agentleFS
Sign inSign up

Cursor rules examples

The rules real projects give Cursor's agent, from .cursor/rules.

Best matches · from page 2Worked for most · soon
affaan-mCursor rule

ECC / rules

affaan-m/ECC/.cursor/rules/typescript-security.md

TypeScript security extending common rules

246k30d agoReads credentialsDiscuss
danielvm-gitCursor rule

bigpowers / rules

danielvm-git/bigpowers/.cursor/rules/harden-vps.mdc

Harden a production Linux VPS for your application across three layers — application (systemd hardening, monitoring alerts, backup automation), Ubuntu OS (UFW firewall, fail2ban SSH, unattended-upgrades, SSH hardening), and VPS provider (health checks, daily backups, monthly snapshots). Use when the user wants to secure a production server, harden a VPS, audit server security, or mentions production hardening, VPS security, or harden the server.

24030d agoReads credentialsDiscuss
affaan-mCursor rule

ECC / rules

affaan-m/ECC/.cursor/rules/common-security.md

Security: mandatory checks, secret management, response protocol

246k30d agoDiscuss
anmolnagpalCursor rule

devops-skills / rules

anmolnagpal/devops-skills/.cursor/rules/appsec.mdc

Application-level security review: dependency manifests for known-vulnerable packages, missing HTTP security headers, permissive CORS configuration. Use when user says 'review my dependencies', 'check for vulnerable packages', 'run a dependency audit', 'audit security headers', 'review CORS config', or when working in package.json/package-lock.json, go.mod/go.sum, requirements.txt/poetry.lock, Gemfile.lock, Cargo.toml/Cargo.lock, pom.xml, or server/app config with CORS or header middleware.

832d agoReads credentialsDiscuss
anmolnagpalCursor rule

devops-skills / rules

anmolnagpal/devops-skills/.cursor/rules/owasp.mdc

Security review requiring judgment about exploitability: injection and input handling, authentication and session management, authorization, secret storage and cryptography, and Agentic AI risks, against OWASP Top 10:2025 and ASVS 5.0. Use when user says 'review for security', 'is this secure', 'review this endpoint for injection', 'check for SQL injection or XSS', 'review auth/authorization', 'how are we storing secrets', 'check how we store secrets in this service', 'is this crypto correct', or when writing cryptography, session management, or AI agent code. Judges reachability and impact in this codebase; /clouddrove:appsec owns the deterministic checks a tool can answer (lockfile CVEs, missing headers, wildcard CORS).

832d agoDiscuss
rustic-aiCursor rule

codeprism / rules

rustic-ai/codeprism/.cursor/rules/bash.mdc

This rule enforces best practices and coding standards for Bash scripting to improve code quality, maintainability, and security. It covers naming conventions, formatting, error handling, security, and performance considerations.

3115mo agoDiscuss
NVIDIACursor rule

dcgm-exporter / rules

NVIDIA/dcgm-exporter/.cursor/rules/shell-ci-security.mdc

Shell, CI, Docker, packaging, and security rules

1.9k3mo agoReads credentialsDiscuss
rustic-aiCursor rule

codeprism / rules

rustic-ai/codeprism/.cursor/rules/docker.mdc

This rule file provides comprehensive guidance on Docker best practices, covering Dockerfile construction, image optimization, and security considerations. It aims to improve the efficiency, maintainability, and security of Docker-based projects.

3115mo agoDiscuss
rustic-aiCursor rule

codeprism / rules

rustic-ai/codeprism/.cursor/rules/rust.mdc

This rule provides comprehensive best practices for Rust development, covering code organization, common patterns, performance, security, testing, pitfalls, and tooling. It aims to guide developers in writing idiomatic, efficient, secure, and maintainable Rust code.

3115mo agoDiscuss
lacymorrowCursor rule

paperclip-hub / rules

lacymorrow/paperclip-hub/.cursor/rules/security.mdc

Security Best Practices and Guidelines

157mo agoDiscuss
vibeevalCursor rule

vibecosystem / rules

vibeeval/vibecosystem/.cursor/rules/security.mdc

Security rules for code review and vulnerability prevention

5306mo agoReads credentialsDiscuss
aillomCursor rule

casa / rules

aillom/casa/.cursor/rules/01-casa-security.mdc

C.A.S.A security rules

03mo agoDiscuss
jackjin1997Cursor rule

agentgap / rules

jackjin1997/agentgap/.cursor/rules/agentgap-security.mdc

Security best practices

04mo agoDiscuss
ivangrynenkoCursor rule

cursorrules / rules

ivangrynenko/cursorrules/.cursor/rules/drupal-file-permissions.mdc

Drupal file permissions security standards

8811mo agoDiscuss
brendadeeznuts1111Cursor rule

betting-brain-v3 / rules

brendadeeznuts1111/betting-brain-v3/.cursor/rules/security-patterns.mdc

Security patterns and vulnerability prevention

812mo agoReads credentialsDiscuss
danielvm-gitCursor rule

bigpowers / rules

danielvm-git/bigpowers/.cursor/rules/security-review.mdc

AI-powered security analysis of code changes — traces data flow, detects injection, auth bypass, secrets exposure, and unsafe deserialization across files. Use when reviewing pending changes, before release-branch, during verify-work Phase 5, during build-epic Step 0 threat modeling, or when the user says \"security review\" or \"scan for vulns\".

24030d agoReads credentialsDiscuss
girijashankarjCursor rule

cursor-handbook / architecture

girijashankarj/cursor-handbook/.cursor/rules/architecture/dependency-management.mdc

Dependency management and package security rules

3031d agoDiscuss
girijashankarjCursor rule

cursor-handbook / security

girijashankarj/cursor-handbook/.cursor/rules/security/guardrails.mdc

Security guardrails applied to all AI interactions

3031d agoReads credentialsDiscuss
girijashankarjCursor rule

cursor-handbook / security

girijashankarj/cursor-handbook/.cursor/rules/security/security-compliance.mdc

Security compliance standards and regulatory requirements

3031d agoDiscuss
CLAUDE.md vs AGENTS.md

About cursor rules

What are cursor rules?

Instruction files for Cursor's agent, kept in .cursor/rules/ as .mdc files.

How are they different from AGENTS.md?

A rule can apply only to files matching a pattern, or only when the agent asks for it. AGENTS.md always applies.

How do I use one?

Copy the .mdc file into your project's .cursor/rules/ directory and adjust its globs.

Which ones worked?

Open a rule to see its discussion. Reports from people and their agents are coming.