main.js · part 150
Full reference60 text occurrences from desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, part 150. Every entry preserves the shipped literal and its saved verdict or selection reason.
File contents and all parts · All files
Shipped text
Output truncated: the full MCP tool output was ${t} bytes, which exceeds the in
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6083996–6084231, SHA-256 eeafb7062d6d25a6.
Jev judged not model-facing (confidence 0.31; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: [Output truncated: the full MCP tool output was ${t} bytes, which exceeds the inline limit of ${VV.g4} bytes, and could not be written to a file. The remainder was discarded; do not retry the same call expecting the full output.]
[Output truncated: the full MCP tool output was ${t} bytes, which exceeds the inline limit of ${VV.g4} bytes, and could not be written to a file. The remainder was discarded; do not retry the same call expecting the full output.]
"${eL.Eyz}" arguments are only supported for external MCP tools, and ${e} is a f
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6084370–6084600, SHA-256 ec12b5218a668fc3.
Jev judged not model-facing (confidence 0.37; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: "${eL.Eyz}" arguments are only supported for external MCP tools, and ${e} is a first-party tool (got ${t.map(e=>'"${eL.Eyz}${e}"').join(", ")}). Pass the file path if the tool accepts one, or read the file and pass its contents.
"${eL.Eyz}" arguments are only supported for external MCP tools, and ${e} is a first-party tool (got ${t.map(e=>`"${eL.Eyz}${e}"`).join(", ")}). Pass the file path if the tool accepts one, or read the file and pass its contents.
Auto-review MCP approval store is not configured
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6086063–6086113, SHA-256 ba135b4c2ce75dcb.
Jev judged not model-facing (confidence 0.06; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Auto-review MCP approval store is not configured
Auto-review MCP approval store is not configured
Object expected.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6086223–6086241, SHA-256 d588320af15c8b9c.
Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Object expected.
Object expected.
Symbol.asyncDispose is not defined.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6086301–6086338, SHA-256 daa66daf4a2ce51d.
Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Symbol.asyncDispose is not defined.
Symbol.asyncDispose is not defined.
Symbol.dispose is not defined.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6086419–6086451, SHA-256 4f970f848ba76c6c.
Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Symbol.dispose is not defined.
Symbol.dispose is not defined.
Object not disposable.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6086526–6086550, SHA-256 2fc540c51c4f1811.
Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Object not disposable.
Object not disposable.
An error was suppressed during disposal.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6086791–6086833, SHA-256 f5185cbeab3cd14b.
Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: An error was suppressed during disposal.
An error was suppressed during disposal.
Permission denied: ${e}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6087515–6087540, SHA-256 fce3f8b989422b36.
Jev judged not model-facing (confidence 0.09; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Permission denied: ${e}
Permission denied: ${e}
Permission denied: ${e} · byte 6087571
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6087571–6087596, SHA-256 fce3f8b989422b36.
Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Permission denied: ${e}
Permission denied: ${e}
MCP server does not exist: ${e}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6087882–6087915, SHA-256 040c65524981ba41.
Jev judged not model-facing (confidence 0.07; role human). This is a classifier judgment, not proof of delivery.
Readable text: MCP server does not exist: ${e}
MCP server does not exist: ${e}
MCP server does not exist: ${e} · byte 6087942
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6087942–6087975, SHA-256 040c65524981ba41.
Jev judged not model-facing (confidence 0.05; role human). This is a classifier judgment, not proof of delivery.
Readable text: MCP server does not exist: ${e}
MCP server does not exist: ${e}
MCP server does not exist: ${e}. ${t}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6088001–6088040, SHA-256 05b598398d21916f.
Jev judged not model-facing (confidence 0.29; role human). This is a classifier judgment, not proof of delivery.
Readable text: MCP server does not exist: ${e}. ${t}
MCP server does not exist: ${e}. ${t}
MCP tool does not exist: server=${e}, tool=${t}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6088221–6088270, SHA-256 353d59070b852fa8.
Jev judged not model-facing (confidence 0.09; role human). This is a classifier judgment, not proof of delivery.
Readable text: MCP tool does not exist: server=${e}, tool=${t}
MCP tool does not exist: server=${e}, tool=${t}
MCP tool does not exist: ${t}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6088297–6088328, SHA-256 ae0893f69dda4ac8.
Jev judged not model-facing (confidence 0.04; role human). This is a classifier judgment, not proof of delivery.
Readable text: MCP tool does not exist: ${t}
MCP tool does not exist: ${t}
Error in call mcp tool: ${n} without reading the tool definition
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6088947–6089013, SHA-256 9032148f946acd1a.
Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Error in call_mcp_tool: ${n} without reading the tool definition
Error in call_mcp_tool: ${n} without reading the tool definition
Tool execution error
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6089040–6089062, SHA-256 138500c194a2ca48.
Jev judged not model-facing (confidence 0.04; role human). This is a classifier judgment, not proof of delivery.
Readable text: Tool execution error
Tool execution error
Tool execution error · byte 6089308
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6089308–6089330, SHA-256 138500c194a2ca48.
Jev judged not model-facing (confidence 0.04; role human). This is a classifier judgment, not proof of delivery.
Readable text: Tool execution error
Tool execution error
(no description provided)
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6089978–6090005, SHA-256 df586b79c167e662.
Jev judged not model-facing (confidence 0.29; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: (no description provided)
(no description provided)
- ${e.toolName}: ${t}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6090012–6090035, SHA-256 ffd8814386eb23cf.
Jev judged not model-facing (confidence 0.34; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: - ${e.toolName}: ${t}
- ${e.toolName}: ${t}
User-defined tools for this session. ${t? Discover tool schemas with ${t.disco
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6090055–6090433, SHA-256 1473438486261847.
Jev judged not model-facing (confidence 0.76; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: User-defined tools for this session. ${t?'Discover tool schemas with \'${t.discoveryToolName}\', then invoke via \'${t.invocationToolName}\' with ${t.useDynamicToolNamespaces?"namespace":"server"} "${eL.iKs}".':'Discover tool schemas via MC…
User-defined tools for this session. ${t?`Discover tool schemas with \`${t.discoveryToolName}\`, then invoke via \`${t.invocationToolName}\` with ${t.useDynamicToolNamespaces?"namespace":"server"} "${eL.iKs}".`:`Discover tool schemas via MCP meta-tool discovery for server "${eL.iKs}", then invoke via the MCP invocation meta-tool with that server.`}
Available tools:
${r}
Discover tool schemas with ${t.discoveryToolName} , then invoke via ${t.invoca
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6090097–6090266, SHA-256 cb52e8ab3fd062ff.
Jev judged not model-facing (confidence 0.67; role tool). This is a classifier judgment, not proof of delivery.
Readable text: Discover tool schemas with '${t.discoveryToolName}', then invoke via '${t.invocationToolName}' with ${t.useDynamicToolNamespaces?"namespace":"server"} "${eL.iKs}".
Discover tool schemas with `${t.discoveryToolName}`, then invoke via `${t.invocationToolName}` with ${t.useDynamicToolNamespaces?"namespace":"server"} "${eL.iKs}".
Discover tool schemas via MCP meta-tool discovery for server "${eL.iKs}", then i
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6090267–6090405, SHA-256 81d31849ac459a06.
Jev judged not model-facing (confidence 0.66; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Discover tool schemas via MCP meta-tool discovery for server "${eL.iKs}", then invoke via the MCP invocation meta-tool with that server.
Discover tool schemas via MCP meta-tool discovery for server "${eL.iKs}", then invoke via the MCP invocation meta-tool with that server.
Tool rejected
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6093158–6093173, SHA-256 e462da4685b82c87.
Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Tool rejected
Tool rejected
Read the MCP server descriptor files to discover available servers.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6093417–6093486, SHA-256 f69c5f135a30e69f.
Jev judged not model-facing (confidence 0.55; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Read the MCP server descriptor files to discover available servers.
Read the MCP server descriptor files to discover available servers.
Use ${s??"GetMcpTools"} to discover available servers.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6093487–6093543, SHA-256 3fd742c25bb54260.
Jev judged not model-facing (confidence 0.44; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Use ${s??"GetMcpTools"} to discover available servers.
Use ${s??"GetMcpTools"} to discover available servers.
Tool ${t} was not found. The list of all available MCP servers are included in $
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6093614–6093790, SHA-256 a9993544d4fb0669.
Jev judged not model-facing (confidence 0.44; role human). This is a classifier judgment, not proof of delivery.
Readable text: Tool ${t} was not found. The list of all available MCP servers are included in ${e}. Please list and read the relevant MCP servers carefully before using call_mcp_tool again.
Tool ${t} was not found. The list of all available MCP servers are included in ${e}. Please list and read the relevant MCP servers carefully before using call_mcp_tool again.
Tool ${t} was not found. Use ${s??"GetMcpTools"} to discover available servers a
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6093805–6093902, SHA-256 f30b5cbe84d30104.
Jev judged not model-facing (confidence 0.31; role human). This is a classifier judgment, not proof of delivery.
Readable text: Tool ${t} was not found. Use ${s??"GetMcpTools"} to discover available servers and their tools.
Tool ${t} was not found. Use ${s??"GetMcpTools"} to discover available servers and their tools.
Available servers: ${r.join(", ")}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6093987–6094023, SHA-256 0f1c441f2bc911ab.
Jev judged not model-facing (confidence 0.28; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Available servers: ${r.join(", ")}
Available servers: ${r.join(", ")}
No MCP servers available. Read the MCP server descriptor files to discover avail
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6094035–6094130, SHA-256 f83cec9893a5017e.
Jev judged not model-facing (confidence 0.13; role human). This is a classifier judgment, not proof of delivery.
Readable text: No MCP servers available. Read the MCP server descriptor files to discover available servers.
No MCP servers available. Read the MCP server descriptor files to discover available servers.
No MCP servers available. Use ${s??"GetMcpTools"} to discover available servers.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6094131–6094213, SHA-256 4b6e4744de11f141.
Jev judged not model-facing (confidence 0.21; role human). This is a classifier judgment, not proof of delivery.
Readable text: No MCP servers available. Use ${s??"GetMcpTools"} to discover available servers.
No MCP servers available. Use ${s??"GetMcpTools"} to discover available servers.
Approval-only MCP result cannot be used as tool output
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6094263–6094319, SHA-256 abb901f98f3e7763.
Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Approval-only MCP result cannot be used as tool output
Approval-only MCP result cannot be used as tool output
Exec result has no case
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6094349–6094374, SHA-256 2f86941ac1dbe0b3.
Jev judged not model-facing (confidence 0.08; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Exec result has no case
Exec result has no case
Unexpected exec result case: ${t}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6094418–6094453, SHA-256 575c18f8587cd0a6.
Jev judged not model-facing (confidence 0.06; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Unexpected exec result case: ${t}
Unexpected exec result case: ${t}
Tool call released early after ${Math.max(1,Math.round(e.runtimeMs/1e3))}s: a ne
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6094695–6095161, SHA-256 59eb8c1fc03e8b53.
Jev judged not model-facing (confidence 0.48; role code_data). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “Tool call released early after ${Math.max(1,Math.round(e.runtimeMs/1e3))}s: a ne”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
Tool call released early after ${Math.max(1,Math.round(e.runtimeMs/1e3))}s: a new user message is arriving. The in-flight request to "${e.toolName}" on "${e.server}" was cancelled (any result it still produces will be discarded). This tool's server declares it read-only; that declaration is not verified, so if this call's effects or completion matter, re-run the tool or check state directly rather than assuming nothing changed. Handle the user's message first.
Auto-review blocked this autonomous
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6095306–6095343, SHA-256 4dd2f908f5518390.
Jev judged not model-facing (confidence 0.62; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Auto-review blocked this autonomous
Auto-review blocked this autonomous
system reminder ${NY} tool call. Decide now between two paths: (1) if a genuin
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6095347–6096226, SHA-256 109b3e76ca4808e4.
Jev judged model-facing (confidence 0.9; role instructions). This is a classifier judgment, not proof of delivery.
Readable text: <system_reminder> ${NY} tool call. Decide now between two paths: (1) if a genuinely safer, lower-privilege, authorized path satisfies the request, use it; (2) if this blocked action is still necessary and the user should approve it, immed…
<system_reminder>
${NY} tool call. Decide now between two paths: (1) if a genuinely safer, lower-privilege, authorized path satisfies the request, use it; (2) if this blocked action is still necessary and the user should approve it, immediately retry the exact same call_mcp_tool call with requestSmartModeApproval set to true AND smartModeBlockReason set to the exact block reason text above. That retry is what shows the native approval card; stopping here leaves the user with no approval UI. Do not change the tool arguments or use an escalated variant when retrying for approval. Trying a different anonymous public file host, pastebin, disposable transfer link, or similar courier is NOT path (1) — that is the same unauthorized data-exposure crossing — so for that class prefer path (2) or ask the user, do not shop for another intermediary.
</system_reminder>
system reminder ${NY} MCP tool call. Decide now between two paths: (1) if a ge
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6096230–6097192, SHA-256 431cf708d9952a87.
Jev judged model-facing (confidence 0.88; role instructions). This is a classifier judgment, not proof of delivery.
Readable text: <system_reminder> ${NY} MCP tool call. Decide now between two paths: (1) if a genuinely safer, lower-privilege, authorized path satisfies the request, use it; (2) if this blocked action is still necessary and the user should approve it, i…
<system_reminder>
${NY} MCP tool call. Decide now between two paths: (1) if a genuinely safer, lower-privilege, authorized path satisfies the request, use it; (2) if this blocked action is still necessary and the user should approve it, immediately retry the exact same CallDynamicTool call with mcpDetails.requestSmartModeApproval set to true AND mcpDetails.smartModeBlockReason set to the exact block reason text above. Preserve mcpDetails.description from the blocked call. That retry is what shows the native approval card; stopping here leaves the user with no approval UI. Do not change the tool arguments or use an escalated variant when retrying for approval. Trying a different anonymous public file host, pastebin, disposable transfer link, or similar courier is NOT path (1) — that is the same unauthorized data-exposure crossing — so for that class prefer path (2) or ask the user, do not shop for another intermediary.
</system_reminder>
Blocked by Auto-review
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6099176–6099200, SHA-256 4db33a8f3e863178.
Jev judged not model-facing (confidence 0.07; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Blocked by Auto-review
Blocked by Auto-review
Auto-review MCP approvals require a conversation id
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6100240–6100293, SHA-256 4ad3428212ef48af.
Jev judged not model-facing (confidence 0.15; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Auto-review MCP approvals require a conversation id
Auto-review MCP approvals require a conversation id
MCP tool call
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6103162–6103177, SHA-256 807edfd4cb3a500c.
Jev judged not model-facing (confidence 0.21; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: MCP tool call
MCP tool call
The MCP server rejected these arguments as invalid. Before retrying, inspect thi
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6104444–6104611, SHA-256 949ce43a6befc717.
Jev judged not model-facing (confidence 0.32; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: The MCP server rejected these arguments as invalid. Before retrying, inspect this MCP tool's input schema/tool definition and rebuild the arguments from that schema.
The MCP server rejected these arguments as invalid. Before retrying, inspect this MCP tool's input schema/tool definition and rebuild the arguments from that schema.
Tool execution error · byte 6105394
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6105394–6105416, SHA-256 138500c194a2ca48.
Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Tool execution error
Tool execution error
Arguments to pass to the tool, as described by the tool descriptor.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6107204–6107273, SHA-256 f15d1b75c055eaa0.
Jev judged not model-facing (confidence 0.7; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Arguments to pass to the tool, as described by the tool descriptor.
Arguments to pass to the tool, as described by the tool descriptor.
Arguments to pass to the MCP tool, as described in the tool descriptor.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6107274–6107347, SHA-256 a08f1436e32c96c8.
Jev judged not model-facing (confidence 0.71; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Arguments to pass to the MCP tool, as described in the tool descriptor.
Arguments to pass to the MCP tool, as described in the tool descriptor.
Identifier of the MCP server hosting the tool.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6107382–6107430, SHA-256 e20e9c2d07787194.
Jev judged not model-facing (confidence 0.77; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Identifier of the MCP server hosting the tool.
Identifier of the MCP server hosting the tool.
Name of the MCP tool to invoke.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6107458–6107491, SHA-256 1585722244502353.
Jev judged model-facing (confidence 0.81; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Name of the MCP tool to invoke.
Name of the MCP tool to invoke.
Dynamic namespace hosting the tool, e.g. an MCP server.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6107545–6107602, SHA-256 e7b7eb000a3d206b.
Jev judged not model-facing (confidence 0.73; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Dynamic namespace hosting the tool, e.g. an MCP server.
Dynamic namespace hosting the tool, e.g. an MCP server.
Name of the tool to invoke.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6107630–6107659, SHA-256 f19fce03e15f60e0.
Jev judged model-facing (confidence 0.83; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Name of the tool to invoke.
Name of the tool to invoke.
Short plain-language description of what this call will do. One sentence naming
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6107705–6107916, SHA-256 7309c6f5114491d7.
Jev judged not model-facing (confidence 0.77; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Short plain-language description of what this call will do. One sentence naming the outcome and where it applies (channel, page, file, or service) when known. Do not include tool names, argument keys, or JSON.
Short plain-language description of what this call will do. One sentence naming the outcome and where it applies (channel, page, file, or service) when known. Do not include tool names, argument keys, or JSON.
Set to true when immediately retrying the exact same MCP call after Auto-review
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6108016–6108183, SHA-256 f3e464cd4d97720d.
Jev judged not model-facing (confidence 0.68; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Set to true when immediately retrying the exact same MCP call after Auto-review blocks it and you decide the user should approve it through the native approval card.
Set to true when immediately retrying the exact same MCP call after Auto-review blocks it and you decide the user should approve it through the native approval card.
