Complete platform coverage
Every feature supports safer decisions and provable outcomes.
Monitoring, repair, recovery, security intelligence, and team operations stay connected to the exact website and incident that produced the work.
Continuous website monitoring
Track connector heartbeat, WordPress and PHP versions, active theme, plugin inventory, update signals, WP-Cron, REST health, disk capacity, database errors, and filesystem writability.
Site-specific Issue Center
Convert health signals, incidents, update findings, vulnerability matches, and connector failures into a prioritized queue for the affected website.
AI-assisted diagnosis
Send redacted incident context to the configured AI provider for an explanation and a recommended registered playbook. AI output never becomes arbitrary executable code.
One-click supported fixes
Queue known actions directly from issues, including scans, restore points, rewrite flushing, supported cache clearing, Elementor CSS regeneration, and recovery review.
Safe auto-fix
Group eligible low-risk issues into an automatic action queue while leaving malware, database, disk, hosting, and uncertain failures for human review.
Protected local restore points
Create database and wp-content archives before risky repairs, retain up to three protected local copies, and display the latest restore point per site.
Five-stage repair runs
Track analysis, protection, repair, verification, and recovery as one persisted run instead of showing unrelated commands without context.
Verification and rollback
Run a fresh connector scan, PageSpeed test, or browser smoke check after repair. Failed verification keeps the issue open and can enter rollback when a valid restore point exists.
Emergency recovery
Use a must-use Safe Mode loader and signed CLI rescue bridge to block a crashing plugin, remove stuck maintenance mode, or restore access when the normal plugin stack fails.
Recovery for a site with no connector installed
A site can be white-screened or completely unreachable before WPFixAgent was ever connected. Using FTP or SFTP credentials entered once and never stored, WPFixAgent locates the WordPress install and deploys a standalone rescue file to bring it back -- Professional and Agency plans.
Independent security scanning
Self-built malware detection and WordPress core-file integrity checks -- no third-party security vendor or external API, ever. Findings surface as critical, malware, error, and operational alerts in SaaS and WordPress.
Malware quarantine
Disable a suspicious file in place -- moved into a locked, non-executable folder with a recovery manifest -- rather than deleted outright, so a false positive is never destructive.
Reinstall from official source
Redownload a plugin or theme's current official WordPress.org release and replace every file -- even without a pending update -- removing anything injected that wasn't part of the real package.
Plugin, theme, core, and database updates
Apply WordPress's own trusted updates with component snapshots first -- a plugin or theme update restores itself automatically on failure; a core or database upgrade requires a verified full restore point from the last 24 hours.
Backup restore and retention
Restore full, database-only, or component-scoped from any local archive, delete obsolete restore points without opening WordPress, and keep up to three protected local copies automatically pruned.
Configuration hardening
Disable public debug-output exposure and the in-dashboard file editor after snapshotting current configuration, closing two of the most common post-compromise persistence paths.
Repair history and audit logs
Keep issue fingerprints, commands, stages, results, timestamps, verification outcomes, rollback status, and organization activity attached to the correct site.
Multi-site teams and reports
Manage fleets with organization-scoped access, six team roles, account reports, and separate website workspaces for client operations.