Updates & inventory
Install, update, activate, deactivate, and delete plugins and themes. Update WordPress core and translations. Every install's full inventory stays current with each heartbeat.
Install one lightweight connector, paste a Site Key, and run updates, backups, snapshots, security hardening, SEO, and user management across all your sites — without logging in to a single wp-admin.
Atomic Site Manager is a connector. The plugin registers your site, sends a heartbeat, and runs the commands you queue. Every dashboard, report, and history screen lives in the web app.
Add Atomic Site Manager from Plugins → Add New and activate it. It ships idle — nothing is sent anywhere yet.
Create the site in your dashboard, copy its Site Key, and paste it under Settings → Atomic Site Manager. Click Connect.
The site starts sending heartbeats and polling for work. Queue a command in the dashboard and it executes on the site within seconds.
The work you repeat on every site — updating, backing up, hardening, auditing — collapses into a single queue you drive from one place.
Install, update, activate, deactivate, and delete plugins and themes. Update WordPress core and translations. Every install's full inventory stays current with each heartbeat.
Create, restore, and delete database and uploads backups. Archives are written to wp-content/asm-backups on your own server — never uploaded to the service.
Take a snapshot before a risky change, compare it against the live state, and restore it if things go sideways. Rename and export snapshots as JSON.
Disable XML-RPC and the file editor, block author enumeration and user REST endpoints, strip version strings, send security headers, and lock down directory listing.
Titles, descriptions, Open Graph and Twitter cards, schema, breadcrumbs, sitemaps, redirects, and 404 tracking. Off until you switch it on — so it never fights your existing SEO plugin.
A heartbeat every 60 seconds carries WordPress, PHP, MySQL, and server versions, memory and disk usage, debug and SSL state, and every pending update.
Create, edit, and delete users and roles across sites. Reset roles to WordPress defaults or clear every active session in one command.
Read and update options, browse database tables, insert, edit, and delete rows, run table actions, and flush object and page caches — all remotely.
Run the built-in plugin checker against anything installed and read the findings in the dashboard — no separate testing plugin to install and maintain.
Run an audit on demand and get back the metrics that actually move: memory headroom, disk pressure, cache state, and the config choices dragging the site down.
Jump straight into wp-admin from the dashboard for users you authorize there — no shared passwords, no password manager round trip.
Turn background updates on or off and control traffic-triggered WP-Cron spawning per site, so scheduled work runs the way your hosting expects.
Every heartbeat brings back the complete plugin, theme, core, and translation picture for the site. Pending updates surface in one list — select, queue, done.
Backups capture the database and uploads. Snapshots capture configuration — so you can diff exactly what a plugin update changed and roll just that back.
Hardening and SEO ship inside the connector, so there's no extra plugin to install, license, or keep updated. Neither one touches your site until you enable it.
Queue any of these from the dashboard. The connector picks it up on the next poll, runs it, and reports the result back — success or error.
Remote deactivate and delete of Atomic Site Manager itself is blocked in the command runner — the connector cannot be used to lock you out of your own site.
Nothing at all is sent until you paste a Site Key and click Connect. After that, here is the complete picture.
On connect, on each heartbeat, after each command, and on disconnect.
Not on connect, not on heartbeat, not ever.
The WordPress plugin is GPL and costs nothing on every site you own. Plans are priced by how many sites you connect to the dashboard.
For the handful of sites you actually maintain yourself.
$0/ month
Up to 3 connected sites
Create accountFor freelancers and small agencies running client sites.
$19/ month
Up to 25 connected sites
Start free trialFor teams managing large portfolios with shared access.
$49/ month
Unlimited connected sites
Start free trialYes. The plugin is a connector for the Atomic Site Manager service and does nothing on its own. You need a Site Key from the dashboard before anything is sent or received. Without one, the plugin stays completely idle.
No. It adds exactly one settings page for connecting and disconnecting. No charts, no reporting screens, no admin notices. Every dashboard, command queue, report, and history view lives in the web app.
Yes. Atomic Site Manager never deactivates, blocks, or modifies another plugin. The built-in SEO engine is switched off until you enable it from the dashboard, so installing this alongside Yoast, Rank Math, or All in One SEO changes nothing on its own.
If you do enable it while another SEO plugin is running, both will output title, description, and Open Graph tags and search engines will see duplicates — so turn one of them off. Only one should be generating metadata.
No. Remote deactivate and delete of Atomic Site Manager itself is blocked in the command runner. Other plugins and themes can be managed remotely according to the permissions you set in your dashboard account.
Every 60 seconds by default, through WP-Cron, and the service can adjust that interval. You can also send one immediately from the settings page with Send heartbeat now.
In a wp-content/asm-backups folder on your own server. The plugin does not upload backup archives to the service — only the fact that a backup exists, and its size, is reported.
Page visits stop spawning WordPress cron, but direct or server-scheduled calls to wp-cron.php still run. Set up a real server cron job before turning this off, so scheduled posts, emails, and other plugin tasks keep working.
Only for localhost and private LAN addresses, so you can develop against a local backend. Any public backend URL must use HTTPS.
Install the connector, paste one Site Key, and run the whole portfolio from a single screen.
Free connector · GPL-2.0-or-later · Disconnect any time