SD AI Agent is an AI teammate for the WordPress site you already run. Ask it to improve a page, draft content, review SEO opportunities, prepare media, answer questions with site context, or run routine admin work from inside WordPress using natural language.
You stay in control: choose the included SD AI-managed service or your own compatible WordPress AI provider, decide which tools the agent can use, and require confirmation before consequential actions run.
Open the full workspace at Tools > SD AI Agent for longer jobs with folders, search, history, and exports. Use the compact admin widget when you want quick help while editing another WordPress screen.
SD AI Agent can remember site preferences, reuse team instructions, and search a local knowledge base built from your WordPress content and uploaded documents. That context helps the assistant produce answers and drafts that fit your site instead of starting from a blank prompt each time.
Create reusable skills, custom HTTP tools, WordPress action tools, scheduled tasks, and event-driven workflows. Start with focused jobs such as a daily site-health report, a weekly content review, a new-post summary, a WooCommerce order follow-up, or a moderation check. Logs and confirmations keep the work reviewable.
You need WordPress 7.0 or later and PHP 8.2 or later. Use the included SD AI managed service, or install a compatible WordPress AI provider connector. Third-party providers may charge for model usage; review their pricing and privacy terms before sending content or attachments.
This plugin contacts outside services only when they are needed for a feature you use, except that the included SD AI managed service registers the site installation during activation. Other services are contacted when you configure the relevant key, URL, or feature; ask the agent to run an action that uses that service; or enable scheduled maintenance such as skill-manifest updates.
The included SD AI provider can register the site and provide AI responses when selected. Activation registration sends a durable installation ID, site URL, plugin version, and WordPress version. AI requests send the conversation messages, system prompt, attached files if any, and tool definitions needed to generate the reply.
These are contacted only when configured in Settings > AI Credentials and selected for a response. Requests send the conversation messages, system prompt, attached files if any, and tool definitions to the chosen provider.
OpenAI (api.openai.com) — Provides AI chat completions for OpenAI models. Terms: https://openai.com/policies/terms-of-use/ Privacy: https://openai.com/policies/privacy-policy/
Anthropic (api.anthropic.com) — Provides AI chat completions for Claude models. Terms: https://www.anthropic.com/legal/consumer-terms Privacy: https://www.anthropic.com/legal/privacy
Google AI / Gemini (generativelanguage.googleapis.com) — Provides AI chat completions for Gemini models. Terms: https://policies.google.com/terms Privacy: https://policies.google.com/privacy
Other compatible providers. If you install a separate connector, SD AI Agent uses that connector’s configured endpoint and data handling. Some connectors may route requests through regional or cloud services such as Google Vertex AI (*.aiplatform.googleapis.com). Review the connector’s own terms and privacy policy.
Internet search runs only when you or the agent explicitly request it. The first configured provider is used. Only the search topic comes from your query; requests may also include a configured Tavily or Brave API key, provider-specific request fields, DuckDuckGo API parameters, and a custom User-Agent.
Tavily Search API (api.tavily.com) — Web search results when a Tavily key is configured. Terms: https://tavily.com/terms Privacy: https://tavily.com/privacy
Brave Search API (api.search.brave.com) — Web search results when a Brave key is configured. Terms: https://brave.com/terms-of-use/ Privacy: https://brave.com/privacy/browser/
DuckDuckGo Instant Answer API (api.duckduckgo.com) — Free fallback search when no Tavily or Brave key is configured. Terms: https://duckduckgo.com/terms Privacy: https://duckduckgo.com/privacy
GitHub (github.com, api.github.com, raw.githubusercontent.com) — Provides optional public plugin ZIPs, public skill files, and WP-CLI download instructions. Contacted only when an administrator runs the skills sync command or installs a GitHub-hosted recommendation. Sends the requested public path plus normal HTTP metadata, not site content, conversation history, API keys, or settings. Terms: https://docs.github.com/en/site-policy/github-terms/github-terms-of-service Privacy: https://docs.github.com/en/site-policy/privacy-policies/github-general-privacy-statement
WordPress.org Plugin Directory (api.wordpress.org and downloads.wordpress.org) — Provides plugin search, metadata, and ZIP downloads when you request a WordPress.org plugin. Sends the search keyword or slug, result count, and normal HTTP metadata. Terms / directory guidelines: https://developer.wordpress.org/plugins/wordpress-org/detailed-plugin-guidelines/ Privacy: https://wordpress.org/about/privacy/
Admin-supplied skill manifest URLs — If you configure skill_manifest_url, the plugin can fetch that HTTPS JSON manifest for manual checks, lookups, or enabled auto-updates. The request sends the manifest path, JSON/cache headers, and normal HTTP metadata. Terms and privacy depend on the host you configure.
Stock-image services run only when requested. They receive the search keyword and requested image dimensions, not site content or conversation history.
Openverse (api.openverse.org) — Openly licensed image search hosted by the WordPress Foundation. No API key required. Terms: https://docs.openverse.org/terms_of_service.html Privacy: https://wordpress.org/about/privacy/
Pixabay (pixabay.com) — Stock-image search when a Pixabay API key is configured. Sends the keyword, dimensions, and API key. Terms: https://pixabay.com/service/terms/ Privacy: https://pixabay.com/service/privacy/
Google Analytics Data API (analyticsdata.googleapis.com and oauth2.googleapis.com) — Reads your GA4 traffic, top-page, and realtime statistics when you upload a service-account key and request a report. Sends the service-account token request plus the property ID, date range, and metrics requested. Google APIs Terms: https://developers.google.com/terms Privacy: https://policies.google.com/privacy Google Analytics terms: https://marketingplatform.google.com/about/analytics/terms/us/
Google Search Console API (searchconsole.googleapis.com and oauth2.googleapis.com) — Reads your Search Console query and page performance when credentials are configured and you request a report. Sends the token request or stored OAuth token plus the property URL, date range, dimensions, filters, and row limit. Google APIs Terms: https://developers.google.com/terms Privacy: https://policies.google.com/privacy
Custom HTTP tools and webhooks — Administrators can create tools that call configured external URLs, including disabled examples for weather-style APIs and Zapier (hooks.zapier.com). Nothing is contacted unless the tool is enabled and run. Requests send the configured URL, method, headers, substituted inputs, and body. Terms and privacy depend on the configured service. Zapier Terms: https://zapier.com/tos Zapier Privacy: https://zapier.com/privacy
User-requested URL fetch, site scrape, and media import URLs — URL metadata, SEO audit, scrape, upload-from-URL, and generated-image import tools contact only the URL you provide or approve. The target may receive the requested path, query string, normal HTTP metadata, and a WordPress user-agent; media import tools download the remote file into WordPress. Review the target site’s terms and privacy policy before running the tool.
Discord (discord.com) — Optional automation-result webhooks. Sends the configured automation summary to the webhook URL only after you add one. Terms: https://discord.com/terms Privacy: https://discord.com/privacy
Slack (slack.com / hooks.slack.com) — Optional automation-result webhooks. Sends the configured automation summary to the webhook URL only after you add one. Terms: https://slack.com/terms-of-service Privacy: https://slack.com/privacy-policy
/report-issue and accept the consent preview. The payload is the sanitized conversation excerpt and metadata shown in the modal. Terms: https://ultimateagentwp.ai/terms/ Privacy: https://ultimateagentwp.ai/privacy/