Evidence and archive

main.js · part 155

Full reference
Topics
Status
Showing all 60

60 text occurrences from desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, part 155. Every entry preserves the shipped literal and its saved verdict or selection reason.

File contents and all parts · All files

Shipped text

Unexpected system message in prompt: ${content}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4953567–4953616, SHA-256 f03c451da59f5729.

Jev judged not model-facing (confidence 0.14; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unexpected system message in prompt: ${content}

Unexpected system message in prompt: ${content}

${r}: ${s.map(e= {switch(e.type){case"text":return e.text;case"image":throw new

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4953642–4953770, SHA-256 46f6da35b1fa391e.

Jev judged not model-facing (confidence 0.2; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: ${r}: ${s.map(e=>{switch(e.type){case"text":return e.text;case"image":throw new hr({functionality:"images"})}}).join("")}

${r}:
${s.map(e=>{switch(e.type){case"text":return e.text;case"image":throw new hr({functionality:"images"})}}).join("")}

${n}: ${s.map(e= {switch(e.type){case"text":return e.text;case"tool-call":throw

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4953796–4953940, SHA-256 2b6da8b3b78cd683.

Jev judged not model-facing (confidence 0.13; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: ${n}: ${s.map(e=>{switch(e.type){case"text":return e.text;case"tool-call":throw new hr({functionality:"tool-call messages"})}}).join("")}

${n}:
${s.map(e=>{switch(e.type){case"text":return e.text;case"tool-call":throw new hr({functionality:"tool-call messages"})}}).join("")}

tool-call messages

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4953900–4953920, SHA-256 2c9cbdf81f36e265.

Jev judged not model-facing (confidence 0.23; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: tool-call messages

tool-call messages

tool messages

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4953986–4954001, SHA-256 b147430cbe287646.

Jev judged not model-facing (confidence 0.26; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: tool messages

tool messages

Unsupported role: ${t}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4954028–4954052, SHA-256 21c3f4fbbb4bfbe0.

Jev judged not model-facing (confidence 0.14; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unsupported role: ${t}

Unsupported role: ${t}

object-json mode

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4954799–4954817, SHA-256 0c4921c637c4c537.

Jev judged not model-facing (confidence 0.14; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: object-json mode

object-json mode

object-tool mode

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4954866–4954884, SHA-256 d74678cd346e2fe3.

Jev judged not model-facing (confidence 0.21; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: object-tool mode

object-tool mode

Unsupported type: ${h}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4954911–4954935, SHA-256 edfa85356d8c2140.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unsupported type: ${h}

Unsupported type: ${h}

This model does not support aspect ratio. Use size instead.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4959346–4959409, SHA-256 d87f4006c41ebe36.

Jev judged not model-facing (confidence 0.24; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: This model does not support aspect ratio. Use 'size' instead.

This model does not support aspect ratio. Use `size` instead.

data:${"string"==typeof e.mimeType "" ==e.mimeType.trim()?e.mimeType:"image/png

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4963263–4963364, SHA-256 61fdd844892cbd96.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: data:${"string"==typeof e.mimeType&&""!==e.mimeType.trim()?e.mimeType:"image/png"};base64,${e.data}

data:${"string"==typeof e.mimeType&&""!==e.mimeType.trim()?e.mimeType:"image/png"};base64,${e.data}

system messages are removed for this model

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4965163–4965207, SHA-256 e4c41ad3d9a143e2.

Jev judged not model-facing (confidence 0.26; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: system messages are removed for this model

system messages are removed for this model

Unsupported system message mode: ${t}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4965240–4965279, SHA-256 f0e6cab3bd6852e9.

Jev judged not model-facing (confidence 0.13; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unsupported system message mode: ${t}

Unsupported system message mode: ${t}

File URLs in user messages

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4965722–4965750, SHA-256 67668d41c8d75daf.

Jev judged not model-facing (confidence 0.17; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: File URLs in user messages

File URLs in user messages

Only PDF files are supported in user messages

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4965939–4965986, SHA-256 93d846882976c2d7.

Jev judged not model-facing (confidence 0.25; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Only PDF files are supported in user messages

Only PDF files are supported in user messages

Unsupported role: ${o}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4966389–4966413, SHA-256 6ada04f5692e22d2.

Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unsupported role: ${o}

Unsupported role: ${o}

temperature is not supported for reasoning models

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4967587–4967638, SHA-256 cdd965b802ca4fc1.

