New: OIDC tokens — Cursor-managed Cloud Agent VMs can mint short-lived OIDC JWTs from a local socket so you can assume cloud roles or call internal services (AWS, GCP, Azure, Vault, custom verifiers) without storing long-lived keys in Se…
Changelog
Cursor docs update
Cloud Agents
New: OIDC tokens — Cursor-managed Cloud Agent VMs can mint short-lived OIDC JWTs from a local socket so you can assume cloud roles or call internal services (AWS, GCP, Azure, Vault, custom verifiers) without storing long-lived keys in Secrets.
Best practices, capabilities, setup, security, and network docs now recommend OIDC tokens over long-lived cloud access keys and link to the new guide.
Enterprise
Security hardening now covers Cloud Agent OIDC tokens for short-lived federation into AWS, GCP, Azure, or custom OIDC verifiers.