WooCommerce Code Review
woocommerce/woocommerce
Reviews WooCommerce code changes against the project's standards, flagging backend PHP architecture, naming, documentation, data integrity and testing violations.
Keep WordPress sites on Hostinger web hosting updated and secure: checks core, plugin and theme versions, known vulnerabilities and install health on one site or every site in the account, reports…
$ npx skills add hostinger/api-mcp-server --skill maintain-wordpress -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install hostinger/api-mcp-server maintain-wordpress --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/hostinger/api-mcp-server.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/maintain-wordpress .claude/skills/maintain-wordpress && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "maintain-wordpress" agent skill from https://github.com/hostinger/api-mcp-server/tree/main/skills/maintain-wordpress into .claude/skills/maintain-wordpress/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "maintain-wordpress", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/hostinger/api-mcp-server/tree/main/skills/maintain-wordpressType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add hostinger/api-mcp-server --skill maintain-wordpress -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install hostinger/api-mcp-server maintain-wordpress --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/hostinger/api-mcp-server.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/maintain-wordpress .agents/skills/maintain-wordpress && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "maintain-wordpress" agent skill from https://github.com/hostinger/api-mcp-server/tree/main/skills/maintain-wordpress into .agents/skills/maintain-wordpress/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "maintain-wordpress", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add hostinger/api-mcp-server --skill maintain-wordpress -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install hostinger/api-mcp-server maintain-wordpress --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/hostinger/api-mcp-server.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/maintain-wordpress .cursor/skills/maintain-wordpress && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "maintain-wordpress" agent skill from https://github.com/hostinger/api-mcp-server/tree/main/skills/maintain-wordpress into .cursor/skills/maintain-wordpress/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "maintain-wordpress", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/hostinger/api-mcp-server.git --path skills/maintain-wordpress--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add hostinger/api-mcp-server --skill maintain-wordpress -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install hostinger/api-mcp-server maintain-wordpress --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/hostinger/api-mcp-server.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/maintain-wordpress .gemini/skills/maintain-wordpress && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "maintain-wordpress" agent skill from https://github.com/hostinger/api-mcp-server/tree/main/skills/maintain-wordpress into .gemini/skills/maintain-wordpress/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "maintain-wordpress", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install hostinger/api-mcp-server maintain-wordpressInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add hostinger/api-mcp-server --skill maintain-wordpress -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/hostinger/api-mcp-server.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/maintain-wordpress .github/skills/maintain-wordpress && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "maintain-wordpress" agent skill from https://github.com/hostinger/api-mcp-server/tree/main/skills/maintain-wordpress into .github/skills/maintain-wordpress/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "maintain-wordpress", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add hostinger/api-mcp-server --skill maintain-wordpress -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install hostinger/api-mcp-server maintain-wordpress --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/hostinger/api-mcp-server.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/maintain-wordpress .opencode/skills/maintain-wordpress && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "maintain-wordpress" agent skill from https://github.com/hostinger/api-mcp-server/tree/main/skills/maintain-wordpress into .opencode/skills/maintain-wordpress/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "maintain-wordpress", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
maintain-wordpressKeep WordPress sites on Hostinger web hosting updated and secure: checks core, plugin and theme versions, known vulnerabilities and install health on one site or every site in the account, reports…
Maintain Wordpress is an agent skill from hostinger/api-mcp-server. Keep WordPress sites on Hostinger web hosting updated and secure: checks core, plugin and theme versions, known vulnerabilities and install health on one site or every site in the account, reports what needs doing, applies updates in a safe order, and confirms each site still loads. Also covers cache purges, the Memcached object cache, maintenance mode and one-click wp-admin login links. Triggers: update my WordPress, update plugins, are my WordPress sites secure, WordPress vulnerabilities, outdated plugins or…
Its SKILL.md is about 1.4k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It works with WordPress. The licence is MIT.
6 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit b0e1bc3. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
curlFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use curl, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Maintain Wordpress loads about 1.4k tokens when it runs. Until then it costs about 152 tokens; SKILL.md has 603 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from hostinger/api-mcp-server at commit b0e1bc3, republished under its MIT licence (© hostinger). 603 words, ~1,385 tokens.
