‹ The Index

Cursor Rules

npm

MCP server for Cursor Rules

Works with: Claude Code, Cursor, Claude Desktop, Codex CLI, Gemini CLI, Cline, Windsurf, VS Code (installable)
installable: each client documents how to load an MCP server of this type — that is the client's promise, not a claim verified against this capability

Install (Claude Code):

claude mcp add cursor-rules -- npx -y cursor-rules-mcp
Looking for a replacement? npx tashan-cli doctor is free and tells you everything above about your whole config. tashan Pro names the replacement — which one, and how it measures. $6/mo.

Security audit

scanned 2026-08-09

Every finding is shown in full — which advisory, the version that fixes it, and the exact command run at install time. Nothing in this audit is behind a licence.

No known advisoriesclearchecked against OSV for 0.0.3
Runs a script at install timecodeecho ' To use cursor-rules-mcp, add this to your mcp.json file: "cursor-rules-mcp": { "command": "npx", "args": [ "cursor-rules-mcp" ] } '
Reads and writes files · Makes network requestsfrom declared dependencies
Can carry remote content into your agentit can pull third-party text into the model's context — treat what it returns as untrusted input
No build provenanceno attestation — the published artifact cannot be traced to its source

npm ↗  ·  pkg:cursor-rules-mcp

Already running this? npx tashan-cli doctor checks your whole config against the Index — how it works ›

Measured 2026-08-09  ·  scorer s5  ·  how  ·  something wrong here?