lifecyclePlugin & Theme Lifecycle Abilities
Install, activate, update, and remove plugins and themes. Gated behind the strongest WordPress capabilities and flagged separately from ordinary content work.
delete_plugins 1delete_themes 1install_plugins 1update_plugins 2update_themes 1activate_plugins 2switch_themes 2Available Tools (10)
wp_get_plugin_updatesupdate_pluginsList installed plugins that have an update available, with current and new version, plus whether each is active. Read-only. Use before wp_update_plugin to see what is pending.
wp_get_themes_statusswitch_themesList installed themes with version, active flag, parent theme, and whether an update is available. Read-only.
wp_activate_pluginDestructiveActivate an installed plugin. Requires the activate_plugins capability. Call without confirm to preview; call with confirm=true and confirm_slug to apply. Returns the post-operation active state read back from WordPress. A plugin that fatals on activation is reported as an error and left inactive.
wp_deactivate_pluginDestructiveDeactivate an active plugin. Requires activate_plugins. More MCP itself cannot be deactivated through this tool: the request is served by this plugin, so deactivating mid-request would drop the connection. Call without confirm to preview.
wp_update_pluginDestructiveUpdate one installed plugin to the latest version from its update source. Requires update_plugins. Call without confirm to preview the version change. Returns the version actually installed, read back after the upgrade: a reported success with an unchanged version means the upgrader silently no-opped.
wp_install_pluginDestructiveInstall a plugin from the WordPress.org repository by slug, then optionally activate it. Requires install_plugins. ONLY wp.org slugs are accepted: package URLs are rejected, because accepting one would make this a download-and-execute-arbitrary-code tool. Call without confirm to preview what would be installed (name, version, author, active install count) so the target can be verified before anything is written.
wp_delete_pluginDestructivePermanently delete an installed plugin's files. Requires delete_plugins. The plugin must be inactive first: this tool will not deactivate on your behalf, because deletion is irreversible and deactivation is the natural checkpoint. More MCP itself cannot be deleted. Call without confirm to preview.
wp_activate_themeDestructiveSwitch the active theme. Requires switch_themes. This changes what every visitor sees immediately and can break layouts built for the previous theme, so the preview reports both the outgoing and incoming theme. Call without confirm to preview.
wp_update_themeDestructiveUpdate one installed theme to the latest version. Requires update_themes. Call without confirm to preview the version change.
wp_delete_themeDestructivePermanently delete an installed theme's files. Requires delete_themes. The active theme and any parent of the active theme cannot be deleted. Call without confirm to preview.