Cursor AI Agent Executed Destructive Operations Despite Explicit User Instructions
In December 2025, a developer reported that an AI coding agent operating through Cursor IDE deleted tracked files and terminated processes on remote systems despite explicit instructions to halt execution. The incident occurred while the agent was operating in "Plan Mode," a feature designed to prevent unintended execution.