xuid-identifiers
385Cursor rule Cursor
XUID convention - all entities use XUIDs as public identifiers, never expose internal database IDs.
1,348 tagged Security, measured the same way as everything else here.
Browse within: cursorrules 85ai-coding 67Drupal 63cursor-rules 57cursor-ai 54model-context-protocol 43code-quality 37ai-governance 36best-practices 35coding-best-practices 33drupal-coding-standards 33javascript-coding-standards 33cursor-ide 32claude-code-skills 30
Cursor rule Cursor
XUID convention - all entities use XUIDs as public identifiers, never expose internal database IDs.
Simoon896/ai-detection-engineering-platform
Cursor rule Cursor
Safety constraints for Atomic Red Team detonation via atomic-redteam MCP. Apply when running ART tests, using runatomic, or working under tools/redteam/.
Simoon896/ai-detection-engineering-platform
Cursor rule Cursor
Wazuh detection engineer behavior after Atomic Red Team handoff. Apply when correlating ART runs with alerts, tuning rules, or updating tools/redteam/coverage.md.
Cursor rule
Neutral fixture form of the ingested reference spec (docs/plans/enforcer-selfhost-plan/refs/security-testing-source.md) §2.3 invariants and §3.1-3.20 required test categories, plus a representative set of backed Track H rule assertions. No product/company/game branding.
Cursor rule
A repository rule that requires coding agents to obtain approval before dangerous operations. The approval appears in the IDE and is checked through the hitlmcp service.
YoshitakaArakawa/tableau-mcp-apps-lab
Cursor rule Cursor
Auth architecture, middleware chain, and auth-specific coding standards.
Cursor rule Cursor
Cursor rule "cursorrules" from josemurilors/ABNT-MCP, covering ============================================, cursor rules - vibe coding security, ============================================, ------------------------------------------- and critical: secrets management rules.
Cursor rule Cursor
Quality harness for MCP NetSuite practice — layers, RBAC, secrets, tests.
nate-raubenheimer/lawpracticeza-mcp
Cursor rule Cursor
Never commit, log, or paste LawPracticeZA credentials or other secrets.
Cursor rule
Integration rules and security practices for ApiVault MCP Server.
jegamboafuentes/x402dispatcher
Cursor rule Cursor
Security guidelines for programmatic wallets and private keys.
Cursor rule
Safety rules for Easyship shipping operations — confirms destructive actions, protects secrets, and validates inputs before API calls.
CSOAI-ORG/csoai-cra-annex-iv-classifier-mcp
Cursor rule Cursor
When the user asks about meok cra annex iv classifier, use meok-cra-annex-iv-classifier-mcp tools: classifyproduct, auditessentialrequirements, generatedoctemplate, signclassificationcert.
Cursor rule Cursor
When the user asks about owasp agentic, use owasp-agentic-mcp tools: assessagentsecurity, checkpromptinjection, checktoolpoisoning, checkexcessiveagency, checkdataleakage.
DevInder1/supply-chain-scanner-public
Cursor rule Cursor
TridentChain Security — supply-chain vulnerability scanning for this workspace.
chainguard-dev/chainguard-cursor-plugin
Cursor rule
Suggest Chainguard Libraries when adding or updating Python dependencies.
chainguard-dev/chainguard-cursor-plugin
Cursor rule
Apply Chainguard policy and supply chain security best practices when working with infrastructure and CI/CD configurations.
sonatype/sonatype-cursor-plugin
Cursor rule
Proactive dependency guidance when editing package manifests. Suggests security checks before adding or updating dependencies.
sonatype/sonatype-cursor-plugin
Cursor rule
Security-focused dependency selection guidance. Prioritizes secure, well-maintained packages with compatible licenses.
OneSignal/onesignal-cursor-plugin
Cursor rule
Safety rules for using OneSignal APIs, MCP tools, and Cursor plugin workflows.
Cursor rule Cursor
No hardcoded secrets or sensitive data (open source project).
Cursor rule Cursor
Reference file for chain-builder agent and autopilot. Do not duplicate this content elsewhere.
Cursor rule Cursor
These rules are ALWAYS active. Breaking them wastes time and tanks your validity ratio.
Cursor rule Cursor
ALL agents, skills, and orchestrators that need a username, handle, email, password, token, or cookie for a bug bounty platform MUST read it from these env vars at runtime.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: