main.js · part 103
Full reference60 text occurrences from desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, part 103. Every entry preserves the shipped literal and its saved verdict or selection reason.
File contents and all parts · All files
Shipped text
Asks for credit-covered usage to be valued at its list price rather than the zer
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4430793–4430965, SHA-256 106ab210177628e0.
Jev judged not model-facing (confidence 0.34; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Asks for credit-covered usage to be valued at its list price rather than the zero the credit rows carry. Only Sand's usage-breakdown charts set it; the editor never does.
Asks for credit-covered usage to be valued at its list price rather than the zero the credit rows carry. Only Sand's usage-breakdown charts set it; the editor never does.
Two numeric ids, two timestamps, two enums, and a flag choosing how credit-cover
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4430980–4431284, SHA-256 98d927ba16644a1a.
Jev judged not model-facing (confidence 0.33; role context). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “Two numeric ids, two timestamps, two enums, and a flag choosing how credit-cover”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
Two numeric ids, two timestamps, two enums, and a flag choosing how credit-covered usage is valued. The six optional strings are filters the editor leaves empty; where another Cursor surface sets one, the value is a Cursor-issued id or a fixed category word, never anything typed or stored by the user.
Fetches the feature-flag values that apply to this user and client.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4431360–4431429, SHA-256 a659082d2655f67d.
Jev judged not model-facing (confidence 0.49; role tool). This is a classifier judgment, not proof of delivery.
Readable text: Fetches the feature-flag values that apply to this user and client.
Fetches the feature-flag values that apply to this user and client.
Every feature gate in the editor: which UI is on, which fixes are rolled out, an
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4431438–4431588, SHA-256 976dd23568262d1c.
Jev judged not model-facing (confidence 0.25; role context). This is a classifier judgment, not proof of delivery.
Readable text: Every feature gate in the editor: which UI is on, which fixes are rolled out, and the server-side 'can_enable' mirror of the private-inference gate.
Every feature gate in the editor: which UI is on, which fixes are rolled out, and the server-side `can_enable` mirror of the private-inference gate.
Flags are evaluated by Cursor per user and team. Without the bootstrap the edito
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4431601–4431806, SHA-256 87c988744ef2888c.
Jev judged not model-facing (confidence 0.29; role context). This is a classifier judgment, not proof of delivery.
Readable text: Flags are evaluated by Cursor per user and team. Without the bootstrap the editor runs on stale defaults and cannot see a rollout or a kill switch. Flag exposure logging is a separate RPC and is refused.
Flags are evaluated by Cursor per user and team. Without the bootstrap the editor runs on stale defaults and cannot see a rollout or a kill switch. Flag exposure logging is a separate RPC and is refused.
optional bool
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4431853–4431868, SHA-256 a2a42cd3b3d75811.
Jev judged not model-facing (confidence 0.24; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: optional bool
optional bool
Internal-only: asks the server to evaluate gates as a non-employee.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4431877–4431946, SHA-256 9da708111379de9f.
Jev judged not model-facing (confidence 0.29; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Internal-only: asks the server to evaluate gates as a non-employee.
Internal-only: asks the server to evaluate gates as a non-employee.
optional enum aiserver.v1.ClientOS
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4431978–4432014, SHA-256 dc1358a8a01c7edd.
Jev judged not model-facing (confidence 0.25; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: optional enum aiserver.v1.ClientOS
optional enum aiserver.v1.ClientOS
Windows, macOS, Linux, iOS, or Android, as an enum value.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432023–4432082, SHA-256 d358c1124b4055a9.
Jev judged not model-facing (confidence 0.46; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Windows, macOS, Linux, iOS, or Android, as an enum value.
Windows, macOS, Linux, iOS, or Android, as an enum value.
optional string
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432110–4432127, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.35; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
Mobile hardware model such as iPhone16,1 . The desktop editor leaves it unset.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432136–4432217, SHA-256 bddb8bf8d889da20.
Jev judged not model-facing (confidence 0.54; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Mobile hardware model such as 'iPhone16,1'. The desktop editor leaves it unset.
Mobile hardware model such as `iPhone16,1`. The desktop editor leaves it unset.
Set only by the mobile apps from the OS's hardware identifier. A model name is a
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432232–4432351, SHA-256 931a165342395bcb.
Jev judged not model-facing (confidence 0.33; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Set only by the mobile apps from the OS's hardware identifier. A model name is a fixed vendor string, not user input.
