{"id":330440,"date":"2026-06-22T15:47:22","date_gmt":"2026-06-22T15:47:22","guid":{"rendered":"https:\/\/wordpress.org\/plugins\/npcink-cloud-addon\/"},"modified":"2026-08-18T04:48:03","modified_gmt":"2026-08-18T04:48:03","slug":"npcink-cloud-addon","status":"publish","type":"plugin","link":"https:\/\/pan.wordpress.org\/plugins\/npcink-cloud-addon\/","author":16786901,"comment_status":"closed","ping_status":"closed","template":"","meta":{"version":"0.1.8","stable_tag":"0.1.8","tested":"7.0.4","requires":"7.0","requires_php":"8.0","requires_plugins":null,"header_name":"Npcink Cloud Addon","header_author":"Npcink","header_description":"Cloud connector for Npcink hosted runtime access, signing, health checks, and entitlement summaries.","assets_banners_color":"e9f0fc","last_updated":"2026-08-18 04:48:03","external_support_url":"","external_repository_url":"","donate_link":"","header_plugin_uri":"","header_author_uri":"","rating":0,"author_block_rating":0,"active_installs":0,"downloads":311,"num_ratings":0,"support_threads":0,"support_threads_resolved":0,"author_block_count":0,"sections":["description","installation","faq","changelog"],"tags":{"0.1.0":{"tag":"0.1.0","author":"muze233","date":"2026-06-22 15:47:07"},"0.1.1":{"tag":"0.1.1","author":"muze233","date":"2026-06-29 12:58:36"},"0.1.2":{"tag":"0.1.2","author":"muze233","date":"2026-07-08 09:46:59"},"0.1.3":{"tag":"0.1.3","author":"muze233","date":"2026-07-13 14:44:46"},"0.1.7":{"tag":"0.1.7","author":"muze233","date":"2026-08-14 03:22:30"},"0.1.8":{"tag":"0.1.8","author":"muze233","date":"2026-08-18 04:48:03"}},"upgrade_notice":[],"ratings":[],"assets_icons":{"icon-128x128.png":{"filename":"icon-128x128.png","revision":3582534,"resolution":"128x128","location":"assets","locale":"","width":128,"height":128},"icon-256x256.png":{"filename":"icon-256x256.png","revision":3582534,"resolution":"256x256","location":"assets","locale":"","width":256,"height":256}},"assets_banners":{"banner-1544x500.png":{"filename":"banner-1544x500.png","revision":3582534,"resolution":"1544x500","location":"assets","locale":"","width":1544,"height":500},"banner-772x250.png":{"filename":"banner-772x250.png","revision":3582534,"resolution":"772x250","location":"assets","locale":"","width":772,"height":250}},"assets_blueprints":{},"all_blocks":[],"tagged_versions":["0.1.0","0.1.1","0.1.2","0.1.3","0.1.7","0.1.8"],"block_files":[],"assets_screenshots":{"screenshot-1.png":{"filename":"screenshot-1.png","revision":3606249,"resolution":"1","location":"assets","locale":"","width":1160,"height":480},"screenshot-2.png":{"filename":"screenshot-2.png","revision":3606249,"resolution":"2","location":"assets","locale":"","width":1160,"height":620},"screenshot-3.png":{"filename":"screenshot-3.png","revision":3606249,"resolution":"3","location":"assets","locale":"","width":1160,"height":560},"screenshot-4.png":{"filename":"screenshot-4.png","revision":3606249,"resolution":"4","location":"assets","locale":"","width":1160,"height":620}},"screenshots":{"1":"Verified connector overview with compact plan, points, and Site Knowledge article capacity.","2":"Local permissions for WordPress AI and Site Knowledge delivery.","3":"Site Knowledge delivery status and bounded Cloud-owned index actions.","4":"Advanced troubleshooting with service detail, runtime runs, and connection recovery."}},"plugin_section":[],"plugin_tags":[618,268376,268375],"plugin_category":[],"plugin_contributors":[265919],"plugin_business_model":[],"class_list":["post-330440","plugin","type-plugin","status-publish","hentry","plugin_tags-cloud","plugin_tags-hosted-runtime","plugin_tags-magick-ai","plugin_contributors-muze233","plugin_committers-muze233"],"banners":{"banner":"https:\/\/ps.w.org\/npcink-cloud-addon\/assets\/banner-772x250.png?rev=3582534","banner_2x":"https:\/\/ps.w.org\/npcink-cloud-addon\/assets\/banner-1544x500.png?rev=3582534","banner_rtl":false,"banner_2x_rtl":false},"icons":{"svg":false,"icon":"https:\/\/ps.w.org\/npcink-cloud-addon\/assets\/icon-128x128.png?rev=3582534","icon_2x":"https:\/\/ps.w.org\/npcink-cloud-addon\/assets\/icon-256x256.png?rev=3582534","generated":false},"screenshots":[{"src":"https:\/\/ps.w.org\/npcink-cloud-addon\/assets\/screenshot-1.png?rev=3606249","caption":"Verified connector overview with compact plan, points, and Site Knowledge article capacity."},{"src":"https:\/\/ps.w.org\/npcink-cloud-addon\/assets\/screenshot-2.png?rev=3606249","caption":"Local permissions for WordPress AI and Site Knowledge delivery."},{"src":"https:\/\/ps.w.org\/npcink-cloud-addon\/assets\/screenshot-3.png?rev=3606249","caption":"Site Knowledge delivery status and bounded Cloud-owned index actions."},{"src":"https:\/\/ps.w.org\/npcink-cloud-addon\/assets\/screenshot-4.png?rev=3606249","caption":"Advanced troubleshooting with service detail, runtime runs, and connection recovery."}],"raw_content":"<!--section=description-->\n<p>Npcink Cloud Addon connects a local WordPress site to <code>npcink-cloud<\/code>.<\/p>\n\n<p>It stores the Cloud Base URL and Cloud API Key, parses Cloud-issued keys, signs runtime requests, probes health, reads Cloud entitlement summaries, and can upload metadata-only plugin behavior events after explicit administrator opt-in.<\/p>\n\n<p>It does not execute WordPress writes, approve proposals, own billing truth, or manage prompts, routers, presets, workflow\/task queues, scheduler truth, or workflow engines. Its observability buffer is only a bounded delivery buffer for monitoring metadata and is not Core audit, proposal, execution, billing, or workflow truth.<\/p>\n\n<p>For media derivative jobs, local host code may pass the read-only\n    npcink-abilities-toolkit\/build-media-derivative-cloud-request ability output and a short TTL\nsource artifact descriptor to the addon for signed Cloud dispatch. The addon\nrequires verified Cloud settings, rejects credential-bearing ability payloads,\nand returns proposal-ready data with <code>final_write_owner=local_wordpress_host<\/code>.\nFinal review, recording, replacement, rollback, and WordPress writes remain in\nthe local host\/Core approval path.<\/p>\n\n<p>For plugin monitoring, the addon may upload operational metadata such as plugin\nslug\/version, event kind, status, timing, error code, route, proposal id,\nability id, correlation id, and counters. It must not upload prompts,\ngenerated content, article body content, media bytes, raw request or response\npayloads, provider credentials, Cloud API secrets, passwords, cookies, nonces,\nAuthorization headers, database names, table names, or filesystem paths.\nCustomer-journey monitoring is limited to supported editor steps such as\ngeneration started, succeeded, failed, retried, accepted, saved, or abandoned.\nIt does not send raw WordPress user or post IDs, email addresses, URLs, DOM\ndata, or free-form error messages. Uploads are authenticated to the configured\nCloud site, so they may be associated with that site; they are not used for\nadvertising, individual user scoring, or automatic WordPress content changes.<\/p>\n\n<h3>External Services<\/h3>\n\n<p>This plugin connects to the Npcink Cloud service configured by the site administrator through the Cloud Base URL setting.<\/p>\n\n<p>The plugin contacts the configured Cloud service after Portal authorization and connection verification, or when an administrator uses the advanced recovery form with a Cloud Base URL and API key. A local Npcink component may also explicitly use the Cloud runtime client.