Get paid when AI crawlers access your WordPress site.
AI companies send crawlers such as GPTBot, ClaudeBot, CCBot and Bytespider to read your articles and train their models. They take your content for free. TrafficPaywall makes them pay for it.
AI companies hold one prepaid balance that works on every TrafficPaywall site, so paying you takes them one line of code.
All public pages, posts, archives and feeds for anonymous visitors, and the REST API (for example /wp-json/wp/v2/posts) for anonymous clients, because scrapers use it to pull full articles.
The plugin also publishes your license terms where AI companies look for them: a License: line in robots.txt, a <link rel="license"> tag in your pages and a Link header on responses to crawlers.
This plugin connects to the TrafficPaywall service (trafficpaywall.com), operated by TrafficPaywall, to process crawler payments. Nothing is sent before you click “Connect and start earning” (or enter a site key under Advanced). Disconnecting stops all requests.
Terms of service: https://trafficpaywall.com/terms
Privacy policy: https://trafficpaywall.com/privacy
What is sent, when, and to which address (all under https://trafficpaywall.com):
https://trafficpaywall.com/connect/wordpress opens in your browser with your site address, a random one-time state value and the address of the WordPress admin screen to return to. After you confirm, your server sends the one-time code it received and your site address to POST /api/v1/connect/wordpress/exchange and receives the site key and signing secret.GET /api/v1/config/{site key} downloads your mode, price and license links. Only the site key is sent.GET /api/v1/rules downloads the public list of crawler user agents and network ranges. Nothing about your site or visitors is sent.POST /api/v1/ingest sends aggregate counts per day of AI and bot requests (outcome, crawler category and crawler name, number of requests and estimated bytes not delivered), signed with your site key. No IP addresses, user agents, URLs, cookies or other visitor data are sent. Human visits are only included as one sampled daily total.POST /api/v1/spend sends the credential and the full URL of the page requested, signed with your site key, to charge the crawler. This call is made from your server while the request is handled.GET /api/v1/site/summary loads this month’s revenue, paid requests and payout status (cached for 5 minutes). Only the site key and a signature are sent.Visitors who click “I’m human — continue” on the 402 page go to https://trafficpaywall.com/access in their browser, pass a check, and are sent back to your site with a signed pass that is stored in a tp_access cookie for up to 24 hours and verified on your server.
For the site check and for estimating page size, your server also requests your own home page and up to three recent posts (loopback requests to your own site; nothing is sent to TrafficPaywall).