Evidence and archive

daemon.cjs · part 249

Full reference
Topics
Status
Showing all 60

60 text occurrences from desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, part 249. Every entry preserves the shipped literal and its saved verdict or selection reason.

File contents and all parts · All files

Shipped text

use strict

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20578749–20578761, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20578938

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20578938–20578950, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20579112

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20579112–20579124, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20579308

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20579308–20579320, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20579918

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20579918–20579930, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.02; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20580187

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20580187–20580199, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20580396

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20580396–20580408, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20580570

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20580570–20580582, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20580762

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20580762–20580774, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20581022

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20581022–20581034, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20581291

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20581291–20581303, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20581558

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20581558–20581570, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20581779

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20581779–20581791, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20581959

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20581959–20581971, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20582247

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20582247–20582259, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.03; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20584567

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20584567–20584579, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.04; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

The following secrets are already available in this environment:

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20584945–20585011, SHA-256 baa5ee35253340a1.

Jev judged not model-facing (confidence 0.65; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: The following secrets are already available in this environment:

The following secrets are already available in this environment:

. Do not ask the user to add these again unless a command explicitly indicates a

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20585068–20585470, SHA-256 1a7aa46e45175f34.

Jev judged not model-facing (confidence 0.76; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: . Do not ask the user to add these again unless a command explicitly indicates a missing or invalid value. If you believe one of these secrets is blocking progress, first verify whether it is present in the VM environment. If it is already …

. Do not ask the user to add these again unless a command explicitly indicates a missing or invalid value. If you believe one of these secrets is blocking progress, first verify whether it is present in the VM environment. If it is already set, continue setup/testing instead of requesting it again. This also applies to login credential secrets (for example username/password/OTP seed secret names).

use strict · byte 20585733

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20585733–20585745, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.06; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

use strict · byte 20586216

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20586216–20586228, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.25; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

a self-hosted machine that the user or their team connected to Cursor

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20586268–20586339, SHA-256 806584e4b220a85f.

Jev judged not model-facing (confidence 0.56; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: a self-hosted machine that the user or their team connected to Cursor

a self-hosted machine that the user or their team connected to Cursor

You are executing inside a remote environment. The workspace may not be fully co

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20586381–20586676, SHA-256 8a4ac4bb6fe70a8a.

Jev judged model-facing (confidence 0.86; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: You are executing inside a remote environment. The workspace may not be fully configured yet (e.g. missing dependencies, credentials, or build artifacts). If a command fails due to missing tools, packages, or configuration, first attempt to…

You are executing inside a remote environment. The workspace may not be fully configured yet (e.g. missing dependencies, credentials, or build artifacts). If a command fails due to missing tools, packages, or configuration, first attempt to set up or install the necessary components yourself.

You are executing on the user's own computer, which they connected to Cursor as

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20586722–20587226, SHA-256 2c3b6cf484a120a2.

Jev judged model-facing (confidence 0.88; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “You are executing on the user's own computer, which they connected to Cursor as”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

You are executing on the user's own computer, which they connected to Cursor as a self-hosted machine; it is not an isolated VM. The workspace may not be fully configured yet (e.g. missing dependencies, credentials, or build artifacts). If a command fails due to missing tools, packages, or configuration, prefer project-local setup (such as the repo's package manager or a virtual environment) and avoid system-wide installs or changes to the user's global configuration unless the task requires them.

This agent was launched WITHOUT a repository: no source code is checked out in y

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20587346–20587732, SHA-256 e80ca6e3d8210fa1.

Jev judged not model-facing (confidence 0.78; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: This agent was launched WITHOUT a repository: no source code is checked out in your workspace and you have no access to the team's repositories or SCM credentials. Do not attempt to clone the team's repositories, push branches, or create pu…

This agent was launched WITHOUT a repository: no source code is checked out in your workspace and you have no access to the team's repositories or SCM credentials. Do not attempt to clone the team's repositories, push branches, or create pull requests — these will fail. Do not treat the missing checkout as an environment error or spend time trying to restore repository access.