<\/p>\n\n<p>Requests may include the configured site identifier, key identifier, request timestamp, nonce, trace identifier, idempotency key, HMAC signature headers, and read-only requests for health, run status, run result, usage statistics, entitlement summaries, observability summaries, and Agent feedback quality summaries. WordPress AI\/runtime requests can include the prompt, source text, and task configuration supplied for that operation. Optional metadata-only monitoring is separate and does not include prompt or content data. The stored Cloud API Key secret is used server-side for request signing and is not printed in wp-admin.<\/p>\n\n<p>For host-supplied media derivative runtime jobs, requests may also include a\nshort TTL source artifact descriptor and derivative request parameters from the\nlocal read-only ability output. Cloud credentials and signed headers are added\nby the addon transport and are not copied into the ability payload.<\/p>\n\n<p>For Site Knowledge transport, requests may include public post\/page identifiers,\npublic article\/page content and public metadata when delivery is enabled, approved\ncomment change hints, local delivery consent state, and explicit administrator\ndelivery intents for Cloud-owned index operations. Drafts, private posts,\npassword-protected posts, credentials, and raw database fields must not be sent.<\/p>\n\n<p>The Site Knowledge change bridge health seam returns\n    site_knowledge_change_bridge_status.v1. Local consumers should surface it as\n    change_bridge and treat <code>buffer_count<\/code> as bounded delivery-buffer depth only,\nnot queue truth, freshness truth, index lifecycle truth, or Cloud diagnostics\ntruth.<\/p>\n\n<p>For WordPress AI connector scene runtime, image context evidence, Runtime Runs\ndetail, artifact preview download, and Agent feedback event transport, requests\nmay include the bounded scene request, media URL or artifact descriptor, run id,\nartifact id, or local operator feedback metadata needed for that specific Cloud\nruntime\/read endpoint. The addon does not create Core proposals, approve\nchanges, execute WordPress writes, own retry queues, or own Site Knowledge index\nlifecycle.<\/p>\n\n<p>The configured Cloud service is responsible for its own privacy policy, terms of service, data retention, and account\/key issuance. Because the Cloud Base URL is administrator-configured, site administrators should only connect this plugin to a Cloud service whose terms of service, privacy policy, data retention policy, and account\/key issuance process they have reviewed.<\/p>\n\n<p>Npcink Cloud service information:<\/p>\n\n<ul>\n<li>Terms of Service: https:\/\/cloud.npc.ink\/terms\/en\/terms.html<\/li>\n<li>Privacy Policy: https:\/\/cloud.npc.ink\/terms\/en\/privacy.html<\/li>\n<li>Data Retention: https:\/\/cloud.npc.ink\/terms\/en\/data-retention.html<\/li>\n<\/ul>\n\n<!--section=installation-->\n<ol>\n<li>Place this directory in <code>wp-content\/plugins\/npcink-cloud-addon<\/code>.<\/li>\n<li>Activate <code>Npcink Cloud Addon<\/code>.<\/li>\n<li>Open <code>Npcink AI &gt; Cloud Addon<\/code>, or <code>Settings &gt; Npcink Cloud Addon<\/code> when the addon is installed standalone.<\/li>\n<li>Choose <code>Connect with Npcink Cloud<\/code> and authorize this site in the Portal.<\/li>\n<li>If Portal authorization is unavailable, expand advanced recovery and enter the Cloud Base URL and API key, then choose <code>Save and Verify<\/code>.<\/li>\n<\/ol>\n\n<!--section=faq-->\n<dl>\n<dt id=\"does%20this%20plugin%20create%20cloud%20api%20keys%3F\"><h3>Does this plugin create Cloud API Keys?<\/h3><\/dt>\n<dd><p>No. Keys are issued by Npcink Cloud.