App for Cloudflare®
Unlock advanced Cloudflare features without being a network administrator or developer. Works with any Cloudflare plan (including Free), no Automatic Platform Optimization (APO) subscription needed. Cache HTML at network edge Preload JavaScript and CSS View/set all Cloudflare settings Fixes Cloudflare Flexible SSL redirect loops Fixes situation when IPs are coming through as Cloudflare IPs rather than user IPs Cloudflare web analytics support Cloudflare analytics on dashboard Purge cache Automatic image transformations (automatically serve AVIF/WebP versions to browsers that support them) Turnstile CAPTCHA system for registrations, logins, password reset, comments and/or third party plugins View Page rules, Cache rules, Firewall rules, IP Address rules, User Agent rules View Zero Trust Network Access setup View DMARC statistics Included tools: HTTP request trace, IP address details, domain details, WHOIS Directly cache HTML App for Cloudflare® can automatically cache your HTML pages at Cloudflare data centers in 330+ cities. “Standard” WordPress caching plugins can’t escape the laws of physics because information can’t travel faster than the speed of light (even if the page is cached, the cache exists on your physical origin server, which can be over 20,000 km from an end user). Caching content in Cloudflare data centers makes your website faster by putting your website cache closer to end-users (95% of the world’s population is within 50ms of a Cloudflare data center). This can be done without Cloudflare Workers or even a Page Rule (done with a single Cache Rule on Cloudflare’s side, and custom code in the plugin). Preload JavaScript and CSS Speed your site up by using the option that instructs browsers to preload JavaScript and CSS used to render the page being viewed. Can be used on its own, or in conjunction with Cloudflare’s Early Hints function. Manage all Cloudflare settings All Cloudflare settings can be changed directly within your WordPress admin area. Includes Easy config function that will optimally set your Cloudflare zone settings for WordPress. Fixes Cloudflare Flexible SSL redirect loops Automatically fixes HTTPS redirect loops when using Cloudflare’s Flexible SSL option (traffic between user and Cloudflare is encrypted, but traffic between Cloudflare and origin server is not). Handles user IP addresses Automatically handles the situation where your web server is passing Cloudflare IP addresses rather than the IP address of the user making the request. Turnstile CAPTCHA Cloudflare Turnstile CAPTCHA support for registration, login, password reset, comment forms, WooCommerce, Contact Form 7, Elementor Pro, HTML Forms, MetForm and/or WPForms. Single-click setup (done transparently via API call). Network analytics View network stats for your website directly within your WordPress admin area with a dashboard widget. View rules & firewall Quickly review your site’s Cloudflare rules and firewall settings from within your WordPress admin area. Includes: Page rules Cache rules Firewall custom rules IP address rules User agent blocking DMARC management Track third parties that are sending email on your behalf (for example an email provider you have authorized like Gmail or Outlook). You can also see unauthorized email senders or spammers sending email on behalf of your domain. Multisite network support You can have a network-wide Cloudflare API token that can be overridden on a per site basis. In the case where a multisite network operator has the site domains in a single Cloudflare account, they can allow the site users to use Cloudflare features for their individual site without disclosing the underlying API token. Additionally, a single Pro license for the main network site allows the media from all sites in the network to be stored in the cloud, within a single Cloudflare R2 bucket. Image Transformations Supports Cloudflare’s Image Transformation service, which allows Media images to automatically be served in the best format that a browser supports (AVIF, WebP, etc). Additionally, smaller images can be automatically served to users on very slow network connections. No web server configuration required. Store media in the cloud [Premium] Easily and seamlessly store your WordPress media in the cloud with Cloudflare R2. This allows you to offload resources (both bandwidth and disk space) from your server. The first 10GB is free, and only costs $0.015 per GB thereafter (ex. if you had 100GB of media, it would cost $1.35 per month to store it in the cloud). Includes the ability to migrate existing media from local filesystem to R2 (or from R2 to local filesystem). Works with individual media, or all media in bulk (includes web-based migration as well as a shell/WP-CLI option). Automatically convert uploaded images to AVIF or WebP This is done with a free companion plugin, Image Shift (includes the ability to apply watermarks). Protect admin area [Premium] Utilize Zero Trust Network Access to authenticate users before they access your WordPress admin area. Manage rules & firewall [Premium] The premium version unlocks the ability to manage (create, delete, suspend and unsuspend) Cloudflare rules and firewall definitions. In addition to defining your own rules, you can deploy useful rules with a single click: Block traffic from certain countries (or Tor exit nodes widely used by spammers and hackers) Block AI scrapers & crawlers (block bots from scraping your content for AI applications like model training) Force a challenge before users can register (bot/spammer mitigation) Cache static content Automatically block the IP address(es) of spammers for a period of time Backup & restore [Premium] You can backup and restore some of your most important Cloudflare configuration settings: Zero Trust Access Policies Firewall Rules Firewall IP Access Rules Firewall User Agent Blocking Page Rules Cache Rules Backups can be restored to different zones (for example if you had extensive configuration for a zone, you could give another zone the same configuration through a backup restore). Other features API calls are done exclusively through API Tokens (with the minimum required permissions) and not a Global API Key. Global API Keys are an incredibly bad idea from a security standpoint. Ability to purge Cloudflare cache from WordPress admin (or via WP-CLI). Ability to copy Cloudflare zone settings from a different zone on the same Cloudflare account. Cached pages are automatically purged when a post/page is edited (just the necessary pages, not all pages). Stale content is not served to users. Ability to designate an individual admin user to manage settings (maybe you don’t want all admins to have the ability to change things in Cloudflare). Ability to use WordPress filters to add your own logic to things (for example, maybe you don’t want to cache a certain page or post for whatever reason). All JavaScript is native (no dependencies on jQuery or anything else). No third-party PHP libraries used (no dependencies on other libs).
Top keywords
- cloudflare36×3.24%
- rules19×1.71%
- cache13×1.17%
- network11×0.99%
- automatically9×0.81%
- firewall9×0.81%
- user9×0.81%
- wordpress9×0.81%
- ability8×0.72%
- ip8×0.72%
- media8×0.72%
- page8×0.72%
DiveWP – Boost Site Performance with Clear, Actionable Steps
Compatibility: Requires WordPress 6.0 or later. Tested through WordPress 7.0 (full support on WordPress 7). Abilities API / MCP features need WordPress 6.9+ (included in WordPress 7); all other DiveWP features run on the minimum version. 📋 System Logs Central place to read and understand errors without opening raw log files. The System Logs screen merges WordPress debug.log, WooCommerce file logs, and the WooCommerce fatal error log (when present), with severity labels (fatal, error, warning, notice, info) and grouping by source (plugin, theme, WooCommerce, or core). What you get: * Latest — newest entries across all readable sources, with adjustable “show last” limits (50–500) * By Source — cards per source with severity counts; drill into entries for one source * WP Debug Log — focused view of wp-content/debug.log (when readable) * WooCommerce Logs — log files from WooCommerce’s log handler * Fatal Errors Log — WooCommerce fatal error log when available * Logs Access Help — guidance when logs are missing or not readable (permissions, host-managed paths) * Entry details — modal with full message/stack context and copy for support * Abilities API: divewp/system-logs — same views for AI assistants via MCP (latest, by source, per-source entries, filters, help status) 🔌 NEW: Plugins Management Monitor and manage all installed plugins from one place. DiveWP’s Plugins Management feature shows every plugin with active/inactive status, update availability, and “Up to date” state. View details and changelog from WordPress.org, and activate or deactivate plugins without leaving the dashboard. Plugins Management & Abilities API: Use the divewp/plugins-management ability so AI assistants can list plugins, fetch description and changelog for a plugin, or activate/deactivate a plugin by file path. What Plugins Management Delivers: * Unified plugin list – All installed plugins with status pills (Active, Inactive, Update Available, Up to date) * Dashboard overview – Green and red pill counts on the main dashboard for quick health overview * Details drawer – Overview, full description, and changelog from WordPress.org * Toggle activation – Activate or deactivate plugins from the card or drawer * Search – Filter plugins by name, author, or description * Abilities API – Operations: list (all plugins), details (wp.org info for one plugin), toggle (activate/deactivate) 🤖 NEW: AI Capabilities & WordPress Abilities API Talk to your WordPress site through AI! DiveWP integrates with the WordPress Abilities API and Model Context Protocol (MCP), so AI tools like