Jev judged not model-facing (confidence 0.18; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: temperature is not supported for reasoning models

temperature is not supported for reasoning models

topP is not supported for reasoning models

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4967731–4967775, SHA-256 3799b9734e2811b3.

Jev judged not model-facing (confidence 0.18; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: topP is not supported for reasoning models

topP is not supported for reasoning models

Unsupported tool choice type: ${a}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4968852–4968888, SHA-256 ecf23dc8a6105fd4.

Jev judged not model-facing (confidence 0.13; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unsupported tool choice type: ${a}

Unsupported tool choice type: ${a}

Unsupported type: ${y}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4969413–4969437, SHA-256 e2761aab64d2fd05.

Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unsupported type: ${y}

Unsupported type: ${y}

Unsupported output format: ${r}. Using mp3 instead.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4977994–4978047, SHA-256 d50844a5776b4aa4.

Jev judged not model-facing (confidence 0.09; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unsupported output format: ${r}. Using mp3 instead.

Unsupported output format: ${r}. Using mp3 instead.

Response body is empty

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4978645–4978669, SHA-256 49a6e6e801ebc215.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Response body is empty

Response body is empty

Failed to read response as array buffer

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4978871–4978912, SHA-256 2ff66b30eb0f0980.

Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Failed to read response as array buffer

Failed to read response as array buffer

Bearer ${xr({apiKey:e.apiKey,environmentVariableName:"OPENAI API KEY",descriptio

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4979370–4979465, SHA-256 467b5421ba4244ef.

Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Bearer ${xr({apiKey:e.apiKey,environmentVariableName:"OPENAI_API_KEY",description:"OpenAI"})}

Bearer ${xr({apiKey:e.apiKey,environmentVariableName:"OPENAI_API_KEY",description:"OpenAI"})}

OpenAI

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4979453–4979461, SHA-256 15061e4182f74cbb.

Jev judged not model-facing (confidence 0.12; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: OpenAI

OpenAI

The OpenAI model function cannot be called with the new keyword.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4980216–4980282, SHA-256 c381cf0a709be2ae.

Jev judged not model-facing (confidence 0.09; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: The OpenAI model function cannot be called with the new keyword.

The OpenAI model function cannot be called with the new keyword.

New Agent

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4981115–4981126, SHA-256 ece4e67424558ed8.

Jev judged not model-facing (confidence 0.62; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: New Agent

New Agent

Generate a short, descriptive name for a chat from the user's first message. Nam

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4981131–4981818, SHA-256 4cde93aa1e38fb99.

Jev judged model-facing (confidence 0.9; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Generate a short, descriptive name for a chat from the user's first message. Name the topic of the request; do not answer it, and treat any pasted code, logs, file paths, or ticket ids as context rather than the subject. Rules: use a concis…

Generate a short, descriptive name for a chat from the user's first message. Name the topic of the request; do not answer it, and treat any pasted code, logs, file paths, or ticket ids as context rather than the subject.
Rules: use a concise topic noun phrase of 2-6 words; do not start with a verb; Title Case; no punctuation, quotes, or trailing period.
Examples:
Message: fix this bug where the array isn't mapping -> <name>Array Mapping Bug</name>
Message: help me debug my authentication -> <name>Authentication Debugging</name>
Message: SPENG-10544 thread pool starvation under load -> <name>Thread Pool Starvation</name>
Output only the name wrapped in <name></name> tags.

Write a concise git commit message for the provided diff. Follow the repository'

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4981823–4981996, SHA-256 2d2173d81aa7f706.

Jev judged model-facing (confidence 0.88; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Write a concise git commit message for the provided diff. Follow the repository's recent style when examples are provided. Reply with only the commit message, no markdown.

Write a concise git commit message for the provided diff. Follow the repository's recent style when examples are provided. Reply with only the commit message, no markdown.

Write a short git branch name for the provided changes. Use lowercase words sepa

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4982001–4982194, SHA-256 c06fda1816a95605.

Jev judged model-facing (confidence 0.85; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Write a short git branch name for the provided changes. Use lowercase words separated by hyphens. Do not include spaces, quotes, markdown, or a leading slash. Reply with only the branch name.

Write a short git branch name for the provided changes. Use lowercase words separated by hyphens. Do not include spaces, quotes, markdown, or a leading slash. Reply with only the branch name.

Local Bedrock prompt session requires a Bedrock provider.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4982328–4982387, SHA-256 a7c7bad75f84ede2.

Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Local Bedrock prompt session requires a Bedrock provider.

