All skills
cursor avatar

/review-plugin-submission

@97128c0
by cursorcursor/plugins9.1k stars
857

Audit a Cursor plugin for marketplace readiness. Use when validating manifests, component metadata, discovery paths, and submission quality before publishing.

Use this Skill: https://skilld.dev/gh/cursor/plugins/review-plugin-submission

This session only. Nothing lands on disk.

SKILL.md

≈46 tokens always: the name and description. ≈391 when used: this file.

Review plugin submission

Trigger

A plugin is implemented and needs a final quality check before submission or release.

Workflow

  1. Verify manifest validity:
    • .cursor-plugin/plugin.json exists
    • name is valid lowercase kebab-case
    • metadata fields are coherent (description, version, author, license)
  2. Verify component discoverability:
    • Skills in skills/*/SKILL.md
    • Rules in rules/ as .mdc or markdown variants
    • Agents in agents/ markdown files
    • Commands in commands/ markdown or text files
    • Hooks in hooks/hooks.json
    • MCP config in mcp.json (or mcpServers override)
  3. Verify component metadata:
    • Skills include name and description frontmatter
    • Rules include valid frontmatter and clear guidance
    • Agents and commands include name and description
  4. Verify repository integration:
    • For marketplace repos, plugin entry exists in .cursor-plugin/marketplace.json
    • source resolves to plugin directory and names are unique
  5. Verify documentation quality:
    • README.md states purpose, installation, and component coverage
    • optional logo path is valid and repository-hosted

Checklist

  • Manifest exists and parses as valid JSON
  • All declared paths exist and are relative
  • No broken file references
  • No missing frontmatter on skills/rules/agents/commands
  • Plugin scope is clear and focused
  • Marketplace registration complete (if multi-plugin repo)

Output

  • Pass/fail report by section
  • Prioritized fix list
  • Final submission recommendation

Source: SKILL.md on GitHub

No alerts16d4 checks · Risk SAFE
  • Gen Agent Trust Hub16d

    This skill provides a set of instructions for auditing Cursor plugins. It does not contain any executable code, perform network operations, or access sensitive system files.

  • Socket16d

    No alerts

  • Snyk16d

    Risk: LOW · No issues

  • Runlayer7mo

    1 file scanned · No issues

Signed by skilld at 97128c0. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated 8 months ago

README badge

README badge for cursor/plugins/review-plugin-submission