AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
MCP verified Apache-2.0 Self-run

Cursor Rules Java

mcp-jabrena-cursor-rules-java · by jabrena

An opinionated, AI-native development workflow for Java Enterprise — reusable Skills, Agents, Commands, and MCP servers combined with a human-in-the-loop model to modernize real-world SDLC practices.

No reviews yet
0 installs
0 views
view→install

Install

$ agentstack add mcp-jabrena-cursor-rules-java

✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.

Security review

✓ Passed

No issues found. Passed automated security review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures

What it can access

  • Network access No
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets No
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Verified badge

Passed review? Show it. Paste this badge into your README, it links to the public security report.

AgentStack Verified badge Links to your public security report.
[![AgentStack Verified](https://agentstack.voostack.com/badges/verified.svg)](https://agentstack.voostack.com/security/report/mcp-jabrena-cursor-rules-java)

Reliability & compatibility

Security review passed
0 installs to date
no reviews yet
1mo ago

Declared compatibility

Claude CodeClaude DesktopCursorWindsurf

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Cursor Rules Java? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

Commands, Agents & Skills for Java

[](https://starchart.cc/jabrena/cursor-rules-java)

[](https://github.com/jabrena/cursor-rules-java/actions/workflows/maven.yaml)

> Languages: [Español](./READMEES.md) · [中文](./READMEZH.md) > > Help this project grow: Become a sponsor

Goal

An opinionated AI-native workflow for evolving modern Java Enterprise SDLC practices through reusable Skills, Agents, Commands & MCP servers.

Project at a glance

  • 12 Commands
  • 9 Agents
  • 116 Skills

Latest Updates

Explore the latest published content on the project website and follow its evolution through new skills, improvements, and fixes in the [CHANGELOG](./CHANGELOG.md).

Start in 60 seconds

Install every skill for your preferred agent:

# Cursor
npx skills add jabrena/cursor-rules-java --skill '*' --agent cursor -y

# Claude Code
npx skills add jabrena/cursor-rules-java --skill '*' --agent claude-code -y

# Codex
npx skills add jabrena/cursor-rules-java --skill '*' --agent codex -y

# GitHub Copilot
npx skills add jabrena/cursor-rules-java --skill '*' --agent github-copilot -y

See it in action

Ask your agent:

Use @110-java-maven-best-practices to review this Maven project.
Explain the findings, apply the approved improvements, and validate the build.

The skill guides the agent through a structured Maven review while keeping you in control of proposed changes.

5-Minute Onboarding

Learn to use this project following the quick guide [Getting Started in 5 minutes](./documentation/guides/GETTING-STARTED-IN-5-MINUTES.md).

Migrating from legacy rules

Current System prompts/rules are deprecated and will be removed in v0.17.0. If you still use them, review the release 0.14.0 article.

Choose your path

Commands compose the workflow by routing work to the right agent and skill set:

Plan

Turn an idea into an actionable change with user stories, GitHub Issues or Jira, ADRs, diagrams, AI plan mode, and OpenSpec.

/update-issue
@robot-business-analyst
    @043-planning-github-issues
    @044-planning-jira
    @014-agile-user-story
/create-adr
@robot-architect
    @030-architecture-adr-general
    @031-architecture-adr-functional-requirements
    @032-architecture-adr-non-functional-requirements
/create-diagram
@robot-architect
    @033-architecture-diagrams
/create-spec
@robot-tech-lead
    @042-planning-openspec
    @051-design-two-steps-methods
    @052-design-hamburger-method
    @053-design-simple-rules
    @054-design-tdd
    @055-design-parallel-change
    @121-java-object-oriented-design
    @122-java-type-design
    @123-java-design-patterns
    @130-java-testing-strategies
/explore-design
@robot-architect
    @034-architecture-design-exploration
/review-alignment
@robot-business-analyst
/review-breaking-changes
@robot-tech-lead

MCP Servers
    Jbang-Quarkus-JDBC
    MongoDB
    JavaDocs
    Serena-LSP
    Grafana

Build

Implement and improve Java applications with Maven, design, coding, testing, security, documentation, Spring Boot, Quarkus, Micronaut, OpenAPI, and WireMock guidance.

/implement-issue
@robot-tech-lead
    /create-feature-branch
    /create-worktree
    @robot-java-coder
    @robot-java-spring-boot-coder
    @robot-java-quarkus-coder
    @robot-java-micronaut-coder
    @robot-no-java
MCP Servers
    Jbang-Quarkus-JDBC
    MongoDB
    JavaDocs
    Serena-LSP

Operate

Measure and improve production behavior through observability, profiling, benchmarking, and performance testing.

/profile
@robot-java-performance
    @161-java-profiling-detect
    @162-java-profiling-analyze
    @163-java-profiling-refactor
    @164-java-profiling-verify
/benchmark
@robot-java-performance
    @151-java-performance-jmeter
    @152-java-performance-gatling

MCP Servers
    Jbang-Quarkus-JDBC
    MongoDB
    Serena-LSP
    Grafana

Compliance (Alpha)

Review Java systems, AI models, and how GenAI tools are used across applications and delivery pipelines for regulation-aware engineering controls, evidence, and qualified owner handoffs spanning AI, data, security, product, platform, market, and governance. These skills support engineering awareness and do not provide legal advice.

| Regulation | Skill | | --- | --- | | EU AI Act | 801-regulations-eu-ai-act | | DORA | 802-regulations-dora | | GDPR | 803-regulations-gdpr | | NIS2 | 804-regulations-eu-nis2 | | Cyber Resilience Act | 805-regulations-eu-cyber-resilience-act | | Data Act | 806-regulations-eu-data-act | | Digital Services Act | 807-regulations-eu-digital-services-act | | Digital Markets Act | 808-regulations-eu-digital-markets-act | | MiFID II | 810-regulations-eu-mifid-ii | | Market Abuse Regulation | 811-regulations-eu-market-abuse-regulation | | Product Liability Directive | 812-regulations-eu-product-liability-directive |

Note: This set of skills could be a good complement for the future OWASP EU Compliance MCP.

Explore the complete [Commands](./documentation/guides/INVENTORY-COMMANDS-JAVA.md), [Agents](./documentation/guides/INVENTORY-AGENTS-JAVA.md), [Skills](./documentation/guides/INVENTORY-SKILLS-JAVA.md), and [MCP Servers](./documentation/guides/THIRD-PARTIES.md) inventories.

Project Components

The project generates a set of deliverables at the end of any iteration.

| Inventory | Installation | Getting Started | | --------------- | -------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------- | | 1. [Commands](./documentation/guides/INVENTORY-COMMANDS-JAVA.md) | @004-commands-installation Install Commands in project | [Commands](./documentation/guides/COMMANDS.md) | | 2. [Agents](./documentation/guides/INVENTORY-AGENTS-JAVA.md) | @005-agents-installation Install Agents in Cursor/Claude | [Agents](./documentation/guides/GETTING-STARTED-AGENTS.md) | | 3. [Skills](./documentation/guides/INVENTORY-SKILLS-JAVA.md) | npx skills add jabrena/cursor-rules-java --skill '*' --agent cursor -y | [Skills](./documentation/guides/GETTING-STARTED-SKILLS.md) |

Compatibility

This project is compatible with any tool that supports Commands, Agents, Skills, MCP Servers and AGENTS.md.

Skill Validations

Every push runs the following validation checks in [CI Builds](./.github/workflows/maven.yaml) to keep documentation and generated skills correct, consistent, and secure:

| Name | Purpose | | --- | --- | | 1. [MarkdownValidator](./markdown-validator/src/main/java/info/jab/markdownvalidator/MarkdownValidator.java) | Protects the documentation layer by catching Markdown parsing drift and remote link failures before skill-specific checks run. | | 2. skill-check | Confirms every generated skill follows the expected packaging contract, complementing scanners that focus on behavior or security risk. | | 3. cisco-ai-skill-scanner by Cisco | Adds behavior-oriented security coverage by looking for risky skill flows that structural validation cannot see. | | 4. SkillSpector by NVIDIA | Provides an independent static quality and security review, useful for comparing findings against the other scanners. | | 5. Snyk Agent Scan by SNYK | Focuses on agent-skill supply-chain and prompt-risk signals, adding another security perspective alongside Cisco and SkillSpector. |

Limitations

Lack of determinism

From the outset, be aware that results from interactions with these Skills and agents are not deterministic because of how the models behave, but you can mitigate that with clear goals and validation checkpoints.

Not all models behave in the same way

Some interactive skills require Premium models for interactive use; otherwise they follow a fixed sequence of steps.

Limits of interactions with models

Models can generate code, but they cannot execute it against your local data. To bridge that gap, some Skills include scripts you run locally.

Software engineers must remain in the loop

This project supports software engineering work; it does not replace engineering judgment. A software engineer must review, guide, and validate AI-generated decisions, code, and outcomes before they are used.

Access to corporate data

Use caution when a problem involves corporate databases or other sensitive organizational data. Before granting an AI-assisted workflow access, assess authorization, privacy, data leakage, retention, and unintended modification risks. Apply least-privilege access, human review, validation, and monitoring. See OWASP GenAI Data Security Risks & Mitigations 2026, and the new set of [skills about EU regulation](#compliance-alpha).

Contribute

  • Follow the [5-minute guide](./documentation/guides/GETTING-STARTED-IN-5-MINUTES.md) and tell us where the experience can improve.
  • [Browse the skill inventory](./documentation/guides/INVENTORY-SKILLS-JAVA.md) and propose a missing Java workflow.
  • Open an issue to report a problem or suggest an enhancement.
  • Read [CONTRIBUTING.md](./CONTRIBUTING.md) to improve a skill, agent, command, or project guide.
  • Star the repository if these workflows help your Java projects.

Architecture Decision Records (ADR)

  • Review the [ADR index](./documentation/adr/README.md) for the complete list.

Java JEPs from Java 8 onward

Java uses JEPs (JDK Enhancement Proposals) to describe new language and platform features. This repository tracks which JEPs could improve the Skills and guidance here.

  • [JEPs list](./documentation/jeps/All-JEPS.md)

Further resources

Talks, articles, reference links, skill portals, and related projects live in [Project references](./documentation/guides/PROJECT-REFERENCES.md).

Developed by humans with support from Cursor and Codex, with ❤️ from Madrid

Source & license

This open-source MCP server is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.