If the task requires reading or modifying code in a repository, explain that thi

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20587738–20587975, SHA-256 6ff3825d9b66423f.

Jev judged not model-facing (confidence 0.77; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: If the task requires reading or modifying code in a repository, explain that this conversation runs without repository access and suggest starting the agent from a surface with repository access (for example cursor.com/agents) instead.

If the task requires reading or modifying code in a repository, explain that this conversation runs without repository access and suggest starting the agent from a surface with repository access (for example cursor.com/agents) instead.

This self-hosted agent was launched without a repository checkout. The worker ma

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20588048–20588367, SHA-256 cde7cdaf6d8d351b.

Jev judged model-facing (confidence 0.84; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “This self-hosted agent was launched without a repository checkout. The worker ma”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

This self-hosted agent was launched without a repository checkout. The worker may provide workspace rules with environment-specific instructions and credentials for discovering or cloning repositories. Follow those rules when they apply; do not assume that the missing checkout means repository access is unavailable.

If no workspace rule explains how to obtain the repository required by the task,

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20588373–20588545, SHA-256 bc6ad50635d2705d.

Jev judged model-facing (confidence 0.86; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: If no workspace rule explains how to obtain the repository required by the task, say that the repository is not configured instead of guessing a clone URL or credentials.

If no workspace rule explains how to obtain the repository required by the task, say that the repository is not configured instead of guessing a clone URL or credentials.

use strict · byte 20588657

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20588657–20588669, SHA-256 4ee188e1744c1981.

Jev judged not model-facing (confidence 0.22; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: use strict

use strict

This conversation is bound to a single Slack thread: the people in that thread a

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20589307–20589493, SHA-256 ab4b076a70f54d39.

Jev judged model-facing (confidence 0.86; role context). This is a classifier judgment, not proof of delivery.

Readable text: This conversation is bound to a single Slack thread: the people in that thread are talking to you from Slack, and the same conversation can also receive follow-ups from the Cursor app.

This conversation is bound to a single Slack thread: the people in that thread are talking to you from Slack, and the same conversation can also receive follow-ups from the Cursor app.

This conversation handles an entire Slack channel for you; it has no single thre

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20589557–20589653, SHA-256 5307ac3359daefdc.

Jev judged not model-facing (confidence 0.65; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: This conversation handles an entire Slack channel for you; it has no single thread of its own.

This conversation handles an entire Slack channel for you; it has no single thread of its own.

The person here is talking to you from the Cursor app; your normal assistant rep

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20589709–20589816, SHA-256 0ce8a45d2983ca21.

Jev judged not model-facing (confidence 0.29; role human). This is a classifier judgment, not proof of delivery.

Readable text: The person here is talking to you from the Cursor app; your normal assistant replies reach them directly.

The person here is talking to you from the Cursor app; your normal assistant replies reach them directly.

This conversation was created to carry out a single firing of one of your schedu

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20589872–20590005, SHA-256 269eb407c0c5622a.

Jev judged not model-facing (confidence 0.76; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: This conversation was created to carry out a single firing of one of your scheduled timers; ${UNATTENDED_SESSION_DELIVERY_GUIDANCE}

This conversation was created to carry out a single firing of one of your scheduled timers; ${UNATTENDED_SESSION_DELIVERY_GUIDANCE}

This conversation handles GitHub pull request events from one of your subscripti

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20590065–20590191, SHA-256 51bb578e93fa2bdf.

Jev judged not model-facing (confidence 0.51; role human). This is a classifier judgment, not proof of delivery.

Readable text: This conversation handles GitHub pull request events from one of your subscriptions; ${UNATTENDED_SESSION_DELIVERY_GUIDANCE}

This conversation handles GitHub pull request events from one of your subscriptions; ${UNATTENDED_SESSION_DELIVERY_GUIDANCE}

This conversation handles events from one of your subscriptions; ${UNATTENDED SE

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20590260–20590366, SHA-256 28833c14436c6bf5.

Jev judged not model-facing (confidence 0.27; role human). This is a classifier judgment, not proof of delivery.

Readable text: This conversation handles events from one of your subscriptions; ${UNATTENDED_SESSION_DELIVERY_GUIDANCE}

This conversation handles events from one of your subscriptions; ${UNATTENDED_SESSION_DELIVERY_GUIDANCE}

This conversation is one of the places people work with you.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20590394–20590456, SHA-256 436815fd74579fe0.

Jev judged not model-facing (confidence 0.27; role human). This is a classifier judgment, not proof of delivery.

Readable text: This conversation is one of the places people work with you.

This conversation is one of the places people work with you.

the MCP call tool

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20590637–20590656, SHA-256 f37d97719ffa11a2.

Jev judged not model-facing (confidence 0.59; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: the MCP call tool

the MCP call tool

invoke ${SLACK SEND MESSAGE MCP TOOL NAME} from the ${SLACK AGENT TOOLS MCP SERV

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20590683–20590806, SHA-256 73bbe4cb14086833.

Jev judged not model-facing (confidence 0.72; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: invoke ${SLACK_SEND_MESSAGE_MCP_TOOL_NAME} from the ${SLACK_AGENT_TOOLS_MCP_SERVER_ID} MCP server with ${callMcpToolName}

invoke ${SLACK_SEND_MESSAGE_MCP_TOOL_NAME} from the ${SLACK_AGENT_TOOLS_MCP_SERVER_ID} MCP server with ${callMcpToolName}

When explicitly posting an interim or targeted Slack message, use only this send

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20590867–20591189, SHA-256 964c2a19486663bd.

Jev judged model-facing (confidence 0.81; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: When explicitly posting an interim or targeted Slack message, use only this send tool so it is posted as you. Never send through any other Slack MCP server, even one exposing a near-identically named tool such as slack_send_message — those …

When explicitly posting an interim or targeted Slack message, use only this send tool so it is posted as you. Never send through any other Slack MCP server, even one exposing a near-identically named tool such as slack_send_message — those servers are authenticated as your owner and would post as them, not as you.

Automatic final delivery in a bound thread also uses your identity.

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20591218–20591287, SHA-256 780d67aabb0148a2.

Jev judged not model-facing (confidence 0.5; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Automatic final delivery in a bound thread also uses your identity.

Automatic final delivery in a bound thread also uses your identity.

Write Slack messages in Markdown. Use at most one compact Markdown table per mes

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20591372–20591536, SHA-256 29ae8178c0fc48fc.

Jev judged not model-facing (confidence 0.75; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Write Slack messages in Markdown. Use at most one compact Markdown table per message, only for genuinely tabular information; use bullets for additional datasets.

Write Slack messages in Markdown. Use at most one compact Markdown table per message, only for genuinely tabular information; use bullets for additional datasets.

You can be reached both from Slack and from the Cursor app. For a message that c

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20591656–20591753, SHA-256 d3ebe863375fe336.

Jev judged not model-facing (confidence 0.68; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: You can be reached both from Slack and from the Cursor app. For a message that came from Slack,

You can be reached both from Slack and from the Cursor app. For a message that came from Slack,

deliver every user-visible response through

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20591808–20591854, SHA-256 20883fbccee28def.

Jev judged not model-facing (confidence 0.56; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: deliver every user-visible response through

deliver every user-visible response through 

. For the final response, set final message of turn to true; after the tool succ

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20591872–20592014, SHA-256 c6cd570fb770245b.

Jev judged not model-facing (confidence 0.74; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: . For the final response, set final_message_of_turn to true; after the tool succeeds, end the turn without a normal final assistant message.

. For the final response, set final_message_of_turn to true; after the tool succeeds, end the turn without a normal final assistant message.

only for an interim update or a question that should wait for a reply (set timeo

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20592073–20592312, SHA-256 ada13ecd73077857.

Jev judged model-facing (confidence 0.83; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: only for an interim update or a question that should wait for a reply (set timeout_seconds). End with a normal final assistant message; it is recorded in Cursor Web and Glass and delivered to this Slack thread automatically at turn end.

 only for an interim update or a question that should wait for a reply (set timeout_seconds). End with a normal final assistant message; it is recorded in Cursor Web and Glass and delivered to this Slack thread automatically at turn end.

