WP Tender for iPhone
A native iPhone client for the same WP Tender account you use on the web. Trigger backups on the train, watch a restore finish from a client meeting, hand a signed-off monthly report to the person sitting opposite you. Nothing is a mobile-only copy of your data — the app reads and writes the same organization the browser does.
1. Install & sign in
- Install WP Tender from the App Store. It is an iPhone app and runs in portrait.
- Sign in with the same email and password as
wptender.com. There is no separate mobile account and nothing to pair — your sites, plan and team come straight across. - If the address has never been confirmed, sign-in routes you to the verification screen instead of failing with a bare error. Forgot password? and Resend verification email both sit under the sign-in form.
- No account yet? Sign up in the app — your name, the organization name (it is the name that appears on client reports), email and a password. Confirm the address, then the app opens the plan picker: Free needs no payment, the paid tiers are bought as an App Store subscription at the price the store shows in your currency.
The session is held in the iPhone’s secure storage, so the app stays signed in across restarts. More → Sign out clears it on that device only.
2. The five tabs
Dashboard
Fleet counters, search, the fleet-overview donuts and a card per site with live CPU, RAM, disk and last backup.
Sites
The plain list with your plan usage in the header. Open a site for its grid of live section cards.
Jobs
Every backup, restore, cloud transfer, migration, replication and screenshot, with status, type and time filters.
Reports
Monthly and weekly client reports, the report builder, PDF export, share sheet and email to the site owner.
More
Integrations, Team, Subscription, Support, Settings, Profile and sign-out.
3. Dashboard
The first screen is the whole fleet at a glance. A row of counters — Total, Up, Warning, Down — sits above a search field that filters by site name or URL. (An Unknown counter appears only when at least one site has never reported a status, so a healthy fleet never shows a stray zero.)
Under that, the Fleet overview card draws status and WordPress-version donuts next to your plan-usage bars; tap it open for database versions, backup recency buckets (< 24h / < 7d / > 7d / Never) and the licence and renewal block.
Then one card per site, each carrying:
- A coloured status strip and badges for status, pair status, plan, and replication role when the site is in a continuity pair.
- WordPress version with PHP and Agent versions under it, MySQL or MariaDB version, and disk free with percent used.
- Live CPU (normalised by core count, with the 1-minute load figure) and PHP Heap (RAM) bars. The heap is used in preference to host RAM because that ceiling is the one that actually takes a WordPress site down. When neither is reported the card says so rather than drawing an empty bar.
- Last backup type and age, and when the site was last seen.
A site that is down or warning has its gauges blanked — the last reading it managed to send is not current, and showing it would read as healthy.
Header controls, left to right:
- Auto-refresh — Off, 3s, 5s, 15s, 1m or 5m. The dashboard defaults to 15s and remembers your choice.
- Select — enters bulk-selection mode (see below).
- Activity — turns to the brand colour with a count badge whenever jobs are queued or running; tap for the Active jobs sheet with a live progress bar per job.
- + — add a site.
Pull down anywhere on the screen to refresh immediately.
4. Bulk actions from the dashboard
- Tap the checklist icon in the header. Cards gain a checkmark; the title becomes “N selected”.
- Tap sites, or use All / None in the header — those apply to what the search is currently showing, not to the hidden rest of the fleet.
- The bar at the bottom offers Backup, Restore, Delete, Install plugin and Migrate.
- Backup and Restore only run against paired sites; the bar tells you how many of your selection are paired and skips the rest.
- Install plugin with nothing selected falls back to every paired site in the fleet.
- Migrate moves one site at a time, so it needs exactly one paired site selected.
5. Adding and pairing a site
- Tap + on Dashboard or Sites. Fill in a display name, the site URL and optional notes, then Continue to pairing.
- The pairing screen shows your organization’s activation token — the same
wpt_…token as More → Integrations, one per organization, good for every site. Tap it to copy. - Install the WP Tender Agent on the WordPress site, paste the token under WP Admin → WP Tender → Settings and press Save & Verify.
- The pairing screen polls every few seconds and flips to the site the moment the agent checks in. Nothing else to press.
If you are over your plan’s site cap, the form is replaced by an upgrade card instead of a failed save.
6. Sites & the per-site sections
The Sites tab is the plain list — name, host, status badge, pair badge, with N of M used against your plan cap in the header. Tap the arrow icon on a row to open the site in Safari; tap the row itself to open it in WP Tender.
