cursorrules

Project-wide rules for a collection of more than 134 specialized instructions, each stored as a skill file for tools such as Cursor, Claude, and Antigravity.

In plain words
What is it for?
Use them when adding or changing skills, starting a project, or choosing instructions for frontend, backend, database, AI, and other technical work.
Why use it?
They tell an agent which guidance to read before coding and set common project-generation and technology expectations.

Cursor rule for Cursor

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add rules/roedyrustam/vibes-plug/cursorrules
Clone the repo
git clone --depth 1 https://github.com/roedyrustam/vibes-plug

Made for: Cursor.

Per session 718 This file is loaded in full into every session.
When invoked 718 The same file — it is already loaded in full.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00718 $0.00718
Opus 5 $0.00359 $0.00359
Sonnet 5 $0.00144 $0.00144
Haiku 4.5 $0.00072 $0.00072

Measured yesterday against content hash fea5b6f0f3fc, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

cursorrules scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

.cursorrules · 43 lines

How it starts

The opening of the file, as written. The whole thing — 43 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Vibes-Plug — 134+ Skills Ecosystem (v2.7.0)

Universal AI Plugin for Antigravity, Claude, and Cursor

About

This project uses the vibes-plug skills ecosystem with 134+ specialized skills. Each skill is a SKILL.md file in the skills/ directory containing domain-specific instructions, patterns, and best practices for the modern 2026 tech stack.

Core Stack (2026 Edition)

  • Frontend: React 19, Next.js 15, Tailwind CSS v4, TypeScript 5.8+
  • Backend: Node.js 24 LTS, Bun 1.2+, Hono v4, Fastify 5, Python 3.14, Go 1.25+, Rust 2024
  • Database: Prisma 6, Drizzle ORM, PostgreSQL, Supabase, Neon, Turso
  • AI/LLM: Vercel AI SDK 5.x, MCP v1.9+, pgvector, RAG pipelines

Mandatory Before Coding

  1. Read the relevant skills/<skill-name>/SKILL.md files before writing code.
  2. Think deeply before acting — analyze constraints, question assumptions, validate approach.
  3. For new projects, auto-generate: PRD.md, ERD.md, DOKUMENTASI.md.

Skill Domains

  • 🤖 AI & Agentic: ai-llm-integration-expert, mcp-server-architect, vector-db-rag-expert, multi-agent-orchestration
  • 🎨 Design & UI/UX: design-system-architect, hig, ui-components-expert, ui-ux-pro-max
  • 🖥️ Frontend: senior-frontend, tailwind-expert, nextjs-app-router-expert, tanstack-query-expert, vue-frontend-expert
  • ⚙️ Backend: js-backend-expert, python-programming-expert, go-programming-expert, rust-programming-expert, api-design-expert
  • ☁️ SaaS & Cloud: saas-transformer, saas-billing, ci-cd-devops-architect, cloud-hosting-expert, payment-gateway-expert
  • 🗄️ Database: database-orm-expert, edge-serverless-db-expert, supabase-migration
  • 🔒 Security: authentication-identity-expert, e2e-testing-expert, production-ready-hardener, zero-trust-secret-vault
  • 🔍 SEO: seo
  • 🛠️ Utilities: brainstorming, prd-architect, auto-doc-updater, token-saver, vibe-code-gardener

Code Quality

  • Clean Code, SOLID, DRY — see scalability-clean-code skill.
  • No AI slop — be imperative, direct, token-efficient.
  • Bilingual support (English & Bahasa Indonesia) for all skills.

Read the full file on GitHub · 43 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. yesterday First seen · 43 lines · 718 tokens per session scan A fea5b6f0f3fc

Subscribe to this mod's changes

cursorrules is a cursor rule published in the GitHub repository roedyrustam/vibes-plug (48 stars, last pushed 14d ago), licensed MIT. It adds 718 tokens to every session, about $0.0036 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.