Cursor, Claude, and ChatGPT can query your site’s health and diagnostics directly—no copy-paste needed. WordPress Abilities API & MCP: * 12 Diagnostic Abilities – Server insights, cron monitoring, plugins management, database health, security audits, system logs (debug/WooCommerce/fatal), and more via the Abilities API * Zero Copy-Paste – AI agents run diagnostics through MCP without manual log sharing * Secure Authentication – WordPress Application Passwords for safe, controlled access * Step-by-Step Setup – “AI Capabilities” tab guides you through 3-step configuration for Abilities API and MCP clients Available Abilities: * divewp/server-insights – Full server health & config check * divewp/cron-insights – Monitor WP-Cron and Action Scheduler; background tasks & overdue jobs * divewp/db-insights – Database size & optimization status * divewp/security-insights – Vulnerability & configuration audit * divewp/performance-checks – Caching & optimization discovery * divewp/theme-builder-insights – Theme and page builder health * divewp/woocommerce-best-practices – WooCommerce optimization * divewp/seo-optimization – SEO configuration audit * divewp/email-communications – Email delivery & SMTP status * divewp/hosting-benchmark-latest – Latest benchmark results * divewp/plugins-management – List installed plugins, fetch wp.org details/changelog, or toggle plugin activation (operations: list, details, toggle) * divewp/system-logs – WordPress debug log, WooCommerce logs, fatal error log; views: latest, by source, filters, help status ⏰ NEW: Cron Job Manager & WP-Cron Monitoring Take control of WordPress cron jobs and scheduled tasks. DiveWP’s Cron Job Manager gives you a clear view of WP-Cron and Action Scheduler so you can spot overdue jobs, slow hooks, and misconfigured cron setups. Cron Jobs & Abilities API: Use the divewp/cron-insights ability so AI assistants can inspect your cron status, overdue tasks, and recommendations without opening the admin. What the Cron Job Manager Delivers: * Real-time cron monitoring – WP-Cron and Action Scheduler in one dashboard * Hook performance – Execution time and memory per cron hook * Overdue & orphan detection – Find stuck or orphaned scheduled tasks * Execution history – Filterable, paginated cron run history * Health guidance – System health and cron configuration tips 🚀 Hosting Performance Benchmark – Know If You Need to Upgrade! Measure how your hosting handles your WordPress site! DiveWP’s comprehensive Hosting Performance Benchmark is a powerful enterprise-grade testing system that evaluates your hosting environment through real-world performance tests. What It Tests: * Database Performance – Tests INSERT, SELECT, UPDATE operations, datetime functions, and aggregate operations (8 comprehensive tests) * Server Resources – Evaluates CPU, memory, I/O, and network capabilities (5 resource tests) * Concurrency Handling – Measures how your hosting performs under multiple simultaneous requests (4 concurrency tests) * E-commerce Performance – Tests WooCommerce-like operations including price calculations, shipping, and inventory checks (3 performance tests) Key Benefits: * 20+ Individual Tests – Comprehensive evaluation across 4 major categories * Real-World Simulation – Tests simulate actual WordPress operations, not synthetic benchmarks * 6-Minute Complete Analysis – Get detailed insights in approximately 6 minutes * Actionable Results – Understand if your current hosting is sufficient or if you need to upgrade * Cross-Database Compatible – Works with MySQL, MariaDB, PostgreSQL, SQLite, and SQL Server * Optimized for Shared Hosting – Designed to work efficiently even on shared hosting environments Perfect For: * Site owners wondering if their hosting plan is sufficient * Users experiencing slow performance and wanting to identify bottlenecks * Anyone considering upgrading their hosting plan * Developers evaluating hosting performance for client sites 🎯 Transform Your WP Journey Discover your site’s true potential by understanding exactly what’s happening under the hood. DiveWP provides clear insights about Performance, Security, and Best Practices – all explained in plain English. Take control of your digital presence by learning as you optimize! 