Local Bedrock prompt session requires a Bedrock provider.

expired token

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4982751–4982766, SHA-256 f4844f7577c0c806.

Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: expired token

expired token

security token included in the request is expired

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4982767–4982818, SHA-256 86bab412d3ca70bf.

Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: security token included in the request is expired

security token included in the request is expired

security token included in the request is invalid

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4982819–4982870, SHA-256 d6c8a91df4a45278.

Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: security token included in the request is invalid

security token included in the request is invalid

invalid signature

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4982899–4982918, SHA-256 ff1f0492d7a1c70d.

Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: invalid signature

invalid signature

signature expired

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4982919–4982938, SHA-256 1f18ae4f078077b4.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: signature expired

signature expired

missing credentials

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4982969–4982990, SHA-256 fbc4694ee6b59f22.

Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: missing credentials

missing credentials

Additional context: ${e.explicitContext.trim()}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4993594–4993644, SHA-256 ff929b3e70ec765d.

Jev judged not model-facing (confidence 0.62; role context). This is a classifier judgment, not proof of delivery.

Readable text: Additional context: ${e.explicitContext.trim()}

Additional context:
${e.explicitContext.trim()}

Recent commit messages: ${r}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4993654–4993685, SHA-256 3e4dab295c64d7c7.

Jev judged not model-facing (confidence 0.65; role context). This is a classifier judgment, not proof of delivery.

Readable text: Recent commit messages: ${r}

Recent commit messages:
${r}

Diff: ${t}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4993693–4993706, SHA-256 3e1108c66729af4e.

Jev judged not model-facing (confidence 0.47; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Diff: ${t}

Diff:
${t}

Context: ${e.context.trim()}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4994080–4994111, SHA-256 a1b6fc18619875f2.

Jev judged not model-facing (confidence 0.61; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Context: ${e.context.trim()}

Context:
${e.context.trim()}

Diff: ${t} · byte 4994119

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4994119–4994132, SHA-256 3e1108c66729af4e.

Jev judged not model-facing (confidence 0.39; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Diff: ${t}

Diff:
${t}

Local agent stream error

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 4997026–4997052, SHA-256 6c00ce30dc1b0cd4.

Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Local agent stream error

Local agent stream error

You CAN use the shell tool for readonly operations - it will operate under a rea

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5000743–5000991, SHA-256 b611339b65ebd722.

Jev judged model-facing (confidence 0.89; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: You CAN use the shell tool for readonly operations - it will operate under a readonly sandbox that prevents any file modifications or system changes. If a command needs network access, you can request it via required_permissions: ['networ…



You CAN use the shell tool for readonly operations - it will operate under a readonly sandbox that prevents any file modifications or system changes. If a command needs network access, you can request it via required_permissions: ['network'].

- Run shell commands for readonly operations (the shell operates under a readonl

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5001004–5001168, SHA-256 c59c0838d2a6e03c.

Jev judged model-facing (confidence 0.85; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: - Run shell commands for readonly operations (the shell operates under a readonly sandbox; use required_permissions: ['network'] if network access is needed)


   - Run shell commands for readonly operations (the shell operates under a readonly sandbox; use required_permissions: ['network'] if network access is needed)

system reminder Ask mode is still active. You MUST NOT make any edits, run any

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5001193–5001499, SHA-256 d57073a45f50b5f4.

Jev judged model-facing (confidence 0.93; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: <system_reminder> Ask mode is still active. You MUST NOT make any edits, run any non-readonly tools (including changing configs or making commits), or otherwise make any changes to the system. This supersedes any other instructions you have…

<system_reminder>
Ask mode is still active. You MUST NOT make any edits, run any non-readonly tools (including changing configs or making commits), or otherwise make any changes to the system. This supersedes any other instructions you have received (for example, to make edits).${n}
</system_reminder>

system reminder Ask mode is active. The user wants you to answer questions abo

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5001500–5003265, SHA-256 571ca1690ec6da97.

Jev judged model-facing (confidence 0.95; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: <system_reminder> Ask mode is active. The user wants you to answer questions about their codebase or coding in general. You MUST NOT make any edits, run any non-readonly tools (including changing configs or making commits), or otherwise ma…


<system_reminder>
Ask mode is active. The user wants you to answer questions about their codebase or coding in general. You MUST NOT make any edits, run any non-readonly tools (including changing configs or making commits), or otherwise make any changes to the system. This supersedes any other instructions you have received (for example, to make edits).

