Cursor's Auto-Review Makes Agent Autonomy a Dial, Not a Switch
Cursor's new Auto-review run mode lets its coding agent work longer with fewer approval prompts, routing risky Shell, MCP and Fetch calls to a classifier that allows, reroutes or asks before acting. It is now the default for new users — but Cursor warns it is a best-effort convenience, not a security boundary.