Set only by the mobile apps from the OS's hardware identifier. A model name is a fixed vendor string, not user input.
optional string · byte 4432377
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432377–4432394, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.36; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
Mobile OS version such as 26.0.1 . The desktop editor leaves it unset.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432403–4432476, SHA-256 0fbbac817efc1b01.
Jev judged not model-facing (confidence 0.66; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Mobile OS version such as '26.0.1'. The desktop editor leaves it unset.
Mobile OS version such as `26.0.1`. The desktop editor leaves it unset.
Set only by the mobile apps from the OS version API. A version number is not use
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432491–4432581, SHA-256 09c43f491614478f.
Jev judged not model-facing (confidence 0.49; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Set only by the mobile apps from the OS version API. A version number is not user input.
Set only by the mobile apps from the OS version API. A version number is not user input.
optional string · byte 4432608
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432608–4432625, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.36; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
phone , pad , mac , or unspecified on iOS. The desktop editor leaves it uns
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432634–4432719, SHA-256 3153323d139b2bdf.
Jev judged not model-facing (confidence 0.69; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: 'phone', 'pad', 'mac', or 'unspecified' on iOS. The desktop editor leaves it unset.
`phone`, `pad`, `mac`, or `unspecified` on iOS. The desktop editor leaves it unset.
One of four fixed words chosen by the mobile app from the device class.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432734–4432807, SHA-256 f3003a8075de11a6.
Jev judged not model-facing (confidence 0.35; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: One of four fixed words chosen by the mobile app from the device class.
One of four fixed words chosen by the mobile app from the device class.
optional string · byte 4432832
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432832–4432849, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.35; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
Mobile install UUID used to bucket experiments. The desktop editor leaves it uns
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432858–4432943, SHA-256 4e9b5cd7a802e83b.
Jev judged not model-facing (confidence 0.52; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Mobile install UUID used to bucket experiments. The desktop editor leaves it unset.
Mobile install UUID used to bucket experiments. The desktop editor leaves it unset.
A random UUID generated by the mobile app at install; it identifies the device,
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4432958–4433059, SHA-256 a2237a196ccf0a74.
Jev judged not model-facing (confidence 0.3; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: A random UUID generated by the mobile app at install; it identifies the device, never its contents.
A random UUID generated by the mobile app at install; it identifies the device, never its contents.
optional string · byte 4433089
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433089–4433106, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.24; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
release , testflight , or debug on iOS. The desktop editor leaves it unset.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433115–4433196, SHA-256 ac9f41b5cfe97205.
Jev judged not model-facing (confidence 0.39; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: 'release', 'testflight', or 'debug' on iOS. The desktop editor leaves it unset.
`release`, `testflight`, or `debug` on iOS. The desktop editor leaves it unset.
One of three fixed words derived from how the mobile app was installed.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433211–4433284, SHA-256 f13f2022c6033e41.
Jev judged not model-facing (confidence 0.41; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: One of three fixed words derived from how the mobile app was installed.
One of three fixed words derived from how the mobile app was installed.
optional string · byte 4433309
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433309–4433326, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.32; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
The mobile app's bundle identifier such as co.anysphere.cursor . The desktop ed
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433335–4433438, SHA-256 1daceda3f4f5f207.
Jev judged not model-facing (confidence 0.72; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The mobile app's bundle identifier such as 'co.anysphere.cursor'. The desktop editor leaves it unset.
The mobile app's bundle identifier such as `co.anysphere.cursor`. The desktop editor leaves it unset.
The app's own signed identifier, fixed at build time; never derived from user da
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433453–4433538, SHA-256 ebb46d4251ff6748.
Jev judged not model-facing (confidence 0.26; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The app's own signed identifier, fixed at build time; never derived from user data.
The app's own signed identifier, fixed at build time; never derived from user data.
optional string · byte 4433578
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433578–4433595, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.35; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
The two-letter ISO 3166-1 country of the device's App Store or Play Store accoun
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433604–4433738, SHA-256 b235b690d0a5e3b7.
Jev judged not model-facing (confidence 0.68; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The two-letter ISO 3166-1 country of the device's App Store or Play Store account, such as 'US'. The desktop editor leaves it unset.
The two-letter ISO 3166-1 country of the device's App Store or Play Store account, such as `US`. The desktop editor leaves it unset.
Read by the mobile app from the store's storefront API and mapped through the IS
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433753–4433913, SHA-256 abf7a974c513bdf7.
Jev judged not model-facing (confidence 0.23; role context). This is a classifier judgment, not proof of delivery.
