guides•Last updated: 2026-09-02

Troubleshooting Connection Issues

Diagnose and resolve common More MCP issues: 401 Unauthorized, 403 Forbidden, Cloudflare WAF blocks, and permalink errors.

Diagnostic Checklist

If your AI client cannot connect to More MCP, check these four common failure points first:

  1. Pretty permalinks are enabled in WordPress.
  2. The endpoint URL is accessible over HTTPS.
  3. Your web application firewall (Cloudflare / Wordfence) is not blocking POST requests.
  4. Your authentication header matches the key format.

Issue 1: HTTP 404 on Endpoint

Symptom: Client reports 404 Not Found when requesting /wp-json/more-mcp/v1/mcp.

Cause: WordPress REST API rewrite rules are not flushed or plain permalinks are in use.

Solution:

  1. In your WordPress admin, go to Settings -> Permalinks.
  2. Ensure you have selected Post name (or any option other than Plain).
  3. Click Save Changes to flush the rewrite rules.
  4. Test the endpoint again in your browser: https://yourdomain.com/wp-json/more-mcp/v1/mcp.

Issue 2: HTTP 401 Unauthorized

Symptom: {"error": "Unauthorized", "message": "Missing or invalid MMCP-Key header"}.

Cause: The header is missing, corrupted, or stripped by your web server.

Solution:

  • If you use Apache, some server configurations drop custom headers. Add this directive to your .htaccess file:
    SetEnvIf Authorization "(.*)" HTTP_AUTHORIZATION=$1
    SetEnvIf MMCP-Key "(.*)" HTTP_MMCP_KEY=$1
  • In Nginx, verify that custom headers are permitted:
    underscores_in_headers on;

Issue 3: Cloudflare or Security Plugin 403

Symptom: Connection immediately aborted, or returns a Cloudflare challenge page.

Cause: Automated bot protection or WAF rules intercepting POST requests from Node/Python clients.

Solution:

  1. In Cloudflare Dashboard, navigate to Security -> WAF -> Custom Rules.
  2. Create an exclusion rule for your MCP endpoint:
    • URI Path starts with: /wp-json/more-mcp/
    • Action: Skip (WAF Managed Rules, Bot Fight Mode)
  3. If using Wordfence or iThemes Security, add /wp-json/more-mcp/* to the REST API allowlist.

Issue 4: Tools Empty or Missing Expected Integrations

Symptom: Client connects successfully, but only the ~138 WordPress Core tools appear instead of the expected WooCommerce or Elementor tools.

Solution:

  • Navigate to More MCP -> Integrations.
  • Ensure the integration for that plugin is set to Enabled.
  • More MCP automatically detects active plugins, but individual integrations can be disabled in settings.