This repository contains Cursor Security Rules designed to improve the security of both development workflows and AI agent usage within the Cursor environment. These rules aim to enforce safe coding practices, control sensitive operations, and reduce risk in AI-assisted development.
☆379Aug 27, 2025Updated last year
Alternatives and similar repositories for cursor-security-rules
Users that are interested in cursor-security-rules are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Baseline rules files to improve the security of AI-generated code (Claude, Cursor, Copilot + more)☆241Dec 23, 2025Updated 9 months ago
- SecureMCP is a security auditing tool designed to detect vulnerabilities and misconfigurations in applications using the [Model Context P…☆140Jun 7, 2025Updated last year
- An OpenAI API Compatible Honeypot Gateway☆27Mar 17, 2025Updated last year
- ☆22Apr 10, 2025Updated last year
- Hands-on MCP security lab: 10 real incidents reproduced with vulnerable/secure MCP servers, pytest regressions, and Claude/Cursor battle-…☆89Dec 3, 2025Updated 9 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- PoC shadow SaaS and insecure credential detection system using a browser extension.☆45Aug 5, 2026Updated last month
- Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic …☆125Jan 22, 2026Updated 8 months ago
- 🛡️ High-performance WAF & CDN detection tool. Identify protection layers (Cloudflare, Akamai, AWS, Fastly, and more), run effectiveness …☆122Sep 4, 2026Updated 3 weeks ago
- ☆194Apr 16, 2025Updated last year
- ☆591Sep 8, 2026Updated 2 weeks ago
- ☆45Jul 17, 2025Updated last year
- MCP Snitch is a macOS application that intercepts and monitors MCP server communications, providing security analysis, access control, an…☆93Oct 14, 2025Updated 11 months ago
- An index of publicly available and open-source threat detection rulesets.☆141Apr 17, 2025Updated last year
- ChatGPT for Mac, living in your menubar.☆1,322Jun 26, 2026Updated 3 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A comprehensive security scanner for Model Context Protocol (MCP) servers that detects vulnerabilities and security issues in your MCP se…☆136Jul 20, 2026Updated 2 months ago
- Secrets Ninja is an GUI tool for validating & investigating API keys discovered during pentesting & bug bounty hunting.☆184Mar 5, 2026Updated 6 months ago
- Demonstration of multi-cloud federated user+workload auth☆14Jan 20, 2026Updated 8 months ago
- Advanced SQLMap command builder with an intuitive cheatsheet UI. Works locally in your browser as a single HTML file (no data sent anywhe…☆41Jul 6, 2025Updated last year
- Cobalt Strike beacon parser and crawler☆20Dec 14, 2025Updated 9 months ago
- ZAPISEC WAF-Copilot is an automated AI-powered security framework for web applications with a focus on highly configurable streamlined vu…☆20Oct 6, 2025Updated 11 months ago
- ☆71Oct 24, 2025Updated 11 months ago
- Chrome extension to extract LinkedIn profile data and send it to Zapier, Make, or any webhook-based automation tool.☆18May 27, 2025Updated last year
- Verified Entity Identity Lock (Expose hidden trust paths in your AWS IAM setup before they become security risks.)☆16Sep 21, 2026Updated last week
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Maturity Model Collaborative project☆15Feb 27, 2023Updated 3 years ago
- NVD API 2.0 client for CVE information☆14May 15, 2025Updated last year
- ☆162Mar 31, 2026Updated 5 months ago
- SimpleCrypt is a powerful command-line tool designed for securely encrypting and decrypting files and directories using AES-256 encryptio…☆20Mar 22, 2026Updated 6 months ago
- A public collection of detections designed to detect threats associated with the Okta WIC Platform.☆37Sep 8, 2026Updated 2 weeks ago
- Script to check Azure Front Door WAF for insecure RemoteAddr variable☆30Jul 11, 2025Updated last year
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆227Updated this week
- Deptective automatically determines the native dependencies required to run any arbitrary program or command.☆132Sep 14, 2026Updated 2 weeks ago
- Detect drift. Defend cloud.☆37Sep 19, 2026Updated last week
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Framework for Monitoring File Ingestion Source for Yara Matches☆52Mar 10, 2025Updated last year
- MCP security wrapper☆226Apr 14, 2026Updated 5 months ago
- An IAM Simulator that outputs detailed explains of how a request was evaluated.☆106Updated this week
- Creates Kubernetes Golden Tickets through ServiceAccount token forging and user certificate forging.☆52Mar 3, 2025Updated last year
- Azure AppHunter is an open-source tool created for security researchers, red teamers and defenders to help them identify excessive privil…☆105May 31, 2026Updated 3 months ago
- A Model Context Protocol server that connects AI assistants like Claude to AWS security services, allowing them to autonomously query, in…☆84Jul 25, 2025Updated last year
- Infrastructure-as-code for a serverless knowledge base using Amazon Bedrock, Aurora PostgreSQL (with pgvector), Lambda, and S3. This setu…☆19Mar 23, 2025Updated last year