Provide the exact block reason returned by Auto-review in the prior rejection. R
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6108234–6108454, SHA-256 ea6478662067b4a0.
Jev judged not model-facing (confidence 0.7; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Provide the exact block reason returned by Auto-review in the prior rejection. Required when requestSmartModeApproval is true so the approval card shows the original classifier reason without re-running the classifier.
Provide the exact block reason returned by Auto-review in the prior rejection. Required when requestSmartModeApproval is true so the approval card shows the original classifier reason without re-running the classifier.
When true, the tool's result is written to a file under agent-tools/ in the work
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6108737–6109116, SHA-256 216a26f99a0c18d1.
Jev judged model-facing (confidence 0.88; role parameter). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “When true, the tool's result is written to a file under agent-tools/ in the work”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
When true, the tool's result is written to a file under agent-tools/ in the workspace instead of being returned inline, regardless of its size; the result then reports the file path, size, and line count. Use it when you expect a large result that you want to read selectively or pass on to another tool by path. System reminders attached to the call are still returned inline.
MCP-specific call metadata. Set this only when invoking a tool from an external
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6109776–6109927, SHA-256 337eaf92bd74f25a.
Jev judged not model-facing (confidence 0.68; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: MCP-specific call metadata. Set this only when invoking a tool from an external MCP namespace; omit it for first-party tools in the cursor namespace.
MCP-specific call metadata. Set this only when invoking a tool from an external MCP namespace; omit it for first-party tools in the cursor namespace.
Missing required ${1===e.length?"field":"fields"}: ${e.join(", ")}. Re-issue the
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6110637–6110802, SHA-256 7c6b097f6e538102.
Jev judged not model-facing (confidence 0.28; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Missing required ${1===e.length?"field":"fields"}: ${e.join(", ")}. Re-issue the call with the tool's identity set; 'arguments' alone does not identify the tool.
Missing required ${1===e.length?"field":"fields"}: ${e.join(", ")}. Re-issue the call with the tool's identity set; `arguments` alone does not identify the tool.
Failed to parse arguments string as JSON object. Re-issue the call with argumen
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6110986–6111125, SHA-256 3fc342d990d060e5.
Jev judged not model-facing (confidence 0.29; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Failed to parse arguments string as JSON object. Re-issue the call with 'arguments' as a JSON object literal rather than a quoted string.
Failed to parse arguments string as JSON object. Re-issue the call with `arguments` as a JSON object literal rather than a quoted string.
"description": "Search the public docs for the example API",
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6111842–6111908, SHA-256 7b846fb3819fcc5b.
Jev judged not model-facing (confidence 0.67; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: "description": "Search the public docs for the example API",
"description": "Search the public docs for the example API",
Set "write to file": true to have the result written to a file under agent-tools
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6111914–6112739, SHA-256 9b875863d55817e6.
Jev judged not model-facing (confidence 0.78; role tool). This is a classifier judgment, not proof of delivery.
Readable text: Set "write_to_file": true to have the result written to a file under agent-tools/ in the workspace instead of returned inline, regardless of its size; you then get back the file path, size, and line count. Prefer it for results you expect…
Set "write_to_file": true to have the result written to a file under agent-tools/ in the workspace instead of returned inline, regardless of its size; you then get back the file path, size, and line count. Prefer it for results you expect to be large and want to read selectively or hand to another tool by path.
For tools in external MCP namespaces (not the cursor namespace), any string argument, at any nesting depth, that is exactly "${eL.Eyz}/absolute/path" is replaced with that file's contents when the call is sent, so a file (for example one produced by write_to_file) can be passed to the server without reading it into the conversation. Text files only, up to a few MiB; if the tool accepts a path, pass the plain path instead. Example: "arguments": { "body": "${eL.Eyz}/workspace/agent-tools/1f3c.txt" }.
write to file could not write the tool result
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6113108–6113155, SHA-256 a12759ec9a232d0d.
Jev judged not model-facing (confidence 0.14; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: write_to_file could not write the tool result
write_to_file could not write the tool result
${Buffer.byteLength(s,"utf8") VV.g4?ZV(s):s} write to file was requested but th
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-exec/dist/main.js, bytes 6113317–6113474, SHA-256 1c8e267ad2314a82.
Jev judged not model-facing (confidence 0.12; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: ${Buffer.byteLength(s,"utf8")>VV.g4?ZV(s):s} [write_to_file was requested but the result could not be written to a file; it is returned inline instead.]
${Buffer.byteLength(s,"utf8")>VV.g4?ZV(s):s}
[write_to_file was requested but the result could not be written to a file; it is returned inline instead.]