daemon.cjs · part 108
Full reference60 text occurrences from desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, part 108. Every entry preserves the shipped literal and its saved verdict or selection reason.
File contents and all parts · All files
Shipped text
optional string
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9077962–9077979, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.25; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
Mobile hardware model such as iPhone16,1 . The desktop editor leaves it unset.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078002–9078083, SHA-256 bddb8bf8d889da20.
Jev judged not model-facing (confidence 0.63; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Mobile hardware model such as 'iPhone16,1'. The desktop editor leaves it unset.
Mobile hardware model such as `iPhone16,1`. The desktop editor leaves it unset.
Set only by the mobile apps from the OS's hardware identifier. A model name is a
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078112–9078231, SHA-256 931a165342395bcb.
Jev judged not model-facing (confidence 0.48; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Set only by the mobile apps from the OS's hardware identifier. A model name is a fixed vendor string, not user input.
Set only by the mobile apps from the OS's hardware identifier. A model name is a fixed vendor string, not user input.
optional string · byte 9078307
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078307–9078324, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.22; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
Mobile OS version such as 26.0.1 . The desktop editor leaves it unset.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078347–9078420, SHA-256 0fbbac817efc1b01.
Jev judged not model-facing (confidence 0.61; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Mobile OS version such as '26.0.1'. The desktop editor leaves it unset.
Mobile OS version such as `26.0.1`. The desktop editor leaves it unset.
Set only by the mobile apps from the OS version API. A version number is not use
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078449–9078539, SHA-256 09c43f491614478f.
Jev judged not model-facing (confidence 0.57; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Set only by the mobile apps from the OS version API. A version number is not user input.
Set only by the mobile apps from the OS version API. A version number is not user input.
optional string · byte 9078616
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078616–9078633, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.31; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
phone , pad , mac , or unspecified on iOS. The desktop editor leaves it uns
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078656–9078741, SHA-256 3153323d139b2bdf.
Jev judged not model-facing (confidence 0.44; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: 'phone', 'pad', 'mac', or 'unspecified' on iOS. The desktop editor leaves it unset.
`phone`, `pad`, `mac`, or `unspecified` on iOS. The desktop editor leaves it unset.
One of four fixed words chosen by the mobile app from the device class.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078770–9078843, SHA-256 f3003a8075de11a6.
Jev judged not model-facing (confidence 0.29; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: One of four fixed words chosen by the mobile app from the device class.
One of four fixed words chosen by the mobile app from the device class.
optional string · byte 9078918
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078918–9078935, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.23; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
Mobile install UUID used to bucket experiments. The desktop editor leaves it uns
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9078958–9079043, SHA-256 4e9b5cd7a802e83b.
Jev judged not model-facing (confidence 0.35; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Mobile install UUID used to bucket experiments. The desktop editor leaves it unset.
Mobile install UUID used to bucket experiments. The desktop editor leaves it unset.
A random UUID generated by the mobile app at install; it identifies the device,
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9079072–9079173, SHA-256 a2237a196ccf0a74.
Jev judged not model-facing (confidence 0.28; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: A random UUID generated by the mobile app at install; it identifies the device, never its contents.
A random UUID generated by the mobile app at install; it identifies the device, never its contents.
optional string · byte 9079253
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9079253–9079270, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.2; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
release , testflight , or debug on iOS. The desktop editor leaves it unset.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9079293–9079374, SHA-256 ac9f41b5cfe97205.
Jev judged not model-facing (confidence 0.42; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: 'release', 'testflight', or 'debug' on iOS. The desktop editor leaves it unset.
`release`, `testflight`, or `debug` on iOS. The desktop editor leaves it unset.
One of three fixed words derived from how the mobile app was installed.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9079403–9079476, SHA-256 f13f2022c6033e41.
Jev judged not model-facing (confidence 0.23; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: One of three fixed words derived from how the mobile app was installed.
One of three fixed words derived from how the mobile app was installed.
optional string · byte 9079551
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9079551–9079568, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.26; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
The mobile app's bundle identifier such as co.anysphere.cursor . The desktop ed
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9079591–9079694, SHA-256 1daceda3f4f5f207.
Jev judged not model-facing (confidence 0.65; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The mobile app's bundle identifier such as 'co.anysphere.cursor'. The desktop editor leaves it unset.
The mobile app's bundle identifier such as `co.anysphere.cursor`. The desktop editor leaves it unset.
The app's own signed identifier, fixed at build time; never derived from user da
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9079723–9079808, SHA-256 ebb46d4251ff6748.
Jev judged not model-facing (confidence 0.28; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The app's own signed identifier, fixed at build time; never derived from user data.
The app's own signed identifier, fixed at build time; never derived from user data.
optional string · byte 9079898
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9079898–9079915, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.23; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
The two-letter ISO 3166-1 country of the device's App Store or Play Store accoun
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9079938–9080072, SHA-256 b235b690d0a5e3b7.
Jev judged not model-facing (confidence 0.67; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The two-letter ISO 3166-1 country of the device's App Store or Play Store account, such as 'US'. The desktop editor leaves it unset.
The two-letter ISO 3166-1 country of the device's App Store or Play Store account, such as `US`. The desktop editor leaves it unset.
Read by the mobile app from the store's storefront API and mapped through the IS
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9080101–9080261, SHA-256 abf7a974c513bdf7.
Jev judged not model-facing (confidence 0.39; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Read by the mobile app from the store's storefront API and mapped through the ISO country table; anything else is dropped, so only a country code can be sent.
Read by the mobile app from the store's storefront API and mapped through the ISO country table; anything else is dropped, so only a country code can be sent.
The desktop editor sends one flag and one enum. The seven optional strings are m
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9080306–9080585, SHA-256 146264de041ef3af.
Jev judged not model-facing (confidence 0.29; role context). This is a classifier judgment, not proof of delivery.
Readable text: The desktop editor sends one flag and one enum. The seven optional strings are mobile-only device descriptors (model, OS version, form factor, install UUID, channel, bundle id, store country), each a fixed vendor or build value rather than …
The desktop editor sends one flag and one enum. The seven optional strings are mobile-only device descriptors (model, OS version, form factor, install UUID, channel, bundle id, store country), each a fixed vendor or build value rather than anything typed or stored by the user.
Admits one private-inference agent turn: authenticates the caller, checks usage
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9080684–9080831, SHA-256 90f4ad84703c2177.
Jev judged not model-facing (confidence 0.4; role tool). This is a classifier judgment, not proof of delivery.
Readable text: Admits one private-inference agent turn: authenticates the caller, checks usage limits, and returns the id later usage reports are attributed to.
Admits one private-inference agent turn: authenticates the caller, checks usage limits, and returns the id later usage reports are attributed to.
Every agent turn served by the customer's private gateway; the user sees the tur
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9080850–9081000, SHA-256 a8424c28c855bae5.
Jev judged not model-facing (confidence 0.28; role human). This is a classifier judgment, not proof of delivery.
Readable text: Every agent turn served by the customer's private gateway; the user sees the turn start, or a usage-limit or enrollment error before any model call.
Every agent turn served by the customer's private gateway; the user sees the turn start, or a usage-limit or enrollment error before any model call.
Cursor meters private-inference turns per account even though it never sees the
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9081023–9081224, SHA-256 3d65ec2923b5ad3d.
Jev judged not model-facing (confidence 0.39; role context). This is a classifier judgment, not proof of delivery.
Readable text: Cursor meters private-inference turns per account even though it never sees the prompt; admission is the only point where the turn is tied to the signed-in user before the customer gateway is called.
Cursor meters private-inference turns per account even though it never sees the prompt; admission is the only point where the turn is tied to the signed-in user before the customer gateway is called.
The gateway model id of the configured row the turn runs on, e.g. gpt-5-nano .
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9081344–9081425, SHA-256 be6e4360f7748091.
Jev judged not model-facing (confidence 0.72; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The gateway model id of the configured row the turn runs on, e.g. 'gpt-5-nano'.
The gateway model id of the configured row the turn runs on, e.g. `gpt-5-nano`.
Copied from the model key of a model. key table in the admin-managed priv
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9081454–9081638, SHA-256 58a4b6b2e13d8263.
Jev judged not model-facing (confidence 0.16; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: Copied from the 'model' key of a '[model.<key>]' table in the admin-managed private-inference config file; never typed by the user and never derived from the prompt or the workspace.
Copied from the `model` key of a `[model.<key>]` table in the admin-managed private-inference config file; never typed by the user and never derived from the prompt or the workspace.
The conversation's UUID, for usage attribution.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9081750–9081799, SHA-256 11347fb87b682a3a.
Jev judged not model-facing (confidence 0.55; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The conversation's UUID, for usage attribution.
The conversation's UUID, for usage attribution.
A random UUID minted by the editor when the conversation is created.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9081828–9081898, SHA-256 576204953eaf4175.
Jev judged not model-facing (confidence 0.46; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: A random UUID minted by the editor when the conversation is created.
A random UUID minted by the editor when the conversation is created.
A UUID minted per turn attempt so a retried admission maps to the same usage id.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9082009–9082091, SHA-256 5a78197ef518fe9a.
Jev judged not model-facing (confidence 0.71; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: A UUID minted per turn attempt so a retried admission maps to the same usage id.
A UUID minted per turn attempt so a retried admission maps to the same usage id.
A random UUID minted by the editor per attempt.
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9082120–9082169, SHA-256 73dfc32851a8efaf.
Jev judged not model-facing (confidence 0.47; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: A random UUID minted by the editor per attempt.
A random UUID minted by the editor per attempt.
optional string · byte 9082252
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9082252–9082269, SHA-256 5755729b87565a4d.
Jev judged not model-facing (confidence 0.26; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: optional string
optional string
The Cursor model id (a model-picker slug such as gpt-5.4 ) whose prompt family
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9082292–9082542, SHA-256 aa5c101feb7ef124.
Jev judged not model-facing (confidence 0.72; role parameter). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “The Cursor model id (a model-picker slug such as gpt-5.4 ) whose prompt family”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
The Cursor model id (a model-picker slug such as `gpt-5.4`) whose prompt family the turn is built with, when the configured row names one. Sent alongside `prompt_model` for servers that predate the structured field; servers with it ignore this one.
Copied from the cursor model key of a model. key table in the admin-manag
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9082571–9082823, SHA-256 1d3c50ac2f4aca5b.
Jev judged not model-facing (confidence 0.27; role parameter). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “Copied from the cursor model key of a model. key table in the admin-manag”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
Copied from the `cursor_model` key of a `[model.<key>]` table in the admin-managed private-inference config file; never typed by the user and never derived from the prompt or the workspace. The server accepts only Cursor model ids the caller may use.
message aiserver.v1.InferenceRequestedModel
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9082901–9082946, SHA-256 af6b35cc6848b972.
Jev judged not model-facing (confidence 0.2; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: message aiserver.v1.InferenceRequestedModel
message aiserver.v1.InferenceRequestedModel
The Cursor model whose prompt family the turn is built with, when the configured
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9082969–9083282, SHA-256 d790a495713b865a.
Jev judged not model-facing (confidence 0.58; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: The Cursor model whose prompt family the turn is built with, when the configured row names one: its model-picker id (such as 'gpt-5.6-sol') and the turn's reasoning tier as a 'reasoning' parameter, in the same structured form the managed ag…
The Cursor model whose prompt family the turn is built with, when the configured row names one: its model-picker id (such as `gpt-5.6-sol`) and the turn's reasoning tier as a `reasoning` parameter, in the same structured form the managed agent loop sends the server. No credentials and no max-mode flag are set.
The id is copied from the cursor model key of a model. key table in the a
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9083311–9083771, SHA-256 6de70f60b34ee104.
Jev judged not model-facing (confidence 0.37; role context). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “The id is copied from the cursor model key of a model. key table in the a”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
The id is copied from the `cursor_model` key of a `[model.<key>]` table in the admin-managed private-inference config file, and the only parameter is a reasoning tier drawn from that table's `reasoning_efforts` rungs (or the gateway's advertised tiers) — the fixed words such as `low` or `high` the model picker offers; never typed by the user and never derived from the prompt or the workspace. The server accepts only Cursor models the caller may use.
Two admin-configured model ids, one fixed reasoning-tier word, and two random UU
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9083816–9083948, SHA-256 e1038add334ba729.
Jev judged not model-facing (confidence 0.25; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Two admin-configured model ids, one fixed reasoning-tier word, and two random UUIDs; no prompt, file, or path can reach any field.
Two admin-configured model ids, one fixed reasoning-tier word, and two random UUIDs; no prompt, file, or path can reach any field.
Reports the token counts of completed private-inference model calls so usage is
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9084050–9084256, SHA-256 92a846afba78fd51.
Jev judged not model-facing (confidence 0.3; role tool). This is a classifier judgment, not proof of delivery.
Readable text: Reports the token counts of completed private-inference model calls so usage is metered without pricing, and reports each finished turn so an admitted turn that never produced model output is not charged.
Reports the token counts of completed private-inference model calls so usage is metered without pricing, and reports each finished turn so an admitted turn that never produced model output is not charged.
Background upload after each model call served by the customer's private gateway
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9084275–9084433, SHA-256 64e8bcd9cac3ea06.
Jev judged not model-facing (confidence 0.18; role context). This is a classifier judgment, not proof of delivery.
Readable text: Background upload after each model call served by the customer's private gateway and after each turn ends; nothing is shown unless the upload keeps failing.
Background upload after each model call served by the customer's private gateway and after each turn ends; nothing is shown unless the upload keeps failing.
Cursor never sees the model call, so the only usage evidence is what the gateway
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9084456–9084772, SHA-256 97de82c6f86884b0.
Jev judged not model-facing (confidence 0.2; role context). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “Cursor never sees the model call, so the only usage evidence is what the gateway”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
Cursor never sees the model call, so the only usage evidence is what the gateway reported to the editor; the editor forwards those counts and nothing else. Likewise only the editor knows when a turn ended and whether the model ever answered, which is what lets Cursor void a turn that was admitted but did no work.
repeated message aiserver.v1.PrivateInferenceInvocationUsage
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9084862–9084924, SHA-256 b2204e4168c4c9cb.
Jev judged not model-facing (confidence 0.21; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: repeated message aiserver.v1.PrivateInferenceInvocationUsage
repeated message aiserver.v1.PrivateInferenceInvocationUsage
One record per completed model call: the admission's usage UUID, a per-call UUID
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9084947–9085202, SHA-256 57d842164d18a85a.
Jev judged not model-facing (confidence 0.35; role parameter). This is a classifier judgment, not proof of delivery.
Readable text: One record per completed model call: the admission's usage UUID, a per-call UUID, the gateway model id, the call's timestamp, its outcome, the inference-reason name ('agent'), and the token counts the gateway reported (input, output, cached…
One record per completed model call: the admission's usage UUID, a per-call UUID, the gateway model id, the call's timestamp, its outcome, the inference-reason name (`agent`), and the token counts the gateway reported (input, output, cached, reasoning).
Every string field is a UUID, an admin-configured model id, or a fixed reason na
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9085231–9085553, SHA-256 9f3d4c3b54187ca0.
Jev judged not model-facing (confidence 0.17; role context). This is a classifier judgment, not proof of delivery.
Readable form: a shipped code or data literal beginning “Every string field is a UUID, an admin-configured model id, or a fixed reason na”. The exact literal is preserved below; its runtime purpose requires the surrounding source.
Every string field is a UUID, an admin-configured model id, or a fixed reason name from the client's own code; every other field is a timestamp, an enum, or an integer token count copied from the gateway's usage payload. The prompt, the response text, and provider credentials are not part of the record by construction.
repeated message aiserver.v1.PrivateInferenceTurnOutcome
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9085624–9085682, SHA-256 2cb86689dfc06b37.
Jev judged not model-facing (confidence 0.11; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: repeated message aiserver.v1.PrivateInferenceTurnOutcome
repeated message aiserver.v1.PrivateInferenceTurnOutcome
One record per finished turn attempt: the admission's usage UUID, when the attem
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9085705–9085873, SHA-256 55bfa99570741751.
Jev judged not model-facing (confidence 0.28; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: One record per finished turn attempt: the admission's usage UUID, when the attempt ended, how many gateway calls it made, and whether any call returned output tokens.
One record per finished turn attempt: the admission's usage UUID, when the attempt ended, how many gateway calls it made, and whether any call returned output tokens.
The only string is the usage UUID the server itself minted at admission; the res
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9085902–9086115, SHA-256 65bbb0b538c7a7af.
Jev judged not model-facing (confidence 0.1; role context). This is a classifier judgment, not proof of delivery.
Readable text: The only string is the usage UUID the server itself minted at admission; the rest is a timestamp, an integer count, and a boolean. Nothing about the prompt, the response, or the reason the turn ended is carried.
The only string is the usage UUID the server itself minted at admission; the rest is a timestamp, an integer count, and a boolean. Nothing about the prompt, the response, or the reason the turn ended is carried.
