MCPLow riskUnclaimed
cursor-mcp
Cursor's agent (cursor-agent CLI) through MCP: any model your plan offers, resumable sessions.
qmediatqmediat/cursor-mcp
server.json
{
"$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
"name": "io.github.qmediat/cursor-mcp",
"description": "Cursor's agent (cursor-agent CLI) through MCP: any model your plan offers, resumable sessions.",
"repository": {
"url": "https://github.com/qmediat/cursor-mcp",
"source": "github"
},
"version": "1.2.0",
"packages": [
{
"registryType": "npm",
"identifier": "@qmediat.io/cursor-mcp",
"version": "1.2.0",
"transport": {
"type": "stdio"
},
"environmentVariables": [
{
"description": "Maximum concurrent cursor-agent processes: a positive integer; anything else is the default 3.",
"format": "string",
"name": "CURSOR_MAX_CONCURRENCY"
},
{
"description": "Set to `true` to run cursor-agent with --force (auto-approve every tool call) in cursor_agent and cursor_reply. DANGEROUS — trusted environments only. Never exposed as a tool parameter.",
"format": "string",
"name": "CURSOR_ALLOW_YOLO"
},
{
"description": "`enabled` or `disabled`, passed to cursor-agent as --sandbox <mode>: confines what an auto-approved agent may run. Unset leaves the CLI's default; any other value ends the server at startup.",
"format": "string",
"name": "CURSOR_SANDBOX"
},
{
"description": "After SIGTERM (timeout or cancellation), a child still alive this long is sent SIGKILL. A positive integer of milliseconds; default 5000.",
"format": "number",
"name": "CURSOR_KILL_GRACE_MS"
}
]
}
]
}Permissions
DeclaredDetected
Runs code—
nodeInstalls—
npm:@qmediat.io/cursor-mcp@1.2.0Runs install scripts—None
NetworkNoneNone
Needs credentialsNoneNone
Outside the workspace—None
Agent tools—None
Checks
Low risk · Nothing worth a warning was found.
Not reviewed by a person · Checked by rules; the model review is not switched on yet.
Versions
- #11.2.0latestOct 7, 2026
cursor-mcpOpen in Codeg