Cursor Team Marketplace (May 1, 2026): First-Party Plugin Controls Without a Repo
Cursor shipped a Team Marketplace update on May 1, 2026: admins can create a team marketplace without connecting a repository, and manage install behavior for first-party plugins (MCP servers, skills, subagents, rules, hooks).
Editorial Team
The AI Coding Tools Directory editorial team researches and reviews AI-powered development tools to help developers find the best solutions for their workflows.
Cursor shipped a Team Marketplace update on May 1, 2026 that makes it easier for orgs to standardize agent tooling without repo-level setup. The headline: admins can now create a team marketplace without connecting a repository first, then centrally manage installation policies for first-party plugins.
The AI-native code editor with $1B+ ARR, 25+ models, and background agents on dedicated VMs
TL;DR
What Actually Shipped
According to Cursor's official changelog entry for May 1, 2026:
- Marketplace setup without a repository: admins can create a team marketplace even if they haven't connected a repo yet.
- Centralized first-party plugin controls: admins can add, remove, and configure install behavior for Cursor's first-party plugins.
- Distribution policies: each plugin can be configured as:
- Default Off (discoverable and opt-in)
- Default On (installed by default, but removable)
- Required (installed and not removable)
Why This Matters for Agent Workflows
Cursor is treating plugins as a packaging format for agent capabilities. In the same changelog entry, