Evidence and archive

main.js · part 58

Full reference
Topics
Status
Showing all 60

60 text occurrences from desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, part 58. Every entry preserves the shipped literal and its saved verdict or selection reason.

File contents and all parts · All files

Shipped text

Interactive MCP authentication is only available in the Cursor desktop IDE.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2879525–2879602, SHA-256 138772d0991dc56a.

Jev judged not model-facing (confidence 0.07; role human). This is a classifier judgment, not proof of delivery.

Readable text: Interactive MCP authentication is only available in the Cursor desktop IDE.

Interactive MCP authentication is only available in the Cursor desktop IDE.

Interactive MCP authentication is only available in the Cursor desktop IDE. · byte 2879647

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2879647–2879724, SHA-256 138772d0991dc56a.

Jev judged not model-facing (confidence 0.14; role human). This is a classifier judgment, not proof of delivery.

Readable text: Interactive MCP authentication is only available in the Cursor desktop IDE.

Interactive MCP authentication is only available in the Cursor desktop IDE.

Interactive MCP authentication is not available in this agent environment. Ask t

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2879767–2879926, SHA-256 038343c8954ef59a.

Jev judged not model-facing (confidence 0.23; role human). This is a classifier judgment, not proof of delivery.

Readable text: Interactive MCP authentication is not available in this agent environment. Ask the user to authenticate the MCP server in the Cursor desktop IDE, then retry.

Interactive MCP authentication is not available in this agent environment. Ask the user to authenticate the MCP server in the Cursor desktop IDE, then retry.

"${i.server}" is a built-in Cursor server that does not use interactive authenti

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2879988–2880077, SHA-256 e129246990bdcd85.

Jev judged not model-facing (confidence 0.18; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: "${i.server}" is a built-in Cursor server that does not use interactive authentication.

"${i.server}" is a built-in Cursor server that does not use interactive authentication.

${e} If its tools are failing, the failure is not an authentication problem; rea

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2880179–2880303, SHA-256 cafa5e2217cd49ba.

Jev judged not model-facing (confidence 0.68; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: ${e} If its tools are failing, the failure is not an authentication problem; read the tool error and address that instead.

${e} If its tools are failing, the failure is not an authentication problem; read the tool error and address that instead.

Tool "${i.toolName}" on "${i.server}" is not available in this agent context.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2880376–2880455, SHA-256 5135a052eae7282c.

Jev judged not model-facing (confidence 0.34; role human). This is a classifier judgment, not proof of delivery.

Readable text: Tool "${i.toolName}" on "${i.server}" is not available in this agent context.

Tool "${i.toolName}" on "${i.server}" is not available in this agent context.

${e} It speaks to the end user on the parent agent's behalf and is reserved for

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2880623–2880793, SHA-256 87507cea5afe8716.

Jev judged not model-facing (confidence 0.61; role human). This is a classifier judgment, not proof of delivery.

Readable text: ${e} It speaks to the end user on the parent agent's behalf and is reserved for the parent agent. Include anything you want communicated in your final response instead.

${e} It speaks to the end user on the parent agent's behalf and is reserved for the parent agent. Include anything you want communicated in your final response instead.

Built-in tool dispatch via CallDynamicTool

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2880874–2880918, SHA-256 0e7ff5a0135bdbe7.

Jev judged not model-facing (confidence 0.26; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Built-in tool dispatch via CallDynamicTool

Built-in tool dispatch via CallDynamicTool

No built-in tools are available ${N?"in namespace":"on server"} "${i.server}".

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2881011–2881091, SHA-256 d28f4d52d037e04d.

Jev judged not model-facing (confidence 0.16; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: No built-in tools are available ${N?"in namespace":"on server"} "${i.server}".

No built-in tools are available ${N?"in namespace":"on server"} "${i.server}".

in namespace

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2881048–2881062, SHA-256 b039cb5f705ff4ee.

Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: in namespace

in namespace

on server

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2881063–2881074, SHA-256 396b7f54527ab07b.

Jev judged not model-facing (confidence 0.09; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: on server

on server

Built-in tool "${i.toolName}" not found ${N?"in namespace":"on server"} "${i.ser

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2881092–2881250, SHA-256 30245d6207be79dd.

Jev judged not model-facing (confidence 0.35; role human). This is a classifier judgment, not proof of delivery.

Readable text: Built-in tool "${i.toolName}" not found ${N?"in namespace":"on server"} "${i.server}". Available tools: ${e.join(", ")}. Use ${B} to discover their schemas.

Built-in tool "${i.toolName}" not found ${N?"in namespace":"on server"} "${i.server}". Available tools: ${e.join(", ")}. Use ${B} to discover their schemas.

in namespace · byte 2881137

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2881137–2881151, SHA-256 b039cb5f705ff4ee.

Jev judged not model-facing (confidence 0.13; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: in namespace

in namespace

on server · byte 2881152

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2881152–2881163, SHA-256 396b7f54527ab07b.

Jev judged not model-facing (confidence 0.12; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: on server

on server

Dynamic tool execution failed

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2881853–2881884, SHA-256 b523e3890f242912.

Jev judged not model-facing (confidence 0.08; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Dynamic tool execution failed

Dynamic tool execution failed

Use ${B} to discover available ${N?"namespaces":"servers"}.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2882814–2882875, SHA-256 8131a473dfc021e6.

Jev judged not model-facing (confidence 0.43; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Use ${B} to discover available ${N?"namespaces":"servers"}.

Use ${B} to discover available ${N?"namespaces":"servers"}.

Tool ${t} was not found. Use ${B} to discover available ${N?"namespaces":"server

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2882933–2883035, SHA-256 d9c5798d146e7e51.

Jev judged not model-facing (confidence 0.26; role human). This is a classifier judgment, not proof of delivery.

Readable text: Tool ${t} was not found. Use ${B} to discover available ${N?"namespaces":"servers"} and their tools.

Tool ${t} was not found. Use ${B} to discover available ${N?"namespaces":"servers"} and their tools.

MCP tool call

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2883450–2883465, SHA-256 807edfd4cb3a500c.

Jev judged not model-facing (confidence 0.26; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: MCP tool call

MCP tool call

You called this tool without first discovering its schema via ${B}. For future c

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2883584–2883778, SHA-256 53bd3d70bbca6308.

Jev judged not model-facing (confidence 0.66; role human). This is a classifier judgment, not proof of delivery.

Readable text: You called this tool without first discovering its schema via ${B}. For future calls, call ${B} with {"${N?"namespace":"server"}":"${i.server}","toolName":"${i.toolName}"} before calling ${r}.

You called this tool without first discovering its schema via ${B}. For future calls, call ${B} with {"${N?"namespace":"server"}":"${i.server}","toolName":"${i.toolName}"} before calling ${r}.

You called this MCP tool without first reading its schema/descriptor file. For f

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2883779–2883992, SHA-256 a00315b059ce3022.

Jev judged not model-facing (confidence 0.64; role human). This is a classifier judgment, not proof of delivery.

Readable text: You called this MCP tool without first reading its schema/descriptor file. For future calls to this tool, please read the tool definition at "${Z.unreadPath}" first to ensure you're using the correct parameters.

You called this MCP tool without first reading its schema/descriptor file. For future calls to this tool, please read the tool definition at "${Z.unreadPath}" first to ensure you're using the correct parameters.

The ${N?"namespace":"MCP server"} rejected these arguments as invalid. Before re

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2884061–2884294, SHA-256 3761a7a684acba29.

Jev judged not model-facing (confidence 0.5; role human). This is a classifier judgment, not proof of delivery.

Readable text: The ${N?"namespace":"MCP server"} rejected these arguments as invalid. Before retrying, call ${B} with {"${N?"namespace":"server"}":"${i.server}","toolName":"${i.toolName}"} and rebuild the arguments from the returned input schema.

The ${N?"namespace":"MCP server"} rejected these arguments as invalid. Before retrying, call ${B} with {"${N?"namespace":"server"}":"${i.server}","toolName":"${i.toolName}"} and rebuild the arguments from the returned input schema.

MCP server

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2884082–2884094, SHA-256 b57d34d8baa1e848.

Jev judged not model-facing (confidence 0.35; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: MCP server

MCP server

The MCP server rejected these arguments as invalid. Before retrying, read the to

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2884307–2884457, SHA-256 86dcd2d8f532ae37.

Jev judged not model-facing (confidence 0.21; role human). This is a classifier judgment, not proof of delivery.

Readable text: The MCP server rejected these arguments as invalid. Before retrying, read the tool definition at "${ee}" and rebuild the arguments from that schema.

The MCP server rejected these arguments as invalid. Before retrying, read the tool definition at "${ee}" and rebuild the arguments from that schema.

The MCP server rejected these arguments as invalid. Before retrying, read the MC

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2884458–2884662, SHA-256 69951639c5401f19.

Jev judged not model-facing (confidence 0.21; role human). This is a classifier judgment, not proof of delivery.

Readable text: The MCP server rejected these arguments as invalid. Before retrying, read the MCP server descriptor files for "${i.server}" and the tool definition for "${i.toolName}" so the arguments match the schema.

The MCP server rejected these arguments as invalid. Before retrying, read the MCP server descriptor files for "${i.server}" and the tool definition for "${i.toolName}" so the arguments match the schema.

Missing serverIdentifier or toolCallId

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2884858–2884898, SHA-256 ae566d6a85bc2c2f.

Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Missing serverIdentifier or toolCallId

Missing serverIdentifier or toolCallId

Unexpected response for MCP auth query: ${n.result.case}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2885621–2885679, SHA-256 b602acacc8863763.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unexpected response for MCP auth query: ${n.result.case}

Unexpected response for MCP auth query: ${n.result.case}

User rejected MCP authentication

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2885776–2885810, SHA-256 105a680626584da6.

Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: User rejected MCP authentication

User rejected MCP authentication

Successfully authenticated MCP server: ${e}. The server's tools should now be av

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2885964–2886054, SHA-256 58b15eb179f5406c.

Jev judged not model-facing (confidence 0.09; role human). This is a classifier judgment, not proof of delivery.

Readable text: Successfully authenticated MCP server: ${e}. The server's tools should now be available.

Successfully authenticated MCP server: ${e}. The server's tools should now be available.

this environment's tool executor does not support them

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2887352–2887408, SHA-256 d6630a09ecf682ca.

Jev judged not model-facing (confidence 0.18; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: this environment's tool executor does not support them

this environment's tool executor does not support them

"${Dq.Eyz}" arguments can't be used here: ${i}. Read the file and pass its conte

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2887443–2887537, SHA-256 b9c88b5c52d72f17.

Jev judged not model-facing (confidence 0.39; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: "${Dq.Eyz}" arguments can't be used here: ${i}. Read the file and pass its contents instead.

"${Dq.Eyz}" arguments can't be used here: ${i}. Read the file and pass its contents instead.

MCP allowlist precheck failed

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2889124–2889155, SHA-256 63bdfd258cf95c2b.

Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: MCP allowlist precheck failed

MCP allowlist precheck failed

Smart Mode preflight rejected the MCP call

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2890662–2890706, SHA-256 f963c0db7682cf78.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Smart Mode preflight rejected the MCP call

Smart Mode preflight rejected the MCP call

MCP call released early: a user steer was admitted

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2891504–2891556, SHA-256 5be1e32dc52db400.

Jev judged not model-facing (confidence 0.09; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: MCP call released early: a user steer was admitted

MCP call released early: a user steer was admitted

Failed to cancel Smart Mode MCP approval request after steer release

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2893174–2893244, SHA-256 b0abe3a43dc288a2.

Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Failed to cancel Smart Mode MCP approval request after steer release

Failed to cancel Smart Mode MCP approval request after steer release

Failed to cancel Smart Mode MCP approval request

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2893638–2893688, SHA-256 3148aecd1724dbec.

Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Failed to cancel Smart Mode MCP approval request

Failed to cancel Smart Mode MCP approval request

Error in call mcp tool

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2894093–2894117, SHA-256 7cc98e34e7295e06.

Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Error in call_mcp_tool

Error in call_mcp_tool

Tool execution error

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2896415–2896437, SHA-256 138500c194a2ca48.

Jev judged not model-facing (confidence 0.05; role human). This is a classifier judgment, not proof of delivery.

Readable text: Tool execution error

Tool execution error

${(e/1024).toFixed(1)} KB

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2896863–2896890, SHA-256 e8a134383e8b8503.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: ${(e/1024).toFixed(1)} KB

${(e/1024).toFixed(1)} KB

${e} bytes

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2896891–2896903, SHA-256 52f5f3476ab39fad.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: ${e} bytes

${e} bytes

Large output has been written to: ${t.outputLocation.filePath} (${n}, ${r} lines

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2896928–2897011, SHA-256 fe420267eca6e6eb.

Jev judged not model-facing (confidence 0.14; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Large output has been written to: ${t.outputLocation.filePath} (${n}, ${r} lines)

Large output has been written to: ${t.outputLocation.filePath} (${n}, ${r} lines)

Unhandled content case: ${e.content.case}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2897202–2897245, SHA-256 3bbfd76cd70d755f.

Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unhandled content case: ${e.content.case}

Unhandled content case: ${e.content.case}

Tool rejected: ${t.value.reason}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2897346–2897380, SHA-256 aaeba2c9e5765492.

Jev judged not model-facing (confidence 0.06; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Tool rejected: ${t.value.reason}

Tool rejected: ${t.value.reason}

Tool rejected

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2897381–2897396, SHA-256 e462da4685b82c87.

Jev judged not model-facing (confidence 0.06; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Tool rejected

Tool rejected

Error: ${t.value.error}. ${t.value.readToolDefReminder}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2897451–2897508, SHA-256 7310c8273bb571e6.

Jev judged not model-facing (confidence 0.07; role human). This is a classifier judgment, not proof of delivery.

Readable text: Error: ${t.value.error}. ${t.value.readToolDefReminder}

Error: ${t.value.error}. ${t.value.readToolDefReminder}

Error: ${t.value.error}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2897509–2897534, SHA-256 b91efb5b25408398.

Jev judged not model-facing (confidence 0.05; role human). This is a classifier judgment, not proof of delivery.

Readable text: Error: ${t.value.error}

Error: ${t.value.error}

Permission denied: ${t.value.error}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2897628–2897665, SHA-256 9a22fdee09fe6970.

Jev judged not model-facing (confidence 0.04; role human). This is a classifier judgment, not proof of delivery.

Readable text: Permission denied: ${t.value.error}

Permission denied: ${t.value.error}

Unknown error

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2897689–2897704, SHA-256 70e280a3cf0ea5f5.

Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unknown error

Unknown error

Unhandled result case: ${t}

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2897730–2897759, SHA-256 45ab3ee1fe83d8d6.

Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Unhandled result case: ${t}

Unhandled result case: ${t}

Perform browser-based testing and web automation. This subagent can navigate web

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2898619–2899403, SHA-256 2133c4c24e3fd8a4.

Jev judged model-facing (confidence 0.9; role tool). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “Perform browser-based testing and web automation. This subagent can navigate web”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

Perform browser-based testing and web automation. This subagent can navigate web pages, interact with elements, fill forms, and take screenshots. Use this for testing web applications, verifying UI changes, or any browser-based tasks. Use this browser subagent when you need to either: (1) parallelize browser tasks alongside other work, or (2) execute a longer sequence of browser actions that benefit from dedicated context. For simple, single browser actions, you may use the browser tools directly. This subagent requires agent mode because browser MCP access is unavailable in readonly mode. This subagent_type is stateful; if a browserUse subagent already exists, the previously created subagent will be resumed if you reuse the Task tool with subagent_type set to browserUse.

browser-use subagent requires subagentInstanceId; ensure it is created via the T

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2899506–2899596, SHA-256 8f53c9fe810cb033.

Jev judged not model-facing (confidence 0.55; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: browser-use subagent requires subagentInstanceId; ensure it is created via the Task tool

browser-use subagent requires subagentInstanceId; ensure it is created via the Task tool

Enter BROWSER USE mode. Use the provided cursor-ide-browser tools to interact wi

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2899832–2900177, SHA-256 42d51553d91ecc69.

Jev judged model-facing (confidence 0.9; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Enter BROWSER USE mode. Use the provided cursor-ide-browser tools to interact with web pages. Important: Every browser tool call automatically returns a screenshot of the current page state. You do NOT need to use the browser_take_screensh…

Enter BROWSER USE mode. Use the provided cursor-ide-browser tools to interact with web pages.

Important: Every browser tool call automatically returns a screenshot of the current page state. You do NOT need to use the browser_take_screenshot tool explicitly - it would be redundant since you already receive screenshots after each action.

When planning tasks, provide concrete implementation steps without time estimate

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2901206–2901481, SHA-256 ac60cb00b5164760.

Jev judged not model-facing (confidence 0.68; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: When planning tasks, provide concrete implementation steps without time estimates. Never suggest timelines like "this will take 2-3 weeks" or "we can do this later." Focus on what needs to be done, not when. Break work into actionable steps…

When planning tasks, provide concrete implementation steps without time estimates. Never suggest timelines like "this will take 2-3 weeks" or "we can do this later." Focus on what needs to be done, not when. Break work into actionable steps and let users decide scheduling.

Prioritize technical accuracy and truthfulness over validating the user's belief

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2901590–2902350, SHA-256 7212d1de42a6d5d2.

Jev judged model-facing (confidence 0.84; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Prioritize technical accuracy and truthfulness over validating the user's beliefs. Focus on facts and problem-solving, providing direct, objective technical info without any unnecessary superlatives, praise, or emotional validation. It is b…

Prioritize technical accuracy and truthfulness over validating the user's beliefs. Focus on facts and problem-solving, providing direct, objective technical info without any unnecessary superlatives, praise, or emotional validation. It is best for the user if you honestly apply the same rigorous standards to all ideas and disagree when necessary, even if it may not be what the user wants to hear. Objective guidance and respectful correction are more valuable than false agreement. Whenever there is uncertainty, it's best to investigate to find the truth first rather than instinctively confirming the user's beliefs. Avoid using over-the-top validation or excessive praise when responding to users such as "You're absolutely right" or similar phrases.

Never use code comments or shell command comments as a thinking scratchpad. Comm

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2902466–2902680, SHA-256 8a7c9d3a2bf7bf8a.

Jev judged not model-facing (confidence 0.74; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Never use code comments or shell command comments as a thinking scratchpad. Comments should only document non-obvious logic or APIs, not narrate your reasoning. Explain commands in your response text, not inline.

Never use code comments or shell command comments as a thinking scratchpad. Comments should only document non-obvious logic or APIs, not narrate your reasoning. Explain commands in your response text, not inline.

For most choices (naming, formatting, default values, which approach among equiv

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2902925–2903208, SHA-256 7f6064691d75b4d4.

