Security Cursor rules

1,348 tagged Security, measured the same way as everything else here.

Browse within: cursorrules 85ai-coding 67Drupal 63cursor-rules 57cursor-ai 54model-context-protocol 43code-quality 37ai-governance 36best-practices 35coding-best-practices 33drupal-coding-standards 33javascript-coding-standards 33cursor-ide 32claude-code-skills 30

xuid-identifiers

385

joostfaassen/prism

Cursor rule Cursor

XUID convention - all entities use XUIDs as public identifiers, never expose internal database IDs.

not rated 0 4d ago A 0 tokens

ingest_reference_spec

388

ocentra/ocentra-enforcer

Cursor rule

Neutral fixture form of the ingested reference spec (docs/plans/enforcer-selfhost-plan/refs/security-testing-source.md) §2.3 invariants and §3.1-3.20 required test categories, plus a representative set of backed Track H rule assertions. No product/company/game branding.

not rated 0 7d ago A 367 tokens original MIT

hitl-auto-gate

389

JerryFish123/Jerry_hitl_mcp

Cursor rule

A repository rule that requires coding agents to obtain approval before dangerous operations. The approval appears in the IDE and is checked through the hitlmcp service.

not rated 0 1mo ago A 371 tokens original MIT

auth

390

YoshitakaArakawa/tableau-mcp-apps-lab

Cursor rule Cursor

Auth architecture, middleware chain, and auth-specific coding standards.

not rated 0 1mo ago A 0 tokens copy · 100% Apache-2.0

cursorrules

391

josemurilors/ABNT-MCP

Cursor rule Cursor

Cursor rule "cursorrules" from josemurilors/ABNT-MCP, covering ============================================, cursor rules - vibe coding security, ============================================, ------------------------------------------- and critical: secrets management rules.

not rated 0 29d ago A 1,112 tokens original MIT

apivault

394

TLB-STATION/apivault-mcp

Cursor rule

Integration rules and security practices for ApiVault MCP Server.

not rated 0 10d ago A 0 tokens original MIT

easyship-safety

396

easyship/easyship-mcp-plugin

Cursor rule

Safety rules for Easyship shipping operations — confirms destructive actions, protects secrets, and validates inputs before API calls.

not rated 0 2mo ago A 347 tokens original MIT

cursorrules

397

CSOAI-ORG/csoai-cra-annex-iv-classifier-mcp

Cursor rule Cursor

When the user asks about meok cra annex iv classifier, use meok-cra-annex-iv-classifier-mcp tools: classifyproduct, auditessentialrequirements, generatedoctemplate, signclassificationcert.

not rated 0 2mo ago A 116 tokens original MIT

cursorrules

398

CSOAI-ORG/owasp-agentic-mcp

Cursor rule Cursor

When the user asks about owasp agentic, use owasp-agentic-mcp tools: assessagentsecurity, checkpromptinjection, checktoolpoisoning, checkexcessiveagency, checkdataleakage.

not rated 0 2mo ago A 98 tokens original MIT

dependency-hygiene

402

sonatype/sonatype-cursor-plugin

Cursor rule

Proactive dependency guidance when editing package manifests. Suggests security checks before adding or updating dependencies.

not rated 0 4mo ago A 0 tokens original MIT

security-first-deps

403

sonatype/sonatype-cursor-plugin

Cursor rule

Security-focused dependency selection guidance. Prioritizes secure, well-maintained packages with compatible licenses.

not rated 0 4mo ago A 259 tokens original MIT

H-mmer/pentest-agents

Cursor rule Cursor

ALL agents, skills, and orchestrators that need a username, handle, email, password, token, or cookie for a bug bounty platform MUST read it from these env vars at runtime.

not rated 815 2mo ago A 7 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: