MCP 0.4.2 / Connections
Administrator MCP server
Connect a trusted operator client to the Free administration surface.
Open Cointacted → Operations MCP → Settings and enable only the administrator server. Keep write tools disabled.
Create a WordPress Application Password for a dedicated administrator account. Configure the client with HTTPS, then call initialize, tools/list, ping, and one read-only status tool through /wp-json/cointacted-mcp/v1/rpc.
Review Activity and confirm the client, tool, outcome, and time were recorded without arguments or credentials. Do not use an administrator credential for an end-user connection.
Enable the global write-tools switch only after every intended tool and its owning capability have been reviewed. There is no arbitrary shell, SQL, PHP, shortcode, or terminal bypass.