.claude/skills/maintain-wordpress/SKILL.md (or your agent's skills folder).Check first, report, then update only what the user approves — one site at a time, proving each still loads before moving to the next.
inputSchema that search returns before the first call of each operation. If a name below is rejected as unknown, search for what the step does (e.g. "wordpress plugins update").multi-execute (up to 20 steps a batch). Batches chain operations from one server only — the Hostinger Connector runs wordpress, hosting and agency-hosting as separate servers.wordpress_installations_list with domain (substring match — take the exact entry). Every site: wordpress_installations_list without filters, adding ownership: "all" to include sites the user manages for others.id (the software parameter of every wordpress_* call), username, domain, directory, is_valid and validation_error.agency-hosting_websites_list-plan with website_types: ["wordpress"]. When wordpress_installations_list does not include them, only agency-hosting_wordpress_settings and core version changes (agency-hosting_wordpress_list-versions, agency-hosting_wordpress_change-version) are available; plugins and themes are updated from wp-admin.Per install:
wordpress_installations_show-core-version — core version and the known vulnerabilities that affect it.wordpress_installations_list-core-updates — available core versions.wordpress_plugins_list-installed — status, update (the newer version, when there is one) and vulnerabilities[] with fixed_in.wordpress_themes_list-installed — the same for themes.Four steps per install fit five installs in one batch. For an install with is_valid: false, run wordpress_installations_check-if-are-valid with force: true for a fresh reason and leave it out of updates — a broken install is the troubleshoot-website skill's job.
## example.com (WordPress 6.8.1)
Vulnerable: contact-form-x 5.2 → fixed in 5.3 (update available)
Vulnerable, inactive: old-slider 1.0 — no fix; uninstall recommended
Updates: core 6.8.1 → 6.8.3 (minor), 4 plugins, 1 themeVulnerable items come first. A vulnerable plugin without a fix, or an inactive one, is better removed with wordpress_plugins_uninstall than left installed — inactive code on disk can still be reached. Ask which updates to apply.
The API has no backup operation. Before updating, ask the user to create a backup in hPanel or confirm the latest automatic one is recent enough. Say it plainly; the user may choose to go ahead without one.
wordpress_plugins_update with their slugs.wordpress_themes_update.wordpress_installations_update-core: minor: true for patch releases; a major version only when the user asks for it.For a busy site the user may want wordpress_maintenance_toggle with enabled: true during the run — and it is always turned off again afterwards, even when something failed.
After each site:
wordpress_litespeed-cache_purge-lite-speed.curl -s -o /dev/null -w "%{http_code}\n" https://DOMAIN/ and the same for https://DOMAIN/wp-login.php — both should be 200 with no PHP error in the body.wordpress_installations_check-if-are-valid with force: true.When a site breaks: stop the run, deactivate the plugin updated last with wordpress_plugins_deactivate, check again, and report which update caused it before touching any other site.
wordpress_litespeed-cache_show-lite-speed-status; purge after design or content changes.wordpress_object-cache_show-memcached-status, then wordpress_object-cache_toggle-memcached with enabled: true — the usual quick speed-up.hosting_php_get is large (around 25 KB), so read it only when the user asks about PHP. PHP 8.x is markedly faster than 7.x; confirm plugin compatibility before hosting_php_update-version.wordpress_login_create-links returns temporary one-click login links. Give them to the user only; never store or reuse them.wordpress_plugins_update-hostinger (slug).Tell the user how many installs there are before starting. Check in batches, keep one running report, and update site by site so a failure stops the run with the rest untouched.
© hostinger, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in skills/maintain-wordpress of hostinger/api-mcp-server.
Open the folder on GitHubat commit b0e1bc3
Maintain Wordpress next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Maintain Wordpress this skillhostinger/api-mcp-server | 159 | — | ~1.4k | Automated safety check: Pass | MIT | |
| WooCommerce Code Reviewwoocommerce/woocommerce | 11k | 3 repos | ~1.1k | Automated safety check: Pass | Custom licence | |
| Wp Block Developmentgambitph/Stackable | 350 | 3 repos | ~1.6k | Automated safety check: Pass | GPL-3.0 | |
| Postizgitroomhq/postiz-agent | 505 | 2 repos | ~7.9k | Automated safety check: Pass | AGPL-3.0 | |
| Wp Performance Reviewelvismdev/claude-wordpress-skills | 234 | 1 repos | ~4.5k | Automated safety check: Pass | MIT | |
| Wp Interactivity APIAutomattic/agent-skills | 211 | 2 repos | ~1.5k | Automated safety check: Pass | None |
woocommerce/woocommerce
Reviews WooCommerce code changes against the project's standards, flagging backend PHP architecture, naming, documentation, data integrity and testing violations.