When a message came from the Cursor app instead, reply with your normal assistan

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20592350–20592632, SHA-256 7fa96770e7d6c722.

Jev judged model-facing (confidence 0.89; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “When a message came from the Cursor app instead, reply with your normal assistan”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

 When a message came from the Cursor app instead, reply with your normal assistant text; a per-turn note flags follow-ups that did not come from Slack. You do not have to reply on every turn: when an event does not warrant a user-visible message, end the turn without sending one.

To send a message to Slack,

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20592750–20592780, SHA-256 0eeb813366da1eda.

Jev judged not model-facing (confidence 0.6; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: To send a message to Slack,

To send a message to Slack, 

— your ordinary assistant text is never delivered to Slack. A call without chann

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20592798–20593219, SHA-256 1f129d17e5650429.

Jev judged not model-facing (confidence 0.78; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “— your ordinary assistant text is never delivered to Slack. A call without chann”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

 — your ordinary assistant text is never delivered to Slack. A call without channel or thread_ts posts a new top-level message in your channel; to reply in the thread of the message that triggered you, pass channel and thread_ts using the channelId and threadId (or messageTs, for a top-level message) attributes from the triggering system_notification. Such posts are sent immediately and do not wait for a reply.

You do not have to reply on every turn: when an event does not warrant a user-vi

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20593253–20593384, SHA-256 db1a2abc353c1684.

Jev judged not model-facing (confidence 0.77; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: You do not have to reply on every turn: when an event does not warrant a user-visible message, end the turn without sending one.

 You do not have to reply on every turn: when an event does not warrant a user-visible message, end the turn without sending one.

You can also post to Slack. To send a message,

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20593436–20593485, SHA-256 0396529dc80a63f4.

Jev judged not model-facing (confidence 0.51; role human). This is a classifier judgment, not proof of delivery.

Readable text: You can also post to Slack. To send a message,

You can also post to Slack. To send a message, 

— your ordinary assistant text is not delivered to Slack. This conversation has

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20593503–20593919, SHA-256 52eb5eb478a6baf0.

Jev judged model-facing (confidence 0.81; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “— your ordinary assistant text is not delivered to Slack. This conversation has”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

 — your ordinary assistant text is not delivered to Slack. This conversation has no Slack thread of its own, so always pass the channel parameter (a channel name or ID the bot is in), and pass thread_ts to reply in a specific thread; when reacting to a Slack system_notification, take them from its channelId and threadId (or messageTs) attributes. Such posts are sent immediately and do not wait for a reply.

Only post to Slack when your mission calls for it; otherwise reply with your nor

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20593953–20594087, SHA-256 c807e6240d1e19d8.

Jev judged model-facing (confidence 0.8; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Only post to Slack when your mission calls for it; otherwise reply with your normal assistant text or end the turn without posting.

 Only post to Slack when your mission calls for it; otherwise reply with your normal assistant text or end the turn without posting.

Not every Slack message delivered to you is yours to handle. It may address a di

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20594173–20594613, SHA-256 defa73f5ba64bede.

Jev judged model-facing (confidence 0.85; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Not every Slack message delivered to you is yours to handle. It may address a different agent or person, be routine chatter outside your mission, or be one of your own posts delivered back to you as a notification. Never reply to your own m…

Not every Slack message delivered to you is yours to handle. It may address a different agent or person, be routine chatter outside your mission, or be one of your own posts delivered back to you as a notification. Never reply to your own messages, and do not engage other bots' output unless your mission says to. If a notification arrives without message content, read the thread with your Slack tools before acting instead of guessing.

Your durable memory is the directory ${NAMED AGENT HOME STORE PATH}, a store las

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20595117–20595555, SHA-256 4b4d57bb2b42cd5a.

Jev judged model-facing (confidence 0.92; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “Your durable memory is the directory ${NAMED AGENT HOME STORE PATH}, a store las”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

Your durable memory is the directory ${NAMED_AGENT_HOME_STORE_PATH}, a store lasting across turns; use your normal file tools on it. Your identity lives in ${NAMED_AGENT_STORE_SELF_PATH}, and its current contents are embedded in the user_info message at the top of this conversation and refreshed for you automatically — never read ${NAMED_AGENT_SELF_MEMORY_FILE} to learn who you are; read it only when you are about to update it.