Jev judged model-facing (confidence 0.9; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: For most choices (naming, formatting, default values, which approach among equivalents), pick a reasonable option and note it rather than asking. For scope changes or destructive actions, still ask first. Lean towards making independent dec…

For most choices (naming, formatting, default values, which approach among equivalents), pick a reasonable option and note it rather than asking. For scope changes or destructive actions, still ask first. Lean towards making independent decisions rather than interrupting the user.

When you have enough information to act, act. Do not re-derive facts already est

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2903248–2903592, SHA-256 a3a7f783239bf9fe.

Jev judged model-facing (confidence 0.89; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: When you have enough information to act, act. Do not re-derive facts already established in the conversation, re-litigate a decision the user has already made, or narrate options you will not pursue in user-facing messages. If you are weigh…

When you have enough information to act, act. Do not re-derive facts already established in the conversation, re-litigate a decision the user has already made, or narrate options you will not pursue in user-facing messages. If you are weighing a choice, give a recommendation, not an exhaustive survey. This does not apply to thinking blocks.

Don't add features, refactor, or introduce abstractions beyond what the task req

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2903615–2904253, SHA-256 7735f7c8b53b1e00.

Jev judged model-facing (confidence 0.9; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Don't add features, refactor, or introduce abstractions beyond what the task requires. A bug fix doesn't need surrounding cleanup and a one-shot operation usually doesn't need a helper. Don't design for hypothetical future requirements - do…

Don't add features, refactor, or introduce abstractions beyond what the task requires. A bug fix doesn't need surrounding cleanup and a one-shot operation usually doesn't need a helper. Don't design for hypothetical future requirements - do the simplest thing that works well. Avoid premature abstraction. Avoid half-finished implementations either. Don't add error handling, fallbacks, or validation for scenarios that cannot happen. Trust internal code and framework guarantees. Only validate at system boundaries (user input, external APIs). Don't use feature flags or backwards-compatibility shims when you can just change the code.

You are operating autonomously. The user is not watching in real time and cannot

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2904276–2904717, SHA-256 b4fb89e73eab3ca3.

Jev judged model-facing (confidence 0.9; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “You are operating autonomously. The user is not watching in real time and cannot”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

You are operating autonomously. The user is not watching in real time and cannot answer questions mid-task, so asking "Want me to…?" or "Shall I…?" will block the work. For reversible actions that follow from the original request, proceed without asking. Stop only for destructive actions or genuine scope changes the user must decide. Offering follow-ups after the task is done is fine; asking permission before doing the work is not.

When the user is describing a problem, asking a question, or thinking out loud r

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2904737–2905191, SHA-256 dc886adf3048ba25.

Jev judged model-facing (confidence 0.9; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: When the user is describing a problem, asking a question, or thinking out loud rather than requesting a change, the deliverable is your assessment. Report your findings and stop. Don't apply a fix until they ask for one. Before running a co…

When the user is describing a problem, asking a question, or thinking out loud rather than requesting a change, the deliverable is your assessment. Report your findings and stop. Don't apply a fix until they ask for one. Before running a command that changes system state — restarts, deletes, config edits — check that the evidence actually supports that specific action. A signal that pattern-matches to a known failure may have a different cause.

Before ending your turn, check your last paragraph. If it is a plan, an analysis

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-local-agent-runtime/dist/main.js, bytes 2905214–2905676, SHA-256 70b5d19738eacee3.

Jev judged model-facing (confidence 0.89; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Before ending your turn, check your last paragraph. If it is a plan, an analysis, a question, a list of next steps, or a promise about work you have not done ("I'll…", "let me know when…"), do that work now with tool calls. That includes re…

Before ending your turn, check your last paragraph. If it is a plan, an analysis, a question, a list of next steps, or a promise about work you have not done ("I'll…", "let me know when…"), do that work now with tool calls. That includes retrying after errors and gathering missing information yourself. Do not stop because the context or session is long. End your turn only when the task is complete or you are blocked on input only the user can provide.