Skip to content

Releases: johnemc2/mcp-oauth-companion

MCP OAuth Companion v0.6.2

Choose a tag to compare

@johnemc2 johnemc2 released this 08 Oct 10:35

MCP OAuth Companion v0.6.2

Authors: Jonathan Grice and Sol

MCP OAuth Companion is a WordPress plugin that provides OAuth authentication and content-management capabilities through the separately installed WordPress MCP Adapter.

Features

  • OAuth-enabled MCP connectivity for WordPress
  • Search, read, create, edit, and publish posts and pages
  • Manage post revisions and eligible authors
  • Search and upload media, and update image alt text
  • Recoverable Trash operations for supported content
  • WordPress capability-based permission checks

What's New in v0.6.2

  • Strengthened JWT expiration validation to reject missing, invalid, or expired expiration claims.
  • Preserved expired-token handling for OAuth token revocation.
  • Added automated PHP security regression tests.
  • Updated documentation and release metadata.

Requirements

  • WordPress with a compatible MCP Adapter installed and activated
  • PHP 8.2 or newer
  • HTTPS-enabled WordPress installation

Installation

  1. Download mcp-oauth-companion-v0.6.2.zip from this release.
  2. In WordPress, navigate to Plugins → Add New → Upload Plugin.
  3. Upload the ZIP and activate the plugin.
  4. Configure your MCP client with your site's OAuth and MCP endpoints.

Notes

This release includes a tested JWT security fix. The plugin has not undergone an independent security audit. Review OAuth client configuration and third-party licensing notices before deploying it beyond your own installation.

License: GPL-3.0-or-later, subject to the third-party attribution and licensing notices included in the repository.