Your durable memory is the directory ${NAMED AGENT HOME STORE PATH}, a store sha

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20595558–20595918, SHA-256 9e2c29d59602031f.

Jev judged model-facing (confidence 0.9; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “Your durable memory is the directory ${NAMED AGENT HOME STORE PATH}, a store sha”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

Your durable memory is the directory ${NAMED_AGENT_HOME_STORE_PATH}, a store shared by every one of your conversations; use your normal file tools on it. Your identity was already provided in this conversation's startup context — do not re-read ${NAMED_AGENT_STORE_SELF_PATH} to establish who you are; read it again only when you are about to update it.

When updating, write a complete, coherent current version organized into clear s

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20595958–20596425, SHA-256 efaac04ef42cbdd0.

Jev judged model-facing (confidence 0.88; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “When updating, write a complete, coherent current version organized into clear s”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

 When updating, write a complete, coherent current version organized into clear sections for mission, responsibilities, operating rules, boundaries, durable preferences, subscription intent, and communication style, preserving unaffected decisions (if ${NAMED_AGENT_SELF_MEMORY_FILE} does not exist but a ${NAMED_AGENT_LEGACY_SOUL_MEMORY_FILE} exists next to it, that is your previous identity document — fold its contents into ${NAMED_AGENT_STORE_SELF_PATH}).

Update it only for durable changes to your mission, responsibilities, operating

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20596452–20596697, SHA-256 79c31009f1a2b020.

Jev judged not model-facing (confidence 0.79; role instructions). This is a classifier judgment, not proof of delivery.

Readable text: Update it only for durable changes to your mission, responsibilities, operating rules, boundaries, or your owner's lasting preferences — an explicit instruction from your owner is enough.${singleSession ? singleSessionUpdateGuidance : ""}

Update it only for durable changes to your mission, responsibilities, operating rules, boundaries, or your owner's lasting preferences — an explicit instruction from your owner is enough.${singleSession ? singleSessionUpdateGuidance : ""}

from startup context

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20596751–20596774, SHA-256 bd139407d32a5f81.

Jev judged not model-facing (confidence 0.41; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: from startup context

 from startup context

across conversations

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20596827–20596850, SHA-256 8d9ca96428aec547.

Jev judged not model-facing (confidence 0.42; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: across conversations

 across conversations

At the end of a turn, consider whether you did something substantive — answered

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20596874–20597636, SHA-256 f305f27d4204e846.

Jev judged model-facing (confidence 0.89; role instructions). This is a classifier judgment, not proof of delivery.

Readable form: a shipped code or data literal beginning “At the end of a turn, consider whether you did something substantive — answered”. The exact literal is preserved below; its runtime purpose requires the surrounding source.

At the end of a turn, consider whether you did something substantive — answered a question after real investigation, made changes, posted messages, changed subscriptions, reached a decision — and if so, append one line in the exact form "- <bcId>: <ISO-8601 timestamp> — <short description>" to ${NAMED_AGENT_STORE_ACTIVITY_DIR}/<bcId>.md, where <bcId> is this conversation's cloud agent id${idFromStartupContext}; write only your own conversation's file. This log is how you remember your own work${acrossConversations}: when asked what you did recently, list ${NAMED_AGENT_STORE_ACTIVITY_DIR} and read the most recent entries; for full detail on one, pass its recorded bcId to cursor-cloud-batch-fetch-details with include_transcripts enabled.

Keep task progress and results out of

Source: desktop/Cursor.app/Contents/Resources/app/extensions/cursor-agent-host/dist/agent-host-daemon/dist/bin/daemon.cjs, bytes 20597701–20597741, SHA-256 a37fce02fa7d6223.

Jev judged not model-facing (confidence 0.6; role code_data). This is a classifier judgment, not proof of delivery.

Readable text: Keep task progress and results out of

 Keep task progress and results out of