A site opens on a grid of live cards rather than a tab strip. Every card fetches its own summary, so you can see what is behind it before you tap: Plugins reads “42 · 3 updates”, Cloud reads “2 destinations”, Replication reads “live”, “paused” or “not paired”. The cards are grouped:
- Health — Overview, Events, Log Manager, Debug Log.
- Backup & recovery — Backup, Cloud, Migration, Replication.
- Manage — Plugins, Themes, Posts, Pages, Users, Comments.
- Configure — Notifications, URL Replace.
Above the grid sit the status badge, the plan badge, Open (the site in Safari) and Pull now (ask the agent for fresh status immediately). A site that is down or reporting warnings gets a coloured banner at the top telling you which.
The header holds a report shortcut and an overflow menu with Unpair site and Delete site. Both are confirm-gated, and delete additionally makes you type the site name — it drops pairing, schedules, job history, backup records and reports, and cannot be undone. The WordPress site itself is untouched either way.
7. Running a backup and watching it
Open a site → Backup. The card has five sub-tabs.
Trigger
- A WordPress core panel showing the running version, whether an update is available, and a one-tap update behind a confirmation sheet that reminds you to take a full backup first.
- Type tiles: Full (DB + media + WP core), Database, Media, Pages, Posts. Free covers Full; the granular types carry a Pro badge and explain what they are for when tapped.
- Start type backup queues the job on the site itself.
Watching progress
A live panel appears above the trigger card the moment a backup or restore is queued: job name, status, the agent’s own progress line, elapsed time and a percentage bar, refreshed every three seconds. When the job leaves the queue the app looks up how it actually ended and tells you — a failed backup reports its error rather than quietly disappearing. The lists below refresh themselves, so a finished archive appears without a pull-to-refresh.
Local
Every archive on the WordPress site, with a donut of type distribution and the total size in the middle. Filter by type chips and by time (All time, Last 24h, Last 7d, Last 30d or a custom from/to range with date pickers). Per row:
- Download — pulls the archive through your session and hands it to the iOS share sheet, so it can go to Files, AirDrop or anywhere else.
- To cloud — duplicates it to a connected destination; the local copy stays.
- Restore — choose Overwrite or Merge, and optionally take a safety backup first so you can roll back.
- Delete — removes the .zip on the WordPress server.
Schedules, Cloud, Settings
Schedules pushes recurring backups to the site. Cloud lists what is already off-site and lets you take, restore or delete cloud copies. Settings points at the site’s Cloud card for provider credentials. Cloud destinations and granular types are paid features; where a plan does not include one, the app shows the upgrade card rather than letting you walk into an opaque error.
8. Connecting Google Drive
- Open the site → Cloud. The site must be paired first; the card says so if it is not.
- On the Google Drive panel, tap connect. The app opens Google’s consent screen in a browser sheet and returns to WP Tender when you finish.
- The panel then shows the authorized account’s email address, when it was authorized, and the folder in use.
Two follow-up actions live on the same panel:
- Push credential — writes the Drive credential down to the WordPress site again, for the rare case where the hand-off after consent did not land.
- Disconnect — revokes it, behind a confirmation.
Amazon S3 and Cloudflare R2 sit on the same screen and take keys instead of consent: bucket, region, access key ID, secret access key and an optional endpoint for S3; account ID, bucket and R2 keys for R2. Each site keeps its own credential, which is what you want when the sites belong to different clients.
9. Jobs
One feed for everything the fleet is doing, with three rows of filters and a per-site row when the window contains more than one site:
- Status — All / Active / Done / Error. Error also covers cancelled jobs, so nothing hides under “All” only.
- Type — All types / Backup / Restore / Cloud / Migration / Replication / Screenshot.
- Window — Last 1h / 24h / 7d / 30d, All time, or a custom date range. It defaults to the last 7 days and is applied server-side, so a long-lived fleet does not ship hundreds of stale rows to your phone.
Each row shows the job type with an icon, the site (or “fleet” for org-wide work), a status badge, a progress bar while it is queued or running, the agent’s message, the error in red when there is one, who triggered it and how long ago. The auto-refresh control in the header works the same way as on the dashboard, defaulting to 8s here.
10. Reports & the report builder
The Reports tab lists every site with reportable activity for a period. The period picker offers the last twelve months in your organization’s timezone, not the phone’s — otherwise a device travelling through another zone would offer a different month than the server reports on. Each row shows the event count and the three busiest buckets. The download icon in the header pulls the whole month as one ZIP.
