Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add rules/moritzmessner/flutter-cursor-rules/flutter_domain_data_layergit clone --depth 1 https://github.com/MoritzMessner/flutter-cursor-rulesWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00039 | $0.01169 |
| Opus 5 | $0.00019 | $0.00584 |
| Sonnet 5 | $0.00008 | $0.00234 |
| Haiku 4.5 | $0.00004 | $0.00117 |
Grade A, and why
flutter_domain_data_layer scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 180 lines — stays where its author put it; the contents beside it link to each section on GitHub.
🎯 Domain Layer (Business Logic)
Purpose: Define business rules and domain models
Components:
- Models: Pure business entities (no dependencies)
- Use Cases: Business logic operations (optional for simpler apps)
Rules:
- Models MUST be pure Dart classes
- Models MUST NOT depend on Flutter SDK
- Models MUST NOT depend on external packages (except code generation annotations like
freezed_annotation) - Models SHOULD be immutable when possible
- Models SHOULD use value equality (prefer
freezedfor this)
Example Domain Model (with Freezed)
// ✅ CORRECT: Pure, immutable, uses Freezed for value equality and copyWith
import 'package:freezed_annotation/freezed_annotation.dart';
part 'booking.freezed.dart';
@freezed
class Booking with _$Booking {
const factory Booking({
required String id,
required String userId,
required String destination,
required DateTime startDate,
required DateTime endDate,
required BookingStatus status,
}) = _Booking;
// Custom getters/methods can be added by adding a private constructor
const Booking._();
bool get isActive => status == BookingStatus.confirmed || status == BookingStatus.pending;
}
enum BookingStatus {
pending,
confirmed,
cancelled,
completed,
}
🎯 Data Layer (Data Access)
Purpose: Fetch, cache, and manage data from external sources
Components:
- Repositories: Coordinate data from multiple sources
- Services: Handle specific external APIs or system features
- Data Models: API-specific models with serialization
Rules:
- Repositories MUST extend
BaseRepository(if available) - Repositories MUST return
Result<T>types (seeflutter_design_patterns.mdc) - Repositories MUST handle all exceptions
- Repositories SHOULD cache data when appropriate
- Services MUST be injected into repositories
- Services MUST NOT be used directly by ViewModels
- Data models MUST include serialization (toJson/fromJson), prefer
json_serializableorfreezed
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 180 lines · 39 tokens per session scan A 226f55ca408d
flutter_domain_data_layer is a cursor rule published in the GitHub repository MoritzMessner/flutter-cursor-rules (4 stars, last pushed 7mo ago), licensed MIT. It adds 39 tokens to every session and 1,169 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other cursor rules, from other repositories
cursorrules
Kortix is a React Native + Expo app built with TypeScript, NativeWind (Tailwind CSS), and a custom design system.
git-commit-attribution
Git commits must use the human developer identity only; never Cursor Agent co-authorship.
android-viewmodel
Android ViewModel conventions — StateFlow, repository abstraction, coroutines, no LiveData.
project-structure
Cursor rule "project-structure" from HeeGyeong/ComposeSample, covering project structure guide, layer structure, modularization rules, dependency rules and resource management.
cursorrules
ROLE: Android Development Expert EXPERIENCELEVEL: Advanced (10+ years) SPECIALTIES.
ios-ui-development-focus
UI/UX and SwiftUI best practices - HIG compliance, presentation APIs, layout patterns.