Governed ability

Delete user meta

aafm/delete-user-metaGuarded write

Delete user meta is a governed ability in Agent Abilities for MCP, a free WordPress plugin that runs an MCP server on your site.

Delete an allowlisted meta key from a user the agent can edit. Removes all values of that key. Auth and capability keys can never be touched.

How it is governed

The same model as every ability in the plugin, stated for this one.

  • Off until you enable it

    Like every ability, Delete user meta ships switched off. You turn it on one at a time, and an update never widens access on its own.

  • Guarded write

    Writes stay conservative, and the plugin re-checks the capability before the call runs.

  • Capability gated

    A connection only sees Delete user meta if the user you connected can run it, and the plugin checks that capability again before it executes.

  • Every call audited

    The call is written to the log in your own database, denials included, with the argument keys and the identifiers it touched, never free-text content.

  • It can delete

    This ability can delete. Where WordPress supports it, items go to Trash and can be restored, and the last administrator can never be removed.

Delete user meta is one of the 8 governed Users abilities. Browse the other Users abilities in the catalog.

See it in action

An illustrative run. Your real calls and data stay on your own site.

agent-abilities · auditGoverned
YouDelete user meta on this site.
RunRunning aafm/delete-user-meta
GateAllowedcapability re-checked before running
Auditaafm/delete-user-meta · principal: editor · args: user_id
ResultRemoves the item where allowed, to Trash where WordPress supports it, then logs the call.

Try it with a prompt

Example requests you could paste to your agent.

  1. Remove the temporary_note meta key from user 214.
  2. Delete the old_department field on user 88.
  3. Clear the seasonal_flag custom key from editor Priya so it stops showing.

These are illustrative example prompts. The agent runs them as the user you connected, checked against that user's capabilities and written to your audit log.

Frequently asked

Short answers for Delete user meta.

What exactly gets removed?

Delete user meta removes an allowlisted meta key on a user the agent can edit, including all values stored under that key. Authentication and capability keys can never be touched, so the ability cannot strip a user of their role.

Is this a safe operation?

Delete user meta is a targeted delete of one allowlisted key, guarded by capability and off by default. It is recorded in the audit log, though meta deletion itself is not sent to the Trash, so treat it as a real removal.

Back to all abilities

Governed by default, from the first call.

Delete user meta is off until you enable it, scoped to the user you connect, and logged like everything else. Turn on only what you need.

Every ability off until you enable it, capability-gated on every call.