SiteSelf is a service that works on your WordPress site for you — updating
content, adjusting your design, keeping an eye on things — and reports back in
chat. This plugin is the part that lives on your site, and it exists so your
agent can work on your theme and plugin files rather than content alone.
What it can do
What it will not do, by design
../ cannot climb out of them, and aDISALLOW_FILE_MODS, DISALLOW_FILE_EDIT, a managedHow access works
The plugin adds no new way into your site. Every request must come from a
signed-in WordPress user with the right permissions, using WordPress’s own
application passwords — which you create, and can revoke at any time under
Users Profile Application Passwords. Deactivating this plugin stops file
access immediately.
This plugin connects your site to SiteSelf, a service run by Refact at
https://siteself.com. The plugin is the site-side half of that service and is
not useful without it.
The plugin makes no outbound requests of its own. It sends nothing anywhere,
on any schedule. What it does is answer requests that SiteSelf makes to your
site, and it answers them only when they carry a signed-in WordPress user with
administrator permissions — an application password that you created and can
revoke.
What leaves your site when SiteSelf asks. A status request returns a
description of how this site is built:
Other requests return the contents of a file inside your themes or plugins
folders, a folder listing, or one of a short fixed list of WordPress settings
that describe how the site is built. Nothing else is readable, and anything
whose name looks like a key, token, secret or password is refused.
Your site’s content is not sent by this plugin. No visitor data, analytics or
personal data of your users is collected, sent or stored by it.
Service terms: https://siteself.com/terms
Privacy policy: https://siteself.com/privacy