<\/p><\/dd>\n<dt id=\"do%20i%20need%20a%20npcink%20cloud%20account%3F\"><h3>Do I need a Npcink Cloud account?<\/h3><\/dt>\n<dd><p>Yes. A site administrator needs a Npcink Cloud account and Portal authorization. The advanced recovery form accepts a Cloud Base URL and API key when Portal authorization is unavailable.<\/p><\/dd>\n<dt id=\"does%20this%20plugin%20display%20the%20cloud%20secret%3F\"><h3>Does this plugin display the Cloud secret?<\/h3><\/dt>\n<dd><p>No. The secret is stored for server-side signing only and is never printed on the settings page.<\/p><\/dd>\n<dt id=\"when%20does%20the%20plugin%20contact%20npcink%20cloud%3F\"><h3>When does the plugin contact Npcink Cloud?<\/h3><\/dt>\n<dd><p>The plugin contacts the configured Cloud service when an administrator saves and verifies Cloud settings, when a local Npcink component explicitly uses the Cloud runtime client, when entitlement or status summaries are refreshed, or when optional monitoring is enabled and flushed.<\/p><\/dd>\n<dt id=\"is%20monitoring%20enabled%20by%20default%3F\"><h3>Is monitoring enabled by default?<\/h3><\/dt>\n<dd><p>No. Monitoring requires explicit administrator opt-in and verified Cloud settings.<\/p><\/dd>\n<dt id=\"what%20data%20can%20monitoring%20send%3F\"><h3>What data can monitoring send?<\/h3><\/dt>\n<dd><p>Monitoring sends operational metadata only, such as plugin slug\/version, event kind, status, timing, error code, route, proposal id, ability id, correlation id, counters, and latency.<\/p>\n\n<p>For supported editor journeys, this may show that generation started,\nsucceeded, failed, was retried or accepted, and whether an accepted result was\nsaved or abandoned. Monitoring uploads are associated with the configured\nCloud site, but do not include raw WordPress user or post IDs.<\/p><\/dd>\n<dt id=\"does%20monitoring%20upload%20prompts%2C%20content%2C%20or%20raw%20payloads%3F\"><h3>Does monitoring upload prompts, content, or raw payloads?<\/h3><\/dt>\n<dd><p>No. Metadata-only monitoring is designed not to upload prompts, generated content, article body content, media bytes, raw request or response payloads, provider credentials, Cloud API secrets, passwords, cookies, nonces, Authorization headers, database names, table names, or filesystem paths.<\/p><\/dd>\n<dt id=\"how%20is%20monitoring%20data%20used%3F\"><h3>How is monitoring data used?<\/h3><\/dt>\n<dd><p>Monitoring data is used to diagnose failures, measure reliability, and improve\nNpcink features. It is not used for advertising, individual user scoring,\nautomatic approval, or automatic WordPress content changes. Monitoring is off\nby default and an administrator can turn it off at any time.<\/p><\/dd>\n<dt id=\"can%20media%20derivative%20jobs%20send%20media%20data%20to%20cloud%3F\"><h3>Can media derivative jobs send media data to Cloud?<\/h3><\/dt>\n<dd><p>Only when local host code explicitly invokes the media derivative transport. In that case, the request may include a short TTL source artifact descriptor and bounded derivative parameters from a local read-only ability output. Cloud credentials and signed headers are added by the addon transport and are not copied into the ability payload.<\/p><\/dd>\n<dt id=\"does%20this%20plugin%20write%20cloud%20recommendations%20into%20wordpress%3F\"><h3>Does this plugin write Cloud recommendations into WordPress?<\/h3><\/dt>\n<dd><p>No. Final WordPress writes must go through local Core proposal, preflight, approval, and apply paths.<\/p><\/dd>\n<dt id=\"where%20can%20i%20review%20the%20cloud%20service%20terms%20and%20privacy%20information%3F\"><h3>Where can I review the Cloud service terms and privacy information?