@brainervirus/workit-cursor
v8.9.0
Published
Workit Cursor plugin — shared MCP transport, native hooks, and sixteen method skills
Maintainers
Readme
@brainervirus/workit-cursor
Workit for Cursor: the shared MCP server, one native hook
dispatcher, the workit-contract rule, the eleven method skills and /wk-*
commands. Requires Node.js 24+ and network access on first run.
Install
npx @brainervirus/workit-cli init # select CursorThe wizard copies the plugin into ~/.cursor/plugins/local/workit (a real
directory) and registers the MCP server and hooks. Manual MCP config and host
limits: hosts guide.
Runtime
The MCP server runs through
npx -y --prefer-online --min-release-age=0 --package=@brainervirus/workit-cursor@latest …,
so manifests carry no repository-relative dist paths (the age override works
around npm/cli#9765). MCP is read-only for unattested callers; mutations run
through the workit CLI.
Hooks run through node "${CURSOR_PLUGIN_ROOT}/hooks/launch.mjs" <bin>, which
picks the plugin's bundled dist/ hook, else a global workit-cursor-hook on
PATH, else npx -y --prefer-offline pinned to the plugin's own version. It
never resolves @latest at hook time. Hooks are registered with
failClosed: false and the launcher fails open: offline, a crash or a timeout
lets the action through with a [workit] Cursor hook unavailable line on
stderr, while the hook's own denials (exit 2) still block. A window with no
folder open, or a payload without a conversation id, is allowed with a note.
A local install (workit init, install-cursor-plugin.sh) writes the
launcher's absolute path into every event, so only a Marketplace install
relies on Cursor expanding ${CURSOR_PLUGIN_ROOT}. On Windows the npx and
global-bin fallbacks run their .cmd shims through cmd.exe.
workit doctor reports the launcher mode (local with the runtime's version,
npx-pinned, missing or stale) and the latency of one no-op hook. It
also warns when Cursor started the Workit MCP server but no hook has run
since: the launcher stamps cursor-hook-last-run and the MCP server stamps
cursor-session-last-start in Workit's state directory.
The preToolUse hook applies the before-write gate
to write tools while the branch task has an open product choice or needs a
plan.
Marketplace
The repository root carries .cursor-plugin/marketplace.json indexing this
package. Cursor installs Marketplace plugins from git without building, so
skills/, commands/, rules/ and assets are committed; regenerate skills
with bun packages/workit-cursor/scripts/build.ts --skills-only.
bun run validate:cursor-marketplace checks the artifact against the pinned
Cursor schemas. The plugin is submission-ready but not published there.