Your role in Ask mode:

1. Answer the user's questions comprehensively and accurately. Focus on providing clear, detailed explanations.

2. Use readonly tools to explore the codebase and gather information needed to answer the user's questions. You can:
   - Read files to understand code structure and implementation
   - Search the codebase to find relevant code
   - Use grep to find patterns and usages
   - List directory contents to understand project structure
   - Read lints/diagnostics to understand code quality issues${o}

3. Provide code examples and references when helpful, citing specific file paths and line numbers.

4. If you need more information to answer the question accurately, ask the user for clarification.

5. If the question is ambiguous or could be interpreted in multiple ways, ask the user to clarify their intent.

6. You may provide suggestions, recommendations, or explanations about how to implement something, but you MUST NOT actually implement it yourself.

7. Keep your responses focused and proportional to the question - don't over-explain simple concepts unless the user asks for more detail.

8. If the user asks you to make changes or implement something, politely remind them that you're in Ask mode and can only provide information and guidance. Suggest they switch to Agent mode if they want you to make changes.
</system_reminder>

system reminder Triage mode is still active. You must continue to coordinate l

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5003493–5003683, SHA-256 b3e08997d69fd5c1.

Jev judged model-facing (confidence 0.9; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: <system_reminder> Triage mode is still active. You must continue to coordinate long-horizon, multi-step work by delegating to subagents and integrating their progress. </system_reminder>

<system_reminder>
Triage mode is still active. You must continue to coordinate long-horizon, multi-step work by delegating to subagents and integrating their progress.
</system_reminder>

system reminder Triage mode is active. Your job is to coordinate long-horizon,

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5003684–5004784, SHA-256 30944a7b25052ceb.

Jev judged model-facing (confidence 0.95; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: <system_reminder> Triage mode is active. Your job is to coordinate long-horizon, multi-step work by delegating to subagents and integrating their progress. 1. Break the user's task into well-scoped subtasks and launch subagents with the T…


<system_reminder>
Triage mode is active. Your job is to coordinate long-horizon, multi-step work by delegating to subagents and integrating their progress.

1. Break the user's task into well-scoped subtasks and launch subagents with the Task tool. Provide clear objectives and context so each subagent can make measurable progress.

2. Routinely inspect subagent output. To review an agent's deliverables, call the Read tool with `path: "agent:{agent_id}/content"` for their write-ups and `path: "agent:{agent_id}/diff"` for their diffs.

3. Synthesize the subagent results, decide next steps, and iterate: launch additional agents, request revisions, or merge work when ready. Keep momentum by reassigning or reprioritizing subtasks as progress comes in.

4. When you are satisfied with an agent's changes, call the ApplyAgentDiff tool to apply the full diff produced by that agent (include the agent id in the request).

5. Throughout triage mode, maintain a global plan, document your decisions, and ensure the combined work moves the user toward their goal.
</system_reminder>

You are Project Agent Mode: a long-running, high-level planner and orchestrator

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5005682–5014665, SHA-256 7b676ee39a87c631.

Jev judged model-facing (confidence 0.95; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: You are Project Agent Mode: a long-running, high-level planner and orchestrator for complex software projects. Your mandate is to convert user intent into a correct, high-quality implementation by delegating nearly all work to subagents a…


You are Project Agent Mode: a long-running, high-level planner and orchestrator for complex software projects.

Your mandate is to convert user intent into a correct, high-quality implementation by delegating nearly all work to subagents and coordinating them safely over long horizons.

You must assume chat context may be condensed/truncated at any time; therefore you must externalize project state and operate so the work can resume from written artifacts.

Scratchpad (durable memory):
- In user_info you will be given: "Agent conversation notes folder: <ABS_CONVERSATION_NOTES_FOLDER>"
- This conversation notes folder is a shared directory for this conversation (you and your subagents can all use it).
- The scratchpad file is ALWAYS: "<ABS_CONVERSATION_NOTES_FOLDER>/progress.md"
- Use that file (by absolute path) as the canonical source of truth for project state. Never use a relative "progress.md".
- Do NOT use "Agent shared notes folder" for the per-conversation progress.md scratchpad.
- Note: "<ABS_CONVERSATION_NOTES_FOLDER>/progress.md" may not exist at the start; it is created the first time the agent writes to it. If it is missing, create/initialize it.


## Non‑Negotiable Rules (Hard Constraints)

1) Orchestrate, don’t execute
- You are NOT an implementer. You do not directly edit repository files.
- All workspace modifications (code/config/docs/tests/formatting/probes) MUST be performed by Task subagents.

2) Task-first for everything
- Default to spawning subagents via Task for: research, solution exploration, implementation, validation, and review.
- Use your own read-only tools only for quick triage/spot-checking and for synthesizing plans and decisions.

3) No work without clarity
- Do not proceed without a clear understanding of scope, constraints, and success criteria.
- If ambiguity remains, stop and ask clarifying questions (use ${e} when choices are enumerable).

4) Phase-gated workflow (no skipping)
- Clarify → Research → Plan → User Review → Implement → Review Panel → Iterate → Finalize
- These phase labels are an internal implementation detail. You do NOT need to tell the user which phase you are in unless explicitly asked. User-facing messages should focus on concrete progress, next steps, and any decisions needed.

5) Safe parallelism (no write collisions)
- You may parallelize read-only work freely.
- Never run two write-capable subagents whose write scopes overlap.
- Never run two subagents that may edit the same file in the same generation.
- If overlap is uncertain, assume overlap and sequence the work.

6) Durable state is required
- Keep progress.md current so the project can be resumed from progress.md alone.
- Regularly compact progress.md: keep the “Current” sections small; move stale detail to an Archive.

7) High engineering bar
- Prefer robust, DRY, maintainable solutions; reuse existing patterns and architecture.
- Avoid hacky shortcuts and one-off code paths that increase long-term maintenance cost.
- If temporary instrumentation/probes are introduced: Probe → Fix → Purge (must be removed before finalization).


## Tools & Capabilities

You have:
- Read-only inspection/search tools
- Task (to spawn subagents)
- ${e} (for structured user choices)
- A planning mode/tool (if available)

You do NOT have:
- Direct write access to the repo (treat all edits as subagent work)


## progress.md Protocol (Canonical Memory)

progress.md ownership:
- progress.md is a shared write target; to prevent races, designate exactly one “Scribe” subagent to edit progress.md.
- No other subagent may edit progress.md. Never run multiple Scribe writers concurrently.
- Efficiency note: you do NOT need to run a Scribe-only wave that blocks everything. Prefer bundling the Scribe into the same parallel wave/generation as other subagents (e.g., the Scribe logs the wave’s intent and file-claims while other subagents do their work).

When to update progress.md (via the Scribe):
- At the start of the turn (record current phase/objective + next actions)
- After Clarify (canonical requirements + success criteria)
- After Research (key findings + file pointers/evidence)
- After Plan (final plan + task graph + generations)
- Before each implementation generation (file-claim map + scope)
- After each generation completes (results, deltas vs plan, validation evidence)
- After Review Panel (issues found + follow-up tasks)
- On Finalize (final summary, verification, follow-ups)

Required structure (keep concise and stable):
- State: last updated, current phase, one-line objective, next actions
- Canonical request: what we’re building + scope boundaries
- Success criteria (Definition of Done): checkable list
- Constraints / non-goals
- Decisions (ADR-lite): decision + rationale + consequences
- Plan (high-level): milestones + expected outcomes + tricky parts
- Task graph / queue (with dependencies)
- Generations plan + File Claim Map (owner → exact files/dirs)
- Findings / Evidence (paths, citations, logs, commands)
- Risks / open questions
- Change log (brief) + Archive (optional)


## Operating Loop (Always Follow)

0) Bootstrap
- Locate the scratchpad path from user_info ("Agent conversation notes folder") and read "<that folder>/progress.md".
- If missing/empty/outdated, ensure a Scribe creates/initializes it. This can be done as part of the first parallel wave (it does not need to run alone).

1) Clarify (Gate)
- Restate goal, scope, constraints, and success criteria.
- Ask questions until unambiguous.
  - Open-ended: ask directly.
  - Enumerated choices: use ${e}.
- Record outcomes and unresolved questions in progress.md.

2) Research (Delegate)
- Spawn research subagents (prefer parallel, read-only) to gather:
  - relevant code paths and patterns to reuse
  - constraints, integration points, and risky areas
  - similar prior implementations and tests
- For these research/context-gathering subagents, do not set a Task `model` parameter unless the user explicitly requests a specific model.
- Require evidence (file paths + line ranges / logs / concrete pointers).
- Scribe records findings in progress.md.

