Features

What RootsWP keeps track of

RootsWP is built for the everyday work of maintaining a portfolio of WordPress sites. Here is what to expect from each part of it.

Update management

RootsWP reads which core, plugin and theme updates are pending for every connected site, including the current and the new version. Pick what to update and run it per site or across several sites at once.

  • Pending updates listed per site and per plugin
  • Bulk actions across multiple sites
  • Automatic updates can be turned on or off per type
  • Changelog link before you update

Monitoring

Every site is polled at a fixed interval through a lightweight health endpoint. We record the response time and track when a site was unreachable.

  • Uptime percentage over the last thirty days
  • Response time chart
  • Incident list with start and end time
  • Email alert as soon as a site goes down

Security checks

Every check looks at a fixed list of items that most often go wrong in practice. Each line has a status and a short explanation of what to do about it.

  • SSL certificate validity and expiry
  • Debug mode and file editing
  • The admin username and stale accounts
  • Plugins with known vulnerabilities

Backups

Trigger a full backup or a database-only dump and follow whether each attempt succeeded. Every backup shows its date, type, size and status.

  • Run manually or on a schedule
  • Full backup or database only
  • Download or restore from the overview
  • Failed backups stay visible until resolved

Client reports

Put together a monthly report per client with the updates run, backups made, uptime and security status. On the Agency plan you can add your own logo and colour.

  • Choose a period and a client
  • Preview before you send
  • Export as PDF
  • White label layout per agency

Team and roles

Working with colleagues, you decide who can do what. Owners manage billing and keys, admins connect sites, and members carry out the maintenance work.

  • Owner, admin and member roles
  • Invitations by email
  • Every action traceable to a person

Activity log

Everything RootsWP or a team member does lands in a chronological log, with the user's name and the time. That makes it easy to see afterwards who did what.

  • Per site or across all sites
  • System actions clearly marked
  • Basis for the client report

Connector plugin

The connection runs through our own plugin with a locked-down REST namespace. RootsWP reaches the site with signed requests, so you never share login details.

  • Dedicated key pair per site
  • HMAC-SHA256 signing
  • Disconnect a site in one action

See it in action

The demo environment contains sample sites with updates, backups and alerts, so you can follow the workflow before connecting a site of your own.