Head to head · Cms content · October 2026 research run

Strapi vs WordPress

Strapi and WordPress score within a point of each other on agent readiness, 65.7 (B) and 64.8 (B). WordPress leads on agent ergonomics and payments & pricing. Both do cms content.

Which one, for what

Strapi B

Good for Teams that want to own their CMS and let an agent draft, localise and publish entries under a narrow token.

Ahead on

  • Schema & documentation, 80 against 65

Watch for

Content History keeps no version for REST, GraphQL or MCP writes, and exists only on Growth and Enterprise plans

WordPress B

Good for Sites that already run WordPress, where an agent drafts posts and uploads media under a Contributor or Author account and a person publishes.

Ahead on

  • Agent ergonomics, 74 against 65
  • Payments & pricing, 60 against 50

Also in its favour

  • Runs on your own machine

Watch for

Application Passwords have no scopes or expiry. Each one carries every capability of its user

Score by category

CategoryWeight this runStrapiWordPressEdge
Reliability16%208278Strapi +4
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28065Strapi +15
Agent ergonomics13%16.26574WordPress +9
Security & auth14%17.56662Strapi +4
Payments & pricing10%12.55060WordPress +10
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88783Strapi +4
Transparency & trust7%8.87268Strapi +4
Negative events≤15-6-5
Total65.7 · B64.8 · B

Facts side by side

FactStrapiWordPress
KindHTTP APIHTTP API
VendorStrapi, Inc.WordPress.org (open-source project)
Hosted endpointno (local only)no (local only)
TransportsHTTP, Streamable HTTPHTTP, stdio
AuthAPI keyAPI key
PricingFreemiumFree
x402nono
LicenceMIT for the Community Edition. Code under ee/ directories is under Strapi's Enterprise Edition licence, and Strapi Cloud is a paid service under its own termsGPL-2.0-or-later. The MCP Adapter plugin is GPL-2.0-or-later too
Read-only variant documentednono
llms.txtyesyes
Last release2026-10-072026-10-06
Terms last updated2026-10-07no document linked
Privacy policy last updated2023-03-01no date given
Customer content may train modelsnot found in the text
Terms restrict automated accessyes
Terms restrict benchmarkingyes
Terms or service can change without noticeyes
Arbitration or class-action waiveryes
Popularity73k stars, 259k npm/wk21k stars

Verdicts

Strapi

The built-in MCP server shows an agent only the tools, fields and locales its Admin token permits, and content tools create drafts by default. Rollback is the limit. Content History is a paid feature and records admin panel edits only, so API and MCP writes leave no version to restore, and the MCP server can't upload files.

WordPress

The REST API is part of core, and a post created without a status is saved as a draft with revisions kept on the owner's server. Application Passwords carry no scopes, so limits come only from the user's role. Revisions can be read and deleted but not restored over REST, and a critical flaw was fixed on 22 September 2026.

Before you call either

Strapi

  1. Pass status=draft on every REST POST and PUT. Without it the Content API publishes the entry at once
  2. Use an Admin token for /mcp and admin routes and an API token for /api. Each kind is rejected on the other's routes
  3. Upload files with multipart POST to /api/upload first, then reference the returned file id in the entry. MCP tools can't upload
  4. Call media_delete_assets and media_delete_folder without dryRun first to preview, and take asset ids only from media_list_assets
  5. Keep your own copy of an entry before updating it. API and MCP writes create no Content History version

WordPress

  1. Ask the owner for a dedicated user with the lowest role that fits. A Contributor can draft and edit its own posts but can't publish them
  2. Send the Application Password as Basic auth over HTTPS only. Core disables Application Passwords on plain HTTP outside a local environment
  3. Upload a file with POST /wp-json/wp/v2/media first, then set featured_media or reference the returned URL in the post content
  4. To roll back, GET /wp/v2/posts/<id>/revisions/<rev>?context=edit and POST its title and content to the post. There's no restore route
  5. Pass _fields=id,status,link,modified on lists and read X-WP-TotalPages. per_page stops at 100

Questions

Which is better for AI agents, Strapi or WordPress?

Strapi and WordPress score within a point of each other on agent readiness, 65.7 (B) and 64.8 (B). WordPress leads on agent ergonomics and payments & pricing.

Do Strapi and WordPress need an API key?

Both need an API key.

Can an agent call Strapi and WordPress without installing anything?

No hosted endpoint is listed for Strapi. WordPress runs on your own machine, with no hosted endpoint listed.

Are Strapi and WordPress open source?

Yes. Strapi is open source (MIT for the Community Edition. Code under ee/ directories is under Strapi's Enterprise Edition licence, and Strapi Cloud is a paid service under its own terms). WordPress is open source (GPL-2.0-or-later. The MCP Adapter plugin is GPL-2.0-or-later too).

Other comparisons with Strapi or WordPress

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.