Identifiers, one enum, timestamps, integer counts, and one boolean; the gateway'
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9086160–9086368, SHA-256 1b467aba91a5d802.
Jev judged not model-facing (confidence 0.14; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: Identifiers, one enum, timestamps, integer counts, and one boolean; the gateway's usage object is reduced to its numeric fields before it is stored or sent, and the turn record is a UUID plus three scalars.
Identifiers, one enum, timestamps, integer counts, and one boolean; the gateway's usage object is reduced to its numeric fields before it is stored or sent, and the turn record is a UUID plus three scalars.
use strict
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9087846–9087858, SHA-256 4ee188e1744c1981.
Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: use strict
use strict
private inference perimeter:
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9088631–9088661, SHA-256 a47dd01edcde44f0.
Jev judged not model-facing (confidence 0.1; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: private inference perimeter:
private inference perimeter:
${exports2.PRIVATE INFERENCE BLOCKED MESSAGE PREFIX} ${serviceTypeName}/${method
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9089001–9089124, SHA-256 b714e4928af05204.
Jev judged not model-facing (confidence 0.06; role human). This is a classifier judgment, not proof of delivery.
Readable text: ${exports2.PRIVATE_INFERENCE_BLOCKED_MESSAGE_PREFIX} ${serviceTypeName}/${methodName} is disabled under private inference
${exports2.PRIVATE_INFERENCE_BLOCKED_MESSAGE_PREFIX} ${serviceTypeName}/${methodName} is disabled under private inference
use strict · byte 9091123
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9091123–9091135, SHA-256 4ee188e1744c1981.
Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: use strict
use strict
private inference lockdown: ${initiator} egress to an unparseable target is refu
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9092622–9092707, SHA-256 68bf563bf540a440.
Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: private inference lockdown: ${initiator} egress to an unparseable target is refused
private inference lockdown: ${initiator} egress to an unparseable target is refused
private inference lockdown: ${initiator} egress to ${host} is refused
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9092710–9092781, SHA-256 3fd4b3cd0a23db3a.
Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: private inference lockdown: ${initiator} egress to ${host} is refused
private inference lockdown: ${initiator} egress to ${host} is refused
PrivateInferenceHttpGuard lockdown ${state}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9096751–9096798, SHA-256 0fe78201f3697737.
Jev judged not model-facing (confidence 0.09; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: [PrivateInferenceHttpGuard] lockdown ${state}
[PrivateInferenceHttpGuard] lockdown ${state}
PrivateInferenceHttpGuard installed (lockdown ${this.lockdownState})
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9101846–9101918, SHA-256 c7923a13688a16e4.
Jev judged not model-facing (confidence 0.05; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: [PrivateInferenceHttpGuard] installed (lockdown ${this.lockdownState})
[PrivateInferenceHttpGuard] installed (lockdown ${this.lockdownState})
${refusal.initiator} ${refusal.host ?? " unparseable "}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9104299–9104356, SHA-256 88cffeba3f323e7c.
Jev judged not model-facing (confidence 0.08; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: ${refusal.initiator} ${refusal.host ?? "<unparseable>"}
${refusal.initiator} ${refusal.host ?? "<unparseable>"}
PrivateInferenceHttpGuard refused host=${refusal.host ?? " unparseable "} init
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9104379–9104520, SHA-256 3c631966112f6b32.
Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: [PrivateInferenceHttpGuard] refused host=${refusal.host ?? "<unparseable>"} initiator=${refusal.initiator} from=${refusal.stackHint ?? "?"}
[PrivateInferenceHttpGuard] refused host=${refusal.host ?? "<unparseable>"} initiator=${refusal.initiator} from=${refusal.stackHint ?? "?"}
${line} (further refusals of this target are logged at trace level)
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9104671–9104740, SHA-256 d51ca6d8941c4fcc.
Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: ${line} (further refusals of this target are logged at trace level)
${line} (further refusals of this target are logged at trace level)
${protocol}//${authority}${port == void 0 ? :${port} : ""}${path53}
Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 9109087–9109159, SHA-256 0ec301ec30e5fd91.
Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.
Readable text: ${protocol}//${authority}${port !== void 0 ? ':${port}' : ""}${path53}
${protocol}//${authority}${port !== void 0 ? `:${port}` : ""}${path53}