Tap a site for its report:
- A Monthly / Weekly toggle and a period picker. Months go back to the month the site was added; weeks cover the last eight ISO weeks.
- A branded header band with your agency logo (or initials), report name and accent colour — the same artwork the PDF carries.
- Summary, an At a glance row of tiles (updates applied, backups with the age of the last one, uptime with outage count, migrations), and What we did this period written as sentences a client can read.
- The Backups list (date, label, which cloud it reached, or “Local only”), your note, your own sections, and a Full activity log appendix — the first 80 entries, with “+N more actions this period” when there are more.
- A quiet period renders as “No issues this period — your site ran smoothly” with the uptime figure and the number of automated health checks that passed.
Building the report
Owners and admins get a pencil in the header that opens the Build report sheet. It works like a page editor rather than a settings screen:
- Toggle which sections appear in this report.
- Pick which headline numbers show in the At a glance row.
- Write a note to the client.
- Add your own titled sections — recommendations, next steps, an offer.
Generate report saves the layout and the note in a single call and the client-facing report and PDF pick it up immediately. Until you press it, an Unsaved changes hint stays in the footer so an edit cannot be walked away from by accident. Reset returns to the default layout.
Getting the report out
- Download PDF — the server-rendered PDF, opened in the browser.
- Print / share — builds the report you are looking at into a standalone HTML file on the phone and hands it to the share sheet. This one works even when the server’s PDF renderer is unavailable.
- Email to client — prefills the site’s saved owner address and sends the PDF. Monthly periods only.
11. The More tab
Integrations
The shipped Agent version, an installations-against-cap bar, and a fleet banner that either confirms every install is current or says how many are behind. Download agent (.zip) fetches the plugin through your session and passes the real archive to the share sheet. Below it, the pairing token with copy and Rotate, and the list of active installations — each with its plugin version, an OUTDATED flag where it applies, when it last verified, a per-site Update to x.y.z button and a revoke action.
Team
Owners and admins on Pro and above manage members here: each one gets granular capabilities (backups, restore, cloud, plugin and core updates, themes, content, WordPress users, comments, migration and replication, site settings) scoped to the specific sites you choose. Owners and admins always have full access.
Subscription
Current plan and status, trial or renewal date, a usage bar for sites and your support-credit balance. Plans are priced by the App Store in your own currency, tax included — the app never shows a hard-coded dollar figure. Restore purchases re-reads the store, and Manage subscription opens Apple’s own subscription sheet. If the organization is billed on the web instead, the app says so and stays read-only. When a subscription lapses the app shows a banner explaining that new backups, schedules and pair operations are blocked until it is renewed, rather than letting each action fail one at a time.
Support
Your tickets, with All / Open / Awaiting / Answered / Closed chips carrying live counts. Open a thread to read and reply; the + starts a new one, and you can attach a screenshot from your photo library. Opening a ticket spends one support credit and covers the one site you raise it against — no plan bundles tickets.
Settings
Organization summary, the org timezone (used for cron windows, reports and timestamps), the per-site cron pulse toggles, SMTP, report branding and appearance. Paid sections show an upgrade card in place of the controls on plans that do not include them.
Profile
Display name and email, change password, and account deletion behind a password and a typed confirmation.
Appearance
The theme toggle and brand-colour picker sit in the header of More, Settings and Profile — light, dark and high-contrast themes, and a per-site colour so a client’s site is recognisable the second it opens.
12. How the app differs from the web dashboard
- Same account, same data. The app talks to the live wptender.com API. A backup you trigger on the phone lands in Jobs on the web; a schedule pushed from the browser shows up on the phone.
- Site detail is a card grid, not a sidebar. Deliberate: the sections are the same, but a phone reads a grid of live summaries better than a scrolling tab strip.
- Files leave through the share sheet. Backups, the agent ZIP and printable reports go to Files, Mail, AirDrop — wherever you send them — instead of a downloads folder.
- Billing depends on where you bought. A subscription bought in the app is an Apple subscription and is managed in Apple’s settings; one bought on the web stays managed on the web and is read-only in the app. The Agency tier is bought on the web, so it only appears in the app for organizations already on it.
- Signing out is local. It clears the session on that phone; your other sessions and devices are untouched.
See also: Using the Manager · The macOS app · WP Tender Agent · FAQ.