<\/h3><\/dt>\n<dd><p>Terms of Service: https:\/\/cloud.npc.ink\/terms\/en\/terms.html<\/p>\n\n<p>Privacy Policy: https:\/\/cloud.npc.ink\/terms\/en\/privacy.html<\/p>\n\n<p>Data Retention: https:\/\/cloud.npc.ink\/terms\/en\/data-retention.html<\/p><\/dd>\n\n<\/dl>\n\n<!--section=changelog-->\n<h4>0.1.8<\/h4>\n\n<ul>\n<li>Add opt-in, privacy-safe editor journey events for generation, recovery, acceptance, and save outcomes.<\/li>\n<li>Clarify exactly what monitoring sends, how site-associated metadata is used, and which sensitive data is never collected.<\/li>\n<li>Tighten monitoring-consent gates for editor quality evidence and prevent duplicate extensions on imported AI images.<\/li>\n<\/ul>\n\n<h4>0.1.7<\/h4>\n\n<ul>\n<li>Replace the public concrete runtime client seam with bounded scenario-specific connector facades.<\/li>\n<li>Improve connection, Site Knowledge, and read-only runtime result feedback while preserving local WordPress write ownership.<\/li>\n<li>Refresh WordPress AI localization compatibility and the verified release package.<\/li>\n<\/ul>\n\n<h4>0.1.6<\/h4>\n\n<ul>\n<li>Keep a valid Cloud connection credential when the site binds without an available active-site slot.<\/li>\n<li>Show a bounded \"Connected, activation required\" state and direct administrators to Cloud for activation.<\/li>\n<\/ul>\n\n<h4>0.1.5<\/h4>\n\n<p>Show actionable Cloud authorization exchange errors, including active-site capacity and expired authorization recovery, instead of reporting every rejected exchange as a missing connection key.<\/p>\n\n<h4>0.1.4<\/h4>\n\n<p>Point the Cloud Portal authorization entry and Open Cloud actions at <code>\/portal<\/code> after the Portal workspace merge, and refresh the public onboarding checklist.<\/p>\n\n<h4>0.1.3<\/h4>\n\n<p>Simplify the admin overview and Site Knowledge quota display, align localized quota copy, harden Cloud authorization redirects, and refresh release assets.<\/p>\n\n<h4>0.1.2<\/h4>\n\n<p>Refine bounded Site Knowledge Cloud transport, WordPress AI connector request-log compatibility, Cloud runtime contract reuse documentation, and Plugin Check release validation.<\/p>\n\n<h4>0.1.1<\/h4>\n\n<p>Refresh Cloud connection status actions, entitlement summary caching, WordPress AI connector integration, zh_CN strings, and release packaging checks.<\/p>\n\n<h4>0.1.0<\/h4>\n\n<p>Initial standalone connector skeleton.<\/p>","raw_excerpt":"Thin Cloud connector for Npcink hosted runtime access, signing, health checks, entitlement summaries, and opt-in metadata monitoring.","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin\/330440","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin"}],"about":[{"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/types\/plugin"}],"replies":[{"embeddable":true,"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/comments?post=330440"}],"author":[{"embeddable":true,"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wporg\/v1\/users\/muze233"}],"wp:attachment":[{"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/media?parent=330440"}],"wp:term":[{"taxonomy":"plugin_section","embeddable":true,"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_section?post=330440"},{"taxonomy":"plugin_tags","embeddable":true,"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_tags?post=330440"},{"taxonomy":"plugin_category","embeddable":true,"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_category?post=330440"},{"taxonomy":"plugin_contributors","embeddable":true,"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_contributors?post=330440"},{"taxonomy":"plugin_business_model","embeddable":true,"href":"https:\/\/pan.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_business_model?post=330440"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}