up test site first. You need an active Site Agent installation, the right WordPress permissions, and an OpenAI API key with API billing for AI chat and planning.

01 / OPEN

GO TO SITE AGENT.

Sign in to WordPress and select Site Agent in the admin menu. There is no public chat box.

02 / CONNECT

CONNECT OPENAI.

Go to Settings, paste an API key, and select Validate and save. The full key is encrypted and never shown again.

03 / LEARN

BUILD KNOWLEDGE.

Open Knowledge and select Rebuild knowledge index. Wait for completion before relying on answers.

04 / PERMIT

CHECK ROLES.

Confirm who may inspect, propose, execute by risk level, roll back, and manage the app.

05 / ASK

START A CHAT.

Choose an agent role, ask one focused question, and use a new conversation when the task changes.

ChatGPT and the OpenAI API are separate. A ChatGPT subscription does not include API usage. If answers feel thin after site changes, rebuild the Knowledge index and ask again.
02 / FIND YOUR WAY AROUND

SIX SECTIONS.
ONE WORKFLOW.

The tabs you see depend on your permissions. Agent roles change emphasis; WordPress capabilities decide what you may actually do.

CHAT / ASK + PLAN

CHAT

Ask questions, choose a role, use starter prompts, and request controlled changes in plain language. Enter sends; Shift+Enter adds a line.

LEDGER / VERIFY

HISTORY

See when a supported change happened, its target, risk, source, and whether conflict-aware rollback is currently available.

LOCAL EVIDENCE / SEARCH

KNOWLEDGE

Rebuild and search the local index. Analyze plugin-removal evidence without sending raw plugin source or builder payloads to AI.

PEOPLE / AUTHORITY

ROLES

Control who may inspect, propose, execute low-, medium-, or high-risk work, roll back, and manage Site Agent.

PROVIDER / RETENTION

SETTINGS

Manage the OpenAI connection, model, audit/chat/ledger retention, local redacted chat history, and uninstall behavior.

MEASURED EVIDENCE

ADVANCED

Run diagnostics for WordPress, database, cron, memory, storage, and available error-log evidence. Gray means unknown—not broken.

ASK.REVIEW.VERIFY.
03 / MAKE A CONTROLLED CHANGE

THE AI
DOES NOT
GET THE KEYS.

Site Agent interprets your request. WordPress validates the exact target, permissions, and risk. You approve the plan. The executor runs only that plan.

01 / WRITE THE RESULT YOU WANT

Be specific: “Update the About page introduction, keep it published, and show me the exact change first.”

02 / READ THE WHOLE PLAN

Confirm the target, fields, status, risk, and preview. Cancel if anything is unclear. High-risk work receives an extra warning.

03 / APPROVE ONCE

Approved plans use a user-bound, single-use token that expires after ten minutes. Duplicate execution is blocked.

04 / CHECK THE REAL RESULT

Verify the front end and affected workflow. A successful API response is not the same as a successful website change.

05 / CHECK HISTORY

Confirm the Change Ledger entry and rollback status. Supported rollback is targeted and conflict-aware—not a full-site backup.

04 / GOOD QUESTIONS

ASK LIKE
A SITE OWNER.

One focused question produces a clearer answer than a vague request to “fix everything.” These prompts match Site Agent’s current inspection tools.

CHANGE HISTORY

WHAT CHANGED ON MY SITE THIS WEEK?

SITE HEALTH

IS ANYTHING ON MY SITE UNHEALTHY?

CONTENT

WHICH PAGES NEED ATTENTION?

BUILDERS

WHICH PAGES USE THIS BUILDER?

OPERATIONS

WHAT CRON JOBS ARE RUNNING?

DEPENDENCIES

WHAT COULD BREAK IF I REMOVE THIS PLUGIN?

05 / PRIVACY + SAFETY

PRIVATE.
BOUNDED.
HONEST.

Site Agent is designed to reduce its own attack surface, not to pretend WordPress can eliminate every operational risk.

SECRETS

SENSITIVE DATA STAYS OUT.

Credentials, submissions, orders, user records, raw builder payloads, and change snapshots are excluded from provider context. Secret-like values are redacted again before requests and logs.

AUTHORITY

THE MODEL ONLY PLANS.

Unknown tools, malformed arguments, unsupported targets, and unauthorized actions are rejected server-side. Native WordPress permissions still apply.

ROLLBACK

NO FALSE PROMISES.

Rollback appears only when a supported snapshot exists. A newer-state conflict blocks normal rollback. Keep real backups.

WHAT IT CAN CHANGE TODAY

  • Create and update supported posts/pages
  • Trash supported content
  • Update supported builder and SEO metadata
  • Update allowlisted non-secret core settings
  • Activate or deactivate installed local plugins
  • Delete expired transients
  • Roll back supported ledger entries

WHAT IT CANNOT PROMISE

  • Complete hosting, DNS, traffic, SaaS, or vendor visibility
  • Proof that plugin removal is consequence-free
  • A full-site backup or universal rollback
  • Network-wide plugin rollback
  • Protection from a compromised admin, plugin, theme, server, browser, or database
06 / THE SAFE HABIT

BACK UP.
ASK.
REVIEW.
VERIFY.