Evidence CodeMarine can inspect
- Local workspace edits and generated files
- Shell events exposed by the Cursor hook surface
- Dependency, MCP and project instruction changes
Code and dependency monitoring across Cursor work, with local edit and shell adapters available for setup.
Workspace observation and pre-execution control are shown separately.
Keep provider permissions and sandboxes. Add one deterministic policy around the workspace and the rest of your stack.
Controls the surfaces and execution modes owned by the provider.
Secures resulting code, software supply chain and supported actions under one control model.
Install the CodeMarine app first, then add the security skills to Cursor. Hooks and MCP can be enabled separately.
codemarine agents install cursor --skills The app supplies the scanner. The provider skill or adapter connects it to Cursor.
InstallPlace the supported adapter and configuration.
VerifyCheck version, integrity and workspace binding.
ProveRun a harmless nonce-bound canary through the real host.
MaintainExpire proof when the host, policy or configuration changes.
Map the current workspace, provider paths and limits before deciding which controls to rely on.