gambitph/Stackable
A skill your agent uses when developing WordPress (Gutenberg) blocks: block.json metadata, registerblocktype(frommetadata), attributes/serialization, supports, dynamic rendering…
gitroomhq/postiz-agent
Postiz is a tool to schedule social media and chat posts to 28+ channels X, LinkedIn, LinkedIn Page, Reddit, Instagram, Facebook Page, Threads, YouTube, Google My Business, TikTok, Pinterest…
elvismdev/claude-wordpress-skills
WordPress performance code review and optimization analysis.
Automattic/agent-skills
A skill your agent uses when building or debugging WordPress Interactivity API features (data-wp- directives, @wordpress/interactivity store/state/actions, block viewScriptModule integration…
WordPress/agent-skills
A skill your agent uses when setting up, configuring, or troubleshooting local WordPress development environments with @wordpress/env (wp-env).
hostinger/api-mcp-server
Audit a Hostinger web hosting account (Shared, Cloud and Agency plans) and report what needs attention: every plan and website, SSL problems, broken or vulnerable WordPress installs, failed Node.js…
hostinger/api-mcp-server
Connect a custom domain to a website on Hostinger web hosting (Shared, Cloud or Agency plans) end to end: attach the domain to the site, point DNS at Hostinger without breaking existing email or…
hostinger/api-mcp-server
Deploy an existing project to a website on Hostinger web hosting (Shared, Cloud or Agency plans) and keep it deployed: picks the right deploy for static sites, Node.js apps (Next.js, Nuxt, Express…
hostinger/api-mcp-server
Build a complete website on Hostinger from a single prompt — hosting, domain, and (optionally) a store with real checkout or a blog/CMS the owner edits in WordPress.
hostinger/api-mcp-server
Move an existing website from another host to Hostinger web hosting (Shared, Cloud or Agency plans) without downtime: WordPress sites from a files archive and SQL dump, static and PHP sites from an…
hostinger/api-mcp-server
Diagnose and fix a website on Hostinger web hosting (Shared, Cloud or Agency plans) that is down, slow, erroring, insecure or failing to build.
Works with
Keep WordPress sites on Hostinger web hosting updated and secure: checks core, plugin and theme versions, known vulnerabilities and install health on one site or every site in the account, reports…. Maintain Wordpress is an agent skill from hostinger/api-mcp-server. Keep WordPress sites on Hostinger web hosting updated and secure: checks core, plugin and theme versions, known vulnerabilities and install health on one site or every site in the account, reports what needs doing, applies updates in a safe order, and confirms each site still loads.
Run `npx skills add hostinger/api-mcp-server --skill maintain-wordpress -a claude-code`. Or copy the skill folder (skills/maintain-wordpress in hostinger/api-mcp-server) into .claude/skills/maintain-wordpress in your project. Claude Code loads it when a task matches its description.
Run `npx skills add hostinger/api-mcp-server --skill maintain-wordpress -a codex`. Or copy the skill folder (skills/maintain-wordpress in hostinger/api-mcp-server) into .agents/skills/maintain-wordpress in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add hostinger/api-mcp-server --skill maintain-wordpress -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/maintain-wordpress, .gemini/skills/maintain-wordpress, .github/skills/maintain-wordpress and .opencode/skills/maintain-wordpress in your project.
Going by SKILL.md and its folder, Maintain Wordpress needs the command-line tools its instructions call (curl).
SKILL.md contains no URLs. Its commands use curl, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Maintain Wordpress is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.4k tokens (SKILL.md is roughly 5.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Maintain Wordpress: WooCommerce Code Review (woocommerce/woocommerce, 11k stars), Wp Block Development (gambitph/Stackable, 350 stars), Postiz (gitroomhq/postiz-agent, 505 stars) and Wp Performance Review (elvismdev/claude-wordpress-skills, 234 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
hostinger (a GitHub organization) maintains it in hostinger/api-mcp-server, which has 159 GitHub stars. The repository holds 8 skills in this directory. The repository was last updated on October 6, 2026.
Source: hostinger/api-mcp-server on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.