cursor-sdk

cursor-sdk is a command for Cursor from QuickerHub/quicker-rpc. It costs 0 tokens per session (935 once invoked), scanned A, original, MIT.

A set of repository commands for running Cursor SDK authoring benchmarks. The Cursor SDK is a programming interface for running Cursor agents from scripts rather than only through the editor.

In plain words
What is it for?
Use it to install the SDK, run read-only or action-writing benchmarks, test tasks with QuickerRpc, run batches, and check types.
Why use it?
It provides repeatable checks for agent authoring tasks and can save benchmark results as JSON for later review.

Command for Cursor

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add commands/quickerhub/quicker-rpc/cursor-sdk
Clone the repo
git clone --depth 1 https://github.com/QuickerHub/quicker-rpc

Made for: Cursor.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for cursor-sdk

README.md
[![agentmods](https://agentmods.dev/badge/commands/quickerhub/quicker-rpc/cursor-sdk.svg)](https://agentmods.dev/commands/quickerhub/quicker-rpc/cursor-sdk)
Your own site
<a href="https://agentmods.dev/commands/quickerhub/quicker-rpc/cursor-sdk"><img src="https://agentmods.dev/badge/commands/quickerhub/quicker-rpc/cursor-sdk.svg" alt="Measured on agentmods" height="20"></a>
Per session 0 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 935 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00000 $0.00935
Opus 5 $0.00000 $0.00467
Sonnet 5 $0.00000 $0.00187
Haiku 4.5 $0.00000 $0.00093

Measured 4d ago against content hash 37d670d3c8b5, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

cursor-sdk scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

.cursor/commands/cursor-sdk.md · 84 lines

How it starts

The opening of the file, as written. The whole thing — 84 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Cursor SDK — quicker-rpc 脚本化 Agent

在仓库根目录用 @cursor/sdkauthoring benchmark(L3 刻意练习)。计费与 IDE 同一套餐(Dashboard 里标 SDK 分项)。

动作级学习(pattern / 动作库 / skill)用 /learn-authoring;命令选型见 /cursor-cli(索引页)。

一次性配置

  1. API KeyCursor Dashboard → API Keys
$env:CURSOR_API_KEY = "key_..."
# 或持久化到 scripts/sdk/.env(gitignore)
  1. qkrpc + Quicker 插件(benchmark 必开)
qkrpc wait --json
qkrpc agent setup --upgrade
  1. 安装 SDK 依赖
pwsh -NoProfile -File ./scripts/Invoke-CursorSdk.ps1 -Script install

常用命令

场景 命令
冒烟(仅读仓库) pwsh ./scripts/Invoke-CursorSdk.ps1 -Minimal
冒烟 + qkrpc MCP pwsh ./scripts/Invoke-CursorSdk.ps1 -WithQkrpc
单条 benchmark pwsh ./scripts/Invoke-CursorSdk.ps1 -Script benchmark -TaskId discover-step-expr
L2 写动作 pwsh ./scripts/Invoke-CursorSdk.ps1 -Script benchmark -TaskId clip-lines-expr
L2 + 真实宿主 F 轴 先运行 benchmark,再用 qkrpc action run --id <guid> --debug --wait --json 验证
L2 主干批量 pwsh ./scripts/Invoke-CursorSdk.ps1 -Script benchmark-batch -Preset l2-core -Limit 3
JSON 结果 -Json;落盘 .local/cursor-sdk/<task>-<ts>.json
类型检查 pwsh ./scripts/Invoke-CursorSdk.ps1 -Script check

npm(已 dot-source env):

. ./scripts/cursor-agent-env.ps1
cd scripts/sdk
npm run benchmark -- clip-lines-expr --json
npm run benchmark:batch -- --preset l2-core --limit 1

真实 Quicker 验证(F 轴)

npm run benchmark -- multi-var-assign --json
qkrpc action run --id <guid> --debug --wait --json

MCP 场景优先调用 qkrpc_action_debug 并检查真实步骤 trace 与返回值;表单、文件选择、窗口等交互任务在 Quicker UI 中验证。

固定模型:$env:CURSOR_SDK_MODEL = "composer-2.5"(默认可 auto)。

Headless 注意

  • qkrpc MCP 在 config.ts inline;autoReview: false(否则 headless 无法批 MCP)。
  • 默认不加载 settingSources;benchmark 规则见 benchmark-prompt.ts
  • IDE 同款 rules/skills:$env:CURSOR_SDK_SETTING_SOURCES = "project,user"

目录

路径 作用
scripts/sdk/src/config.ts repo 根、qkrpc 路径、MCP
scripts/sdk/src/run-benchmark-task.ts 单任务
scripts/sdk/src/run-benchmark-batch.ts 批量
scripts/Invoke-CursorSdk.ps1 包装脚本

Read the full file on GitHub · 84 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 4d ago First seen · 84 lines · 0 tokens per session scan A 37d670d3c8b5

Subscribe to this mod's changes

cursor-sdk is a command published in the GitHub repository QuickerHub/quicker-rpc (13 stars, last pushed 20d ago), licensed MIT. It costs nothing until one of its globs matches a file; then it loads 935 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.