Features
Connect WordPress (NeoRank Connect plugin)
Coming soon — The NeoRank Connect plugin writes the fixes you approve in NeoRank to WordPress, through signed calls, and lets you undo everything for 30 days.
Before you start
- WordPress 6.0 or later, PHP 8.0 or later, site on HTTPS.
- A WordPress administrator account (the plugin's screen requires the “manage options” capability).
- In NeoRank: the workspace Administrator or Strategist role, and a site not already connected through another platform.
Connect in three steps
- In WordPress, install and activate the NeoRank Connect plugin (Plugins › Add New).
- In NeoRank, Settings › Connectors, WordPress card: “Generate a pairing code” for the site. The code is valid 10 minutes, once; the “NeoRank address” is shown beside it.
- In WordPress, Settings › NeoRank Connect: paste the code and the NeoRank address, tick the consent, then “Pair with NeoRank”. The plugin exchanges the code for a shared secret.
- Back in NeoRank, “Check the connection”: NeoRank calls your site with a signed request; the card turns Connected.
What NeoRank can change
| Field | Where |
|---|---|
| SEO title and meta description | Published posts and pages — in Yoast SEO or Rank Math fields when one is active, otherwise printed by the plugin |
| Alt text | Media library images |
| JSON-LD structured data | Organization, Article, FAQPage, BreadcrumbList |
| 301 redirects | Only for pages that return 404 |
| One internal link | In a post's content (a WordPress revision is kept) |
| /llms.txt | The file, generated from your pages |
Security
- Every NeoRank call is signed (HMAC-SHA256 over the method, route, time, a single-use nonce and the body hash), valid 5 minutes, refused when replayed. The plugin's answers are signed too.
- The secret is created at pairing, encrypted in NeoRank's connector vault and stored outside autoload in WordPress.
- Before any write NeoRank sends the value it last read: if it changed in WordPress meanwhile, the write is refused.
- The plugin sends data to NeoRank only at pairing (the code, the site's address, the plugin version) and in answer to signed calls (the current value of the field being fixed). It purges the fixed page's cache.
Check, pause, revoke
- Manage › Check the connection: a signed call reads the plugin's state back.
- Pause / Resume: nothing is applied on this site while paused.
- Revoke (two-click confirmation): the plugin is disconnected, NeoRank can no longer change anything. “Disconnect” in Settings › NeoRank Connect does the same; uninstalling the plugin erases everything it stored.
Common problems
| Message | What to do |
|---|---|
| Waiting for the plugin | The plugin is paired but has not answered the signed call yet: check it is active on the site's domain, then “Check again”. |
| The signed call was refused: pair the plugin again. | The secret no longer matches (plugin reinstalled or disconnected): generate a new code and pair again. |
| The site is unreachable / took too long to answer | Check the site is online over HTTPS and that a firewall or security plugin does not block the WordPress REST API, then retry. |
| The site answered from another domain than its own | The site's domain in NeoRank must be WordPress's (Settings › General); fix one or the other. |
| Your plan's number of connected sites is reached | Revoke another site or change plan (Pricing). |
| Code expired | The code is valid 10 minutes and once: click “New pairing code”. |