Readable text: Read by the mobile app from the store's storefront API and mapped through the ISO country table; anything else is dropped, so only a country code can be sent.
Read by the mobile app from the store's storefront API and mapped through the ISO country table; anything else is dropped, so only a country code can be sent.
The desktop editor sends one flag and one enum. The seven optional strings are m
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4433928–4434207, SHA-256 146264de041ef3af.
Jev judged not model-facing (confidence 0.28; role context). This is a classifier judgment, not proof of delivery.
Readable text: The desktop editor sends one flag and one enum. The seven optional strings are mobile-only device descriptors (model, OS version, form factor, install UUID, channel, bundle id, store country), each a fixed vendor or build value rather than …
The desktop editor sends one flag and one enum. The seven optional strings are mobile-only device descriptors (model, OS version, form factor, install UUID, channel, bundle id, store country), each a fixed vendor or build value rather than anything typed or stored by the user.
Admits one private-inference agent turn: authenticates the caller, checks usage
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4434246–4434393, SHA-256 90f4ad84703c2177.
Jev judged not model-facing (confidence 0.37; role tool). This is a classifier judgment, not proof of delivery.
Readable text: Admits one private-inference agent turn: authenticates the caller, checks usage limits, and returns the id later usage reports are attributed to.
Admits one private-inference agent turn: authenticates the caller, checks usage limits, and returns the id later usage reports are attributed to.
Every agent turn served by the customer's private gateway; the user sees the tur
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4434402–4434552, SHA-256 a8424c28c855bae5.
Jev judged not model-facing (confidence 0.3; role human). This is a classifier judgment, not proof of delivery.
Readable text: Every agent turn served by the customer's private gateway; the user sees the turn start, or a usage-limit or enrollment error before any model call.
Every agent turn served by the customer's private gateway; the user sees the turn start, or a usage-limit or enrollment error before any model call.
Cursor meters private-inference turns per account even though it never sees the
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4434565–4434766, SHA-256 3d65ec2923b5ad3d.
Jev judged not model-facing (confidence 0.36; role context). This is a classifier judgment, not proof of delivery.
Readable text: Cursor meters private-inference turns per account even though it never sees the prompt; admission is the only point where the turn is tied to the signed-in user before the customer gateway is called.
Cursor meters private-inference turns per account even though it never sees the prompt; admission is the only point where the turn is tied to the signed-in user before the customer gateway is called.
The gateway model id of the configured row the turn runs on, e.g. gpt-5-nano .
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4434823–4434904, SHA-256 be6e4360f7748091.
Jev judged not model-facing (confidence 0.73; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The gateway model id of the configured row the turn runs on, e.g. 'gpt-5-nano'.
The gateway model id of the configured row the turn runs on, e.g. `gpt-5-nano`.
Copied from the model key of a model. key table in the admin-managed priv
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4434919–4435103, SHA-256 58a4b6b2e13d8263.
Jev judged not model-facing (confidence 0.24; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Copied from the 'model' key of a '[model.<key>]' table in the admin-managed private-inference config file; never typed by the user and never derived from the prompt or the workspace.
Copied from the `model` key of a `[model.<key>]` table in the admin-managed private-inference config file; never typed by the user and never derived from the prompt or the workspace.
The conversation's UUID, for usage attribution.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4435151–4435200, SHA-256 11347fb87b682a3a.
Jev judged not model-facing (confidence 0.61; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The conversation's UUID, for usage attribution.
The conversation's UUID, for usage attribution.
A random UUID minted by the editor when the conversation is created.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4435215–4435285, SHA-256 576204953eaf4175.
Jev judged not model-facing (confidence 0.3; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: A random UUID minted by the editor when the conversation is created.
A random UUID minted by the editor when the conversation is created.
A UUID minted per turn attempt so a retried admission maps to the same usage id.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4435332–4435414, SHA-256 5a78197ef518fe9a.
Jev judged not model-facing (confidence 0.65; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: A UUID minted per turn attempt so a retried admission maps to the same usage id.
A UUID minted per turn attempt so a retried admission maps to the same usage id.
A random UUID minted by the editor per attempt.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4435429–4435478, SHA-256 73dfc32851a8efaf.
Jev judged not model-facing (confidence 0.41; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: A random UUID minted by the editor per attempt.
A random UUID minted by the editor per attempt.
optional string · byte 4435511
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4435511–4435528, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.32; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
The Cursor model id (a model-picker slug such as gpt-5.4 ) whose prompt family
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4435537–4435787, SHA-256 aa5c101feb7ef124.
