The terms that govern your use of WPControl. Written to be read, not to be survived. Questions about any section: support@wpcontrol.com.
Last updated: Mar 3, 2026
1. The service
WPControl is a hosted management console for self-hosted WordPress sites. It lets you connect multiple WordPress installations to one account, view their health and update status, run operations across them, and issue maintenance commands in plain language that the service resolves into per-site actions.
These terms form the agreement between you (the account holder) and WPControl. By creating an account or connecting a site, you accept them. If you use WPControl on behalf of an agency or company, you confirm you have authority to bind that organisation, and "you" refers to it.
2. Accounts and trials
Every plan begins with a 14-day free trial. No payment method is required to start one. At the end of the trial the account pauses — connected sites stop syncing and commands stop executing — until you choose a paid plan. We do not convert trials into paid subscriptions silently, and we do not delete account data for 30 days after a trial lapses.
You are responsible for the accuracy of your account details and for activity under your seats. Seats are named users; sharing one seat across several people is not permitted.
3. Plans, billing and cancellation
Plans are billed monthly, in advance, at the prices published on the pricing page. Each plan carries stated caps — connected sites, AI messages per month and seats. When you reach a cap, the affected function pauses and the console tells you; nothing fails silently and we never bill overages without an explicit upgrade.
You can upgrade, downgrade or cancel at any time from Settings → Billing. Changes apply immediately for upgrades and at the end of the current billing period for downgrades and cancellations. We do not offer partial-month refunds except where the law requires it.
4. AI data processing and DPA
The plain-language command layer processes the text of your command together with operational metadata about your connected sites (names, versions, health state) to resolve which sites a command affects and what actions to run. That is the extent of it.
Our AI data-processing commitments, in plain terms
Your commands and site metadata are processed to execute your requests — never to train models, ours or anyone else's.
Site content (posts, pages, customer data held in WordPress) is not read by the AI layer unless a command you issued requires it to complete.
A Data Processing Agreement (DPA) under GDPR Art. 28 is available to every account, on every plan, from the billing settings — no enterprise tier required.
Subprocessors are listed in the documentation, with 30 days' notice before any change.
Where you process personal data of your own clients through WPControl, you are the controller and we act as processor under the DPA. You confirm you have a lawful basis for the data flowing through your connected sites.
5. Your sites and the connector
Sites connect to WPControl through the WPControl Connector, a small WordPress plugin you install on each site. The connector authenticates with a per-site key, receives the operations you initiate, and reports results back. It never changes content, never touches your database beyond the operations you command, and can be revoked at any time by deleting the plugin or rotating the key.
You remain the owner and operator of your sites. WPControl acts on them only under your instruction. Before any destructive or update operation, the service creates a restore point on the site; you are nonetheless responsible for maintaining independent backups of anything you cannot afford to lose.
6. Acceptable use
You may use WPControl only on sites you own or are authorised to maintain. You may not use it to probe, attack or burden third-party infrastructure; to manage sites that distribute malware, spam or illegal content; to circumvent the plan caps through multiple accounts; or to resell access to the console itself. We suspend accounts that abuse the service, after warning where the situation allows one.
7. Availability and liability
We target continuous availability of the console and the monitoring pipeline, and we publish incidents openly. A WPControl outage never takes your sites down — the connector is passive and your sites run independently of us. To the maximum extent the law permits, WPControl is not liable for indirect or consequential losses, and our aggregate liability is capped at the fees you paid in the twelve months before the event giving rise to the claim.
8. Term and termination
These terms apply for as long as your account exists. You can close the account at any time; on closure we revoke all connector keys and delete your account data within 30 days, except records we must keep for legal or accounting reasons. We may terminate an account for breach of these terms, with notice and a chance to remedy where the breach is remediable.
9. Changes to these terms
When we change these terms we update the date at the top of this page and notify account owners by email at least 14 days before the change takes effect. Material changes to the AI data-processing commitments in section 4 require 30 days' notice and can only tighten the protections, never loosen them, for existing accounts during their current term.
10. Governing law and contact
These terms are governed by the laws of the jurisdiction stated in your order form or, absent one, the jurisdiction of WPControl's principal place of business. Disputes go first to good-faith negotiation, then to the competent courts of that jurisdiction.