Cursor Able to git commit with out user permission in sandbox mode

Hey, thanks for the report. This is a known issue: sandbox mode bypasses the Command Allowlist for git commands.

Temporary workaround:

  • Open Cursor Settings → Agents → Inline Editing & Terminal
  • Enable “Legacy Terminal Tool”

This should restore proper Command Allowlist enforcement.

This issue has already been reported by other users and is being tracked by the team.

Related topics:

Let me know if enabling the Legacy Terminal Tool fixes the issue for you.