Getting Started

What Is Protuno

Point Protuno at a site, get the findings in plain words, then let it do the work on a schedule and write down what it did.

Aditya Sharma·5 min read

Protuno gives you a way to hand WordPress work to software and still know what happened.

You point it at a site. It reads the site, tells you what it found in plain words, and, once you allow it, does the work on a schedule and writes down what it did.

That is the whole idea. The rest of this page is how it works and what is live today.

Start with the free audit

The audit takes a domain and nothing else. No plugin, no login, no access to your server.

It runs 85+ checks across eight areas: Security, Mail and DNS, SEO and Indexing, WordPress, Certificates, Performance, Commerce and Backups.

Every one of them is read only. Nothing is written, nothing is changed, and the site does not know it is being looked at any more than it knows a visitor arrived.

You get the literal finding, not a score. “A certificate expires in 9 days” rather than “Security: B minus”. A finding you can forward to a client without rewriting it first.

Run one at protuno.com. It takes about forty seconds.

Connect a site to see inside it

An address only tells you so much. Connecting a site adds 34 checks that can only be read from inside the install: which plugins are actually active, what version of PHP is really running, whether the debug log is writing to a file anyone can download.

Connecting is three steps and takes about two minutes.

Step one: install the connector

Download the Protuno Super Agent Connector from your dashboard, upload the zip in Plugins, Add New, Upload Plugin, and activate it. It is free, and it is the only thing you install.

Step two: the site declares what it can do

The connector reads which abilities the site can offer and shows them to you before anything is granted. You see the list; you are not asked to trust a description of it.

Step three: paste a credential you own

The plugin creates a WordPress application password and shows it to you once. You paste it into Protuno along with your username. The plugin keeps no copy.

You can revoke it from your own WordPress user profile at any moment, without asking us, and the connection dies immediately. The key is yours, it lives in your site, and you can burn it whenever you like.

Playbooks are the unit of work

A playbook is one job, written out step by step before it ever runs.

Take a backup. Verify the backup can be restored. Apply these updates. Load the site. Walk the checkout. If the site stops answering, put it back.

No model decides at runtime what looks reasonable. You can read the entire sequence before you allow it, and it does the same thing on Tuesday that it did last Tuesday.

That matters more than it sounds. An agency cannot audit a vibe. It can audit a list of steps.

Super Agents run playbooks on a schedule

A Super Agent is a standing brief over a set of playbooks. It has a name, an area it looks after, and a schedule.

  • Wren, Care. The updates, the backups, the restore point that actually restores.
  • Rook, Security. Reads what your site really has installed and closes the doors most installs leave open.
  • Dash, Performance. Finds the 4MB hero image and the cache that is not caching.
  • Iris, SEO. Crawls your site the way a search engine does.
  • Till, eCommerce. Walks one of your real products to the payment step.
  • Echo, Marketing. Confirms your forms still post and your tracking still fires.

The Super Agents are not live yet. They are built and named, and none of them is released. The free audit is what works today. We would rather say that here than let you find it out on a client site.

Permission is the product

Every playbook carries a permission you set:

  • Act on its own. It runs, it fixes, it tells you afterwards.
  • Ask first. It finds the problem, writes what it would do, and waits for your yes.
  • Read only. It reports and never touches anything.

The read-only agents cannot write. That is enforced in what they are built to do, not in an instruction telling them not to. An instruction is a policy. An incapability is a guarantee, and only one of those survives a bad day.

Anything that changes a site takes a restore point first, and puts the site back if it stops answering.

Run history is the receipt

Every run across every site you can see, newest first, each with its own report.

It is the least exciting screen in the product and possibly the most important one, because “what did you actually do this month” is a question every agency gets, and the honest answer should not be a memory.

What is live today

  • Live now. The free site audit. 85+ read-only checks from a domain alone.
  • Live now. Connecting a site, the connector plugin, and the deeper checks that come with it.
  • Not yet. Every Super Agent. Built, named, and unreleased.

We are shipping in order of least risk to most: the playbooks that only read, then updates behind a proven restore point, then the ones that change more.

Where to go next

Comments