On this episode of The WP Minute+ podcast, GravityKit’s Zack Katz joins Eric to discuss his company’s forward-thinking features, including cryptographic signing on plugin updates and the new Block MCP tool. Zack shares that the recent plugin supply chain attacks inspired a more secure method for product distribution – potentially the first for a commercial plugin. Meanwhile, Block MCP fills a gap in the current WordPress AI landscape by working within the native block structure, rather than raw HTML. This episode provides you with the inside scoop on making WordPress safer and more user-friendly.
Takeaways:
- Cryptographic signing ensures plugin updates are secure.
- Supply chain attacks are a real concern for plugin developers.
- GravityKit is the first to implement cryptographic signing in WordPress plugins.
- The Block MCP tool addresses frustrations with existing MCPs.
- AI can significantly enhance the editing experience in WordPress.
- Granular editing is simplified with the Block MCP tool.
- The Block MCP tool can automatically identify and use the best blocks.
- Internal linking can be improved using AI with the Block MCP.
- The plugin allows for non-destructive edits and easy rollbacks.
Important Links:
- GravityKit products now give you a stronger reason to trust what you install
- Introducing Block MCP: the WordPress MCP we built because nothing else worked
- Block MCP: GitHub | Plugin
- The WP Minute+ Podcast: thewpminute.com/subscribe
Join The Newsletter
Get your favorite 5 minutes of WordPress news for busy professionals every week — 100% Free! Join the WP Minute Newsletter below 👇