🔍 Key Features 🔌 NEW: Plugins Management * Unified list of all installed plugins with status (Active, Inactive, Update Available, Up to date) * Dashboard counts green (up to date) and red (updates available) pills for quick overview * Details drawer with overview, WordPress.org description, and changelog * Toggle plugin activation from card or drawer; search by name, author, or description * Abilities API: divewp/plugins-management (list, details, toggle) for AI-assisted plugin management ⏰ NEW: Cron Job Manager & WP-Cron Monitoring * Real-time WP-Cron and Action Scheduler tracking * Monitor hook performance and execution time * Detect orphaned and overdue tasks * Identify problematic cron hooks affecting performance * Complete execution history with filtering and pagination * Integrates with Abilities API via divewp/cron-insights for AI-assisted cron diagnostics 🤖 NEW: AI Capabilities & WordPress Abilities API * WordPress Abilities API and MCP let AI assistants query your site for diagnostics * 12 abilities for server, cron jobs, plugins, security, database, performance insights, and system logs * Works with Cursor, Claude Desktop, ChatGPT, and other MCP clients * Secure access via WordPress Application Passwords * Step-by-step setup guide in “AI Capabilities” tab 🚀 Hosting Performance Benchmark * Comprehensive hosting evaluation with 20+ real-world performance tests * Database, resource, concurrency, and e-commerce performance analysis * Determine if your hosting plan is sufficient for your site * Cross-database compatibility (MySQL, MariaDB, PostgreSQL, SQLite, SQL Server) * Optimized for shared hosting environments Deep Site Insights * Understand your site inside out * Comprehensive analysis of core functions * Database health monitoring * User activity tracking * Everything explained in plain English ⚡ Performance & Speed * Clear performance insights * Actionable optimization steps * Speed improvement recommendations * Learn what affects your site’s performance 🛡️ Security & Best Practices * Proactive security checks * Easy-to-follow hardening recommendations * Learn WordPress security best practices * Implement as you learn 📊 Database Health * Optimize database performance * Clear insights into tables and structure * Cleanup recommendations * Learn database management without being a tech expert 🎯 SEO & Visibility * Practical SEO recommendations * Essential optimization techniques * Improve search engine rankings * Learn while implementing 🛍️ WooCommerce Optimization * Specialized store insights * Performance optimization * Checkout process analysis * Shopping experience improvements 📧 Email System Monitor * Detailed logging and diagnostics * Track email system performance * Ensure reliable communication * Monitor delivery status 🎨 Theme & Builder Analysis * Theme performance insights * Page builder optimization * Visual elements analysis * Speed optimization guidance 💡 How It Works Install & Scan: Quick installation and automatic site analysis Get Clear Insights: Receive easy-to-understand explanations Learn Best Practices: Understand WordPress through your own site Implement Changes: Follow actionable recommendations Monitor Progress: Track improvements and keep learning 🎯 Perfect For WordPress Beginners: Finally understand what’s happening on your site Store Owners: Optimize WooCommerce performance and boost sales Agency Teams: Maintain multiple sites while learning best practices Content Creators: Improve site visibility while mastering WordPress 🌟 What’s New in 2.3.0 NEW: Plugins Management New “Plugins Management” feature: view all installed plugins with status pills (Active, Inactive, Update Available, Up to date) Dashboard overview counts green (up to date) and red (updates available) pills alongside other feature statuses Details drawer with overview, full description, and changelog from WordPress.org Activate/deactivate plugins from the card or drawer; search by name, author, or description NEW: Abilities API – divewp/plugins-management Operations: list (all plugins with status), details (wp.org description and changelog for one plugin), toggle (activate/deactivate by plugin file) AI assistants can list plugins, fetch plugin info, or change activation state via MCP 🌟 What’s New in 2.2.0 NEW: AI Capabilities & WordPress Abilities API New “AI Capabilities” tab with step-by-step setup guide 10 diagnostic abilities for AI agents (server, cron jobs, database, security, performance, and more) Support for Cursor, Claude Desktop, ChatGPT via Model Context Protocol (MCP) Secure access using WordPress Application Passwords NEW: Cron Job Manager & WP-Cron Monitoring Full cron jobs dashboard: WP-Cron and Action Scheduler in one place Hook performance, overdue and orphan detection, execution history Abilities API integration: divewp/cron-insights for AI-driven cron diagnostics NEW: REST API Access Logging in User Events Track API access via Application Passwords in the event log Monitor AI agent activity and external integrations Throttled logging to prevent flood from MCP bursts IMPROVED: Cron Jobs Feature Enhancements Aligned AJAX and server health calculations for consistent status display “Potential orphan” terminology for clearer task identification Added Alternate Cron explanation footnote Visual accent pills for Important/Recommendation notes in task modals Support Need help? We’re here for you! 📚 Documentation 💬 Support Forum 🐞 Bug Reports and Contact Privacy DiveWP respects your privacy and that of your users. We do not collect any personal data. All analysis is performed locally on your server. Credits DiveWP is proudly created and maintained by Oleg Petrov.