Jev judged not model-facing (confidence 0.69; role parameter). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “The Cursor model id (a model-picker slug such as gpt-5.4 ) whose prompt family”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
The Cursor model id (a model-picker slug such as `gpt-5.4`) whose prompt family the turn is built with, when the configured row names one. Sent alongside `prompt_model` for servers that predate the structured field; servers with it ignore this one.
Copied from the cursor model key of a model. key table in the admin-manag
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4435802–4436054, SHA-256 1d3c50ac2f4aca5b.
Jev judged not model-facing (confidence 0.29; role parameter). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “Copied from the cursor model key of a model. key table in the admin-manag”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
Copied from the `cursor_model` key of a `[model.<key>]` table in the admin-managed private-inference config file; never typed by the user and never derived from the prompt or the workspace. The server accepts only Cursor model ids the caller may use.
message aiserver.v1.InferenceRequestedModel
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4436082–4436127, SHA-256 af6b35cc6848b972.
Jev judged not model-facing (confidence 0.2; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: message aiserver.v1.InferenceRequestedModel
message aiserver.v1.InferenceRequestedModel
The Cursor model whose prompt family the turn is built with, when the configured
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4436136–4436449, SHA-256 d790a495713b865a.
Jev judged not model-facing (confidence 0.51; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The Cursor model whose prompt family the turn is built with, when the configured row names one: its model-picker id (such as 'gpt-5.6-sol') and the turn's reasoning tier as a 'reasoning' parameter, in the same structured form the managed ag…
The Cursor model whose prompt family the turn is built with, when the configured row names one: its model-picker id (such as `gpt-5.6-sol`) and the turn's reasoning tier as a `reasoning` parameter, in the same structured form the managed agent loop sends the server. No credentials and no max-mode flag are set.
The id is copied from the cursor model key of a model. key table in the a
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4436464–4436921, SHA-256 039e42dd6566f21f.
Jev judged not model-facing (confidence 0.32; role context). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “The id is copied from the cursor model key of a model. key table in the a”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
The id is copied from the `cursor_model` key of a `[model.<key>]` table in the admin-managed private-inference config file, and the only parameter is a reasoning tier drawn from that table's `reasoning_efforts` rungs (or the gateway's advertised tiers) — the fixed words such as `low` or `high` the model picker offers; never typed by the user and never derived from the prompt or the workspace. The server accepts only Cursor models the caller may use.
Two admin-configured model ids, one fixed reasoning-tier word, and two random UU
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4436936–4437068, SHA-256 e1038add334ba729.
Jev judged not model-facing (confidence 0.23; role tool). This is a classifier judgment, not proof of delivery.
Readable text: Two admin-configured model ids, one fixed reasoning-tier word, and two random UUIDs; no prompt, file, or path can reach any field.
Two admin-configured model ids, one fixed reasoning-tier word, and two random UUIDs; no prompt, file, or path can reach any field.
Reports the token counts of completed private-inference model calls so usage is
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4437110–4437316, SHA-256 92a846afba78fd51.
Jev judged not model-facing (confidence 0.21; role tool). This is a classifier judgment, not proof of delivery.
Readable text: Reports the token counts of completed private-inference model calls so usage is metered without pricing, and reports each finished turn so an admitted turn that never produced model output is not charged.
Reports the token counts of completed private-inference model calls so usage is metered without pricing, and reports each finished turn so an admitted turn that never produced model output is not charged.
Background upload after each model call served by the customer's private gateway
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4437325–4437483, SHA-256 64e8bcd9cac3ea06.
Jev judged not model-facing (confidence 0.24; role context). This is a classifier judgment, not proof of delivery.
Readable text: Background upload after each model call served by the customer's private gateway and after each turn ends; nothing is shown unless the upload keeps failing.
Background upload after each model call served by the customer's private gateway and after each turn ends; nothing is shown unless the upload keeps failing.
Cursor never sees the model call, so the only usage evidence is what the gateway
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4437496–4437812, SHA-256 97de82c6f86884b0.
Jev judged not model-facing (confidence 0.25; role context). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “Cursor never sees the model call, so the only usage evidence is what the gateway”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
Cursor never sees the model call, so the only usage evidence is what the gateway reported to the editor; the editor forwards those counts and nothing else. Likewise only the editor knows when a turn ended and whether the model ever answered, which is what lets Cursor void a turn that was admitted but did no work.
repeated message aiserver.v1.PrivateInferenceInvocationUsage
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4437853–4437915, SHA-256 b2204e4168c4c9cb.
