wp-wpcli-and-ops
wordpress/agent-skills
Execute WordPress operations safely via WP-CLI: search-replace, database management, plugin/theme operations, and automation.
What is wp-wpcli-and-ops?
WP-CLI and Ops provides a structured workflow for WordPress operational tasks including domain migrations, database operations, plugin/theme management, cron handling, and multisite operations. Use this skill when performing WordPress administration via the wp command-line tool, with built-in guardrails to prevent accidental changes to the wrong environment or site.
- Safe search-replace with dry-run verification for URL changes and domain migrations
- Database export, import, reset, and inspection operations
- Plugin, theme, and language pack installation, activation, and updates
- Cron event inspection and execution for debugging
- Cache and rewrite rule flushing
- Multisite site operations with proper targeting via --url and --network flags
How to install wp-wpcli-and-ops
npx skills add https://github.com/wordpress/agent-skills --skill wp-wpcli-and-ops- WP-CLI installed in the execution environment
- WordPress 6.9+ with PHP 7.2.24+
- Access to the WordPress root directory
- For multisite: knowledge of which site(s) to target
How to use wp-wpcli-and-ops
- 1.Run wpcli_inspect to verify WP-CLI availability and confirm site targeting (path and URL)
- 2.Identify your workflow: search-replace, plugin/theme ops, cron management, or multisite changes
- 3.For destructive operations: create a database backup with wp db export
- 4.Use --dry-run flags (e.g., wp search-replace --dry-run) to preview changes before executing
- 5.Execute the operation and verify results match expectations
- 6.Flush caches or rewrite rules if needed with wp cache flush or wp rewrite flush
Use cases
- Migrating a WordPress site to a new domain with safe search-replace workflow
- Exporting a production database for local development testing
- Installing and activating plugins across a multisite network
- Debugging failed cron events by running them individually
- Setting up repeatable deployment operations in CI/CD pipelines
- WordPress developers managing site operations
- DevOps engineers automating WordPress deployments
- Site administrators performing domain migrations or bulk updates
- CI/CD pipeline builders creating WordPress automation jobs
wp-wpcli-and-ops FAQ
Use the safe search-replace workflow: (1) wp db export to backup, (2) wp search-replace --dry-run to preview changes, (3) run the real replace with appropriate flags, (4) flush caches and rewrite rules. See references/search-replace.md for detailed flags.
Without --url or --network flags, commands may target the wrong site. Always confirm your targeting first: use wpcli_inspect to verify the site URL, and include --url=<site-url> for single-site operations or --network for network-wide changes.
Yes. Use wp-cli.yml to set defaults (path, URL, PHP memory limits) and shell scripts that log commands and stop on error. This is ideal for CI/CD jobs and repeatable deployment tasks.
Install it via your project's documented tooling (Composer, container, or system package). If using Docker/wp-env, ensure you're running commands in the correct container. Ask for the intended execution environment if unclear.
Use wp cron event list to inspect cron state, then run individual events with wp cron event run <hook> for debugging rather than running all events blindly.
Full instructions (SKILL.md)
Source of truth, from wordpress/agent-skills.
name: wp-wpcli-and-ops description: "Use when working with WP-CLI (wp) for WordPress operations: safe search-replace, db export/import, plugin/theme/user/content management, cron, cache flushing, multisite, and scripting/automation with wp-cli.yml." compatibility: "Targets WordPress 6.9+ (PHP 7.2.24+). Requires WP-CLI in the execution environment."
WP-CLI and Ops
When to use
Use this skill when the task involves WordPress operational work via WP-CLI, including:
wp search-replace(URL changes, domain migrations, protocol switch)- DB export/import, resets, and inspections (
wp db *) - plugin/theme install/activate/update, language packs
- cron event listing/running
- cache/rewrite flushing
- multisite operations (
