from Hacker News

.env file is exposed to Cursor which cannot be turned off

by Bluestein on 6/8/25, 9:56 AM with 2 comments

  • by rvz on 6/8/25, 11:21 AM

    This should be SEV-2 security incident at lots of companies using Cursor with API keys or environment variables being leaked.