Hosting connectors
Hosting connectors are optional. Every site already runs backups, updates, and inventory through the ConstellaWP Agent. A connector adds provider APIs: list installs, purge cache, read server info, or trigger a host-side backup — only where that host supports it.
Credentials are verified against the provider API, then encrypted with your organization key.
Supported hosts
Section titled “Supported hosts”| Host | Account scope | What the connector adds |
|---|---|---|
| Cloudways | Many sites per account | List apps, server backup, cache purge |
| cPanel | One cPanel account (usually one site) | Server info, list host backups (read-only) |
| WP Engine | Many installs per account | List installs, server backup, cache purge; WordPress core is managed by WP Engine |
There are no other hosters in the product today. Do not invent credentials for Kinsta, Flywheel, or similar — they are not wired up.
How to connect
Section titled “How to connect”Organization-wide (Cloudways, WP Engine):
- Open Hosting in ConstellaWP (owners and admins).
- Choose the provider, name the account, paste credentials.
- ConstellaWP tests the API, then saves the account.
- On each site Settings → Hosting connector, pick that account and the matching remote install.
Per-site (cPanel):
cPanel tokens are scoped to one account, so you usually connect from the site hosting form (same credential fields). You can also add cPanel from the Hosting page; it appears under per-site credentials.
Until a site is linked to a remote install, the site Hosting tab has nothing to show. Linking does not replace the agent.
What stays on the agent
Section titled “What stays on the agent”WordPress-level backups (BYOS), plugin/theme updates, and inventory always go through the agent. Host snapshots listed on the Hosting page are informational unless the connector exposes an action (Cloudways / WP Engine server backup). Restore of ConstellaWP archives is always BYOS restore.
Removing a connector
Section titled “Removing a connector”Remove on the Hosting page deletes the stored credentials. Linked sites fall back to the agent only. Confirm the prompt before you proceed.