wp site *,--url,--network) - building repeatable scripts (
wp-cli.yml, shell scripts, CI jobs)
Inputs required
- Where WP-CLI will run (local dev, staging, production) and whether it’s safe to run.
- How to target the correct site root:
--path=<wordpress-root>and (multisite)--url=<site-url>
- Whether this is multisite and whether commands should run network-wide.
- Any constraints (no downtime, no DB writes, maintenance window).
Procedure
0) Guardrails: confirm environment and blast radius
WP-CLI commands can be destructive. Before running anything that writes:
- Confirm environment (dev/staging/prod).
- Confirm targeting (path/url) so you don’t hit the wrong site.
- Make a backup when performing risky operations.
Read:
references/safety.md
1) Inspect WP-CLI and site targeting (deterministic)
Run the inspector:
node skills/wp-wpcli-and-ops/scripts/wpcli_inspect.mjs --path=<path> [--url=<url>]
If WP-CLI isn’t available, fall back to installing it via the project’s documented tooling (Composer, container, or system package), or ask for the expected execution environment.
2) Choose the right workflow
A) Safe URL/domain migration (search-replace)
Follow a safe sequence:
wp db export(backup)wp search-replace --dry-run(review impact)- Run the real replace with appropriate flags
- Flush caches/rewrite if needed
Read:
references/search-replace.md
B) Plugin/theme operations
Use wp plugin * / wp theme * and confirm you’re acting on the intended site (and network) first.
Read:
references/packages-and-updates.md
C) Cron and queues
Inspect cron state and run individual events for debugging rather than “run everything blindly”.
Read:
references/cron-and-cache.md
D) Multisite operations
Multisite changes can affect many sites. Always decide whether you’re operating:
- on a single site (
--url=), or - network-wide (
--network/ iterating sites)
Read:
references/multisite.md
3) Automation patterns (scripts + wp-cli.yml)
For repeatable ops, prefer:
wp-cli.ymlfor defaults (path/url, PHP memory limits)- shell scripts that log commands and stop on error
- CI jobs that run read-only checks by default
Read:
references/automation.md
Verification
- Re-run
wpcli_inspectafter changes that could affect targeting or config. - Confirm intended side effects:
- correct URLs updated
- plugins/themes in expected state
- cron/caches flushed where needed
- If there’s a health check endpoint or smoke test suite, run it after ops changes.
Failure modes / debugging
- “Error: This does not seem to be a WordPress installation.”
- wrong
--path, wrong container, or missingwp-config.php
- wrong
- Multisite commands affecting the wrong site
- missing
--urlor wrong URL
- missing
- Search-replace causes unexpected serialization issues
- wrong flags or changing serialized data unsafely
See:
references/debugging.md
Escalation
- If you cannot confirm environment safety, do not run write operations.
- If the repo uses containerized tooling (Docker/wp-env) but you can’t access it, ask for the intended command runner or CI job.
Related skills
More from wordpress/agent-skills and the wider catalog.

wpds
Build WordPress UIs with the WordPress Design System components, tokens, and patterns.

blueprint
Create and configure WordPress Playground instances with declarative JSON blueprints.

wordpress-router
Classify WordPress codebases and route to the correct workflow for plugins, themes, blocks, and core.

wp-abilities-api
Register and expose WordPress abilities via PHP and REST API for client-side permission checks.

workos
Use when the user asks for a WorkOS docs URL, term, or dashboard field (Sign-in endpoint, initiate_login_uri, Redirect URI, `WORKOS_*` env vars), or is implementing, debugging, or migrating WorkOS — AuthKit, SSO/SAML, Directory Sync, RBAC, FGA, MFA, Vault, Audit Logs, Admin Portal, Pipes (Connected Apps), Feature Flags, Radar (bot/fraud detection), webhooks, Custom Domains, running the `workos` CLI in agent or sandbox sessions (`WORKOS_MODE`, `workos doctor`), or migrating from Auth0, Clerk, Cognito, Firebase, Supabase, Stytch, Descope, or Better Auth. Also triggers on @workos-inc/* imports.

browser-cdp
Control Chrome via CDP to automate browser tasks and reuse login sessions.