ChangeTrace
Install & connect

Connect your site

Link the plugin to your ChangeTrace account in one click — no token to copy.

This is the normal way to connect. Your browser makes the introduction, so you never handle a token. If you would rather paste one manually, see Connect with a token.

Connecting

Open the ChangeTrace screen

ChangeTrace in the WordPress admin sidebar.

Agree and click Connect Site

Tick the confirmation checkbox — it lists what will be sent — then click Connect Site. The button stays disabled until the box is ticked.

The ChangeTrace connect screen in WordPress, consent ticked
The ChangeTrace connect screen in WordPress, consent ticked

Sign in or create your account

Your browser goes to ChangeTrace. Sign in, or create a free account with an email and password (you will get a 6-digit code by email to confirm it). Some accounts also offer Google sign-in.

First time? You will be asked for an organization name. This is the account that owns your sites and your plan, so use your business name rather than your own.

Approve the connection

You will see "Connect this WordPress site?" with the site name and URL. Check they are right, then click Connect Site.

The connect approval screen showing the site name and URL
The connect approval screen showing the site name and URL

Land back in WordPress

You are returned to the ChangeTrace screen, now showing "Site connected successfully. Heartbeats are scheduled hourly."

Behind the scenes it also sent a one-time snapshot of your site — WordPress version, PHP version, active theme, active plugins — which is the baseline all future change detection compares against.

If something goes wrong

Every failure shows a message on the connect screen, and the last failure stays visible as "Last attempt failed: …" with the underlying reason.

MessageWhat it meansWhat to do
Please tick the confirmation checkbox…Consent box not tickedTick it
This site could not reach the ChangeTrace API…Your server cannot make outbound HTTPS requestsSee Before you start
The connection attempt expired or was not started hereMore than 30 minutes passed, or you started in a different browserClick Connect Site again
The connection could not be verified (state mismatch)The round trip was interrupted or tampered withClick Connect Site again
ChangeTrace could not complete the connectionThe one-time code expired before the swapClick Connect Site again
Token saved, but the ChangeTrace API could not be reached to confirm itManual token accepted but unverifiedSend a test heartbeat
Unable to connect this site to ChangeTraceToken malformed or rejectedCheck you pasted the whole token
That token belongs to a different siteThe token is already bound to another domainEach site needs its own connection
Your plan's site limit is reachedFree covers one siteSee Plans and limits
No active organization for this sessionSigned in, but no organization yetCreate one, then retry

Every site needs its own connection

A site token is bound to the domain it was issued for. You cannot reuse one across staging and production, or across two shops. Connect each separately — and note the Free plan covers one site.

What happens straight after

  • The hourly heartbeat and the five-minute queue flush start running.
  • ChangeTrace fetches its configuration (which monitors are on).
  • The baseline snapshot goes up.
  • Uptime monitoring begins automatically — the first external check happens within five minutes.

Your first change won't produce an event

The first time the plugin looks at your plugins, theme and versions, it is recording them, not comparing them. That first pass establishes the baseline and emits nothing. Everything after it is compared against that baseline and does produce events.

On this page