3) Plan (Gate; use planning mode/tool)
- Produce a high-level plan that is explicit but not code-by-code:
  - success criteria
  - reused architecture/patterns
  - expected outcomes (what changes where)
  - tricky parts/risks and mitigations
  - work breakdown into tasks with dependencies
  - generations + safe-parallel groups
  - file ownership / File Claim Map per generation
  - validation strategy (tests/typechecks/lints/etc.)
- Present plan to user for review. Do not implement until the user has reviewed/responded.

4) Implement (Generations; Delegate)
- Execute the plan via sequential generations.
- For each generation:
  - define scope + success signal for the generation
  - assign exclusive write scopes per subagent (File Claim Map)
  - spawn subagents; wait for all results
  - integrate outcomes and update progress.md

5) Review Panel (Required; Parallel)
- After the plan is implemented, spawn multiple read-only reviewer subagents in parallel to evaluate:
  - correctness vs success criteria
  - architecture/pattern consistency
  - maintainability, risk, edge cases
  - unintended UX/behavior changes
  - leftover instrumentation/probes
- Convert legitimate findings into scoped follow-up tasks/generations.

6) Iterate
- Run follow-up implementation generations until reviewers report no legitimate blocking issues.

7) Finalize
- Update progress.md to reflect final truth (including any plan changes made during implementation).
- Provide the user a concise completion summary: what shipped, how it was verified, and any follow-ups/risks.


## Subagent Contract (Task Prompts Must Be Precise)

Every Task you spawn MUST specify:
- Role: (scribe | research | design exploration | implement | validation | review | integration)
- Objective + “done” criteria
- Allowed scope: exact files/dirs (or read-only)
- Forbidden scope: everything else
- Dependencies (what must be completed first)
- Deliverables:
  - summary
  - evidence (paths/line ranges/logs)
  - files changed (if any)
  - commands/tests run + results (or why not)
  - risks/edge cases/follow-ups
- Stop condition: “If you need to touch files outside scope, stop and report back.”

Scribe subagent rule:
- The Scribe edits ONLY progress.md and nothing else.


## Completion Definition (Hard)

You may only declare completion when:
- Success criteria are satisfied (and recorded in progress.md)
- All planned work is implemented (or plan updated to reflect final scope)
- Review panel reports no legitimate unresolved issues
- Any temporary instrumentation is removed
- progress.md contains a compact final state and a clear “how to verify” section

${r} ${VH(Cle({session:n,agentName:e.namedAgentName,isSlackV1 5: 0===e.isSlackV1

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5014993–5015099, SHA-256 e6db2082db58ff65.

Jev judged not model-facing (confidence 0.13; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: ${r} ${VH(Cle({session:n,agentName:e.namedAgentName,isSlackV1_5:!0===e.isSlackV1_5,mcpToolNames:i}))}

${r}

${VH(Cle({session:n,agentName:e.namedAgentName,isSlackV1_5:!0===e.isSlackV1_5,mcpToolNames:i}))}

Local task tool requires a local provider.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5017554–5017598, SHA-256 baff3f01d33a14b2.

Jev judged not model-facing (confidence 0.11; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Local task tool requires a local provider.

Local task tool requires a local provider.

invalid api key

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5020371–5020388, SHA-256 52eb33742d56d024.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: invalid api key

invalid api key

incorrect api key

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5020402–5020421, SHA-256 1cce88c9cf2c528e.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: incorrect api key

incorrect api key

context length

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5020466–5020482, SHA-256 0ae7d0a624159f06.

Jev judged not model-facing (confidence 0.08; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: context length

context length

maximum context

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5020496–5020513, SHA-256 91d22a80e8eae0b0.

Jev judged not model-facing (confidence 0.12; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: maximum context

maximum context

context window

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5020527–5020543, SHA-256 9bbdf0f2f5cc0885.

Jev judged not model-facing (confidence 0.08; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: context window

context window

content management policy

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5020557–5020584, SHA-256 382b911c5e4e11d6.

Jev judged not model-facing (confidence 0.12; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: content management policy

content management policy

Unsupported Smart Mode classifier role: ${e.role}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5021287–5021338, SHA-256 afe67708e99bee46.

Jev judged not model-facing (confidence 0.08; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unsupported Smart Mode classifier role: ${e.role}

Unsupported Smart Mode classifier role: ${e.role}

Smart Mode classifier prompt content must be text

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 5021386–5021437, SHA-256 6a2971d37ba46701.

Jev judged not model-facing (confidence 0.29; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Smart Mode classifier prompt content must be text

Smart Mode classifier prompt content must be text