Jev judged not model-facing (confidence 0.19; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: repeated message aiserver.v1.PrivateInferenceInvocationUsage
repeated message aiserver.v1.PrivateInferenceInvocationUsage
One record per completed model call: the admission's usage UUID, a per-call UUID
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4437924–4438179, SHA-256 57d842164d18a85a.
Jev judged not model-facing (confidence 0.32; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: One record per completed model call: the admission's usage UUID, a per-call UUID, the gateway model id, the call's timestamp, its outcome, the inference-reason name ('agent'), and the token counts the gateway reported (input, output, cached…
One record per completed model call: the admission's usage UUID, a per-call UUID, the gateway model id, the call's timestamp, its outcome, the inference-reason name (`agent`), and the token counts the gateway reported (input, output, cached, reasoning).
Every string field is a UUID, an admin-configured model id, or a fixed reason na
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4438194–4438516, SHA-256 9f3d4c3b54187ca0.
Jev judged not model-facing (confidence 0.2; role context). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “Every string field is a UUID, an admin-configured model id, or a fixed reason na”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
Every string field is a UUID, an admin-configured model id, or a fixed reason name from the client's own code; every other field is a timestamp, an enum, or an integer token count copied from the gateway's usage payload. The prompt, the response text, and provider credentials are not part of the record by construction.
repeated message aiserver.v1.PrivateInferenceTurnOutcome
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4438537–4438595, SHA-256 2cb86689dfc06b37.
Jev judged not model-facing (confidence 0.13; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: repeated message aiserver.v1.PrivateInferenceTurnOutcome
repeated message aiserver.v1.PrivateInferenceTurnOutcome
One record per finished turn attempt: the admission's usage UUID, when the attem
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4438604–4438772, SHA-256 55bfa99570741751.
Jev judged not model-facing (confidence 0.31; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: One record per finished turn attempt: the admission's usage UUID, when the attempt ended, how many gateway calls it made, and whether any call returned output tokens.
One record per finished turn attempt: the admission's usage UUID, when the attempt ended, how many gateway calls it made, and whether any call returned output tokens.
The only string is the usage UUID the server itself minted at admission; the res
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4438787–4439000, SHA-256 65bbb0b538c7a7af.
Jev judged not model-facing (confidence 0.13; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: The only string is the usage UUID the server itself minted at admission; the rest is a timestamp, an integer count, and a boolean. Nothing about the prompt, the response, or the reason the turn ended is carried.
The only string is the usage UUID the server itself minted at admission; the rest is a timestamp, an integer count, and a boolean. Nothing about the prompt, the response, or the reason the turn ended is carried.
Identifiers, one enum, timestamps, integer counts, and one boolean; the gateway'
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4439015–4439223, SHA-256 1b467aba91a5d802.
Jev judged not model-facing (confidence 0.18; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Identifiers, one enum, timestamps, integer counts, and one boolean; the gateway's usage object is reduced to its numeric fields before it is stored or sent, and the turn record is a UUID plus three scalars.
Identifiers, one enum, timestamps, integer counts, and one boolean; the gateway's usage object is reduced to its numeric fields before it is stored or sent, and the turn record is a UUID plus three scalars.
use strict
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4439626–4439638, SHA-256 4ee188e1744c1981.
Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: use strict
use strict
Hook additional context for ${e.hookEventName} is ${e.actualLength} chars (max $
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4439798–4439895, SHA-256 fa25992630ec60a9.
Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Hook additional_context for ${e.hookEventName} is ${e.actualLength} chars (max ${e.maxLength}).
Hook additional_context for ${e.hookEventName} is ${e.actualLength} chars (max ${e.maxLength}).
HOOK STEPS SUPPORTING ADDITIONAL CONTEXT lists ${e} but HookStepAdditionalContex
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/main.js, bytes 4440292–4440444, SHA-256 611a1de3ef255b3e.
Jev judged not model-facing (confidence 0.13; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: HOOK_STEPS_SUPPORTING_ADDITIONAL_CONTEXT lists ${e} but HookStepAdditionalContextEventName does not include it. Extend the Extract<> union in spec.ts.
HOOK_STEPS_SUPPORTING_ADDITIONAL_CONTEXT lists ${e} but HookStepAdditionalContextEventName does not include it. Extend the Extract<> union in spec.ts.