Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds
👥 Community & Social
Sichere ProgrammierungRefreshed repository pull requests page generally available(22.09.2026 um 03:25 Uhr)
Sichere ProgrammierungThe Joy of Learning the Basics Again(22.09.2026 um 03:28 Uhr)
Sichere ProgrammierungZero-Code OpenTelemetry Tracing for Dagster(22.09.2026 um 03:39 Uhr)
Linux Tipps & Hardening`prime-all`(22.09.2026 um 02:28 Uhr)
IT Security Toolsopensoho v0.15.2(22.09.2026 um 03:33 Uhr)
IT Security NachrichtenUS Proposes AI Incident Alert System in Talks With China, Bessent Says(22.09.2026 um 04:01 Uhr)
Sichere ProgrammierungRefreshed repository pull requests page generally available(22.09.2026 um 03:25 Uhr)
Sichere ProgrammierungThe Joy of Learning the Basics Again(22.09.2026 um 03:28 Uhr)
Sichere ProgrammierungZero-Code OpenTelemetry Tracing for Dagster(22.09.2026 um 03:39 Uhr)
Linux Tipps & Hardening`prime-all`(22.09.2026 um 02:28 Uhr)
IT Security Toolsopensoho v0.15.2(22.09.2026 um 03:33 Uhr)
IT Security NachrichtenUS Proposes AI Incident Alert System in Talks With China, Bessent Says(22.09.2026 um 04:01 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

I Built a Linter for Cursor Rules (Because Nobody Knows If Theirs Are Working)

There are at least 10 threads on the Cursor forum asking the same question: "How do I know if my .cursorrules are even being used?" I counted. Here are a few: ".cursorrules not working - how to know if they are being used?" "Cursor…

0
↗ Quelle (dev.to)
Reagiere als Erste:r — dein Feedback zählt!

There are at least 10 threads on the Cursor forum asking the same question:




"How do I know if my .cursorrules are even being used?"




I counted. Here are a few:




  • ".cursorrules not working - how to know if they are being used?"

  • "Cursor not following Rules"

  • "Rules not being applied automatically?"

  • "Cursor rules not working at all"



The answer is always the same: "Add a test marker like 'always start your response with 🦖' and see if it shows up."



That works, but it's a terrible developer experience. You shouldn't have to debug your config files by hiding easter eggs in your AI responses.



So I built a linter.






What It Does






npx cursor-lint






That's it. No install, no config. It scans your project and tells you what's wrong:




🔍 cursor-lint v0.1.1

Scanning /path/to/your/project...

.cursorrules
⚠ .cursorrules may be ignored in agent mode
→ Use .cursor/rules/*.mdc with alwaysApply: true

.cursor/rules/code.mdc
✗ Missing alwaysApply: true
→ Add alwaysApply: true to frontmatter for agent mode
⚠ Vague rule detected: "write clean code"
→ Make rules specific and verifiable

──────────────────────────────────────────────────
1 error, 2 warnings






Exit code 1 on errors, so it works in CI.






What It Catches



These are the actual mistakes that break rules, based on testing and forum complaints:






1. Using .cursorrules in Agent Mode



Agent mode ignores .cursorrules entirely. You need .cursor/rules/*.mdc files with alwaysApply: true in the frontmatter. The linter warns you if you're using the wrong format.






2. Missing alwaysApply: true



If your .mdc file doesn't have this in the frontmatter, it won't load in agent mode:




---
description: "My coding standards"
alwaysApply: true # ← This is required
---






Most people skip it because the docs don't make it obvious. The linter catches it.






3. Vague Rules That Do Nothing



I tested 30+ rules with before/after comparisons. Rules like these don't change Cursor's output:




  • "Write clean code"

  • "Follow best practices"

  • "Be consistent"

  • "Use proper error handling"



Cursor already tries to do these things. Telling it to "write clean code" is like telling a chef to "make it taste good." The linter flags 20 known vague phrases.






4. Bad YAML Frontmatter



A syntax error in your frontmatter means the whole file fails to parse. The linter catches malformed YAML before Cursor silently ignores your rules.






5. Comma-Separated Globs



This is wrong:




globs: "*.ts, *.tsx"






It should be:




globs: ["*.ts", "*.tsx"]






The linter catches it.






Why I Built This



I spent way too much time debugging rules that weren't working. The failure mode is silent. Cursor doesn't tell you "hey, your rules file has a syntax error" or "this rule is too vague to act on." It just... doesn't follow them. And you're left wondering if you did something wrong or if Cursor is just being Cursor.



A linter solves this. Run it once, fix the errors, move on.






Limitations



This tool catches configuration mistakes: wrong file format, missing frontmatter, vague rules. It doesn't fix:




  • Cursor bugs where valid rules are ignored

  • Context window overflow pushing rules out

  • Model inconsistency between runs



Those are platform issues. But based on forum threads, a solid chunk of "my rules don't work" complaints are actually config mistakes that a linter would catch.






Try It






npx cursor-lint






Zero config, zero dependencies, takes 2 seconds.





If you find a check we should add, open an issue. This is v0.1, and there's more to catch.






This is part of my series on .cursorrules that actually work. Previous posts covered which rules change output, how to write effective rules, and why agent mode ignores .cursorrules.

Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten I Built a Linter for Cursor Rules (Because Nobody Knows If Theirs Are Working)

Thematisch verwandte Begriffe: Built, Linter, Cursor, Rules · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-49449 | Joplin is an open source note-taking and to-do application that organise…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen

tsecurity.de Live Threat Radar

🔴 LIVE RADAR
MONITORING
AKTIV
CVE-DATENBANK
LIVE
🔍
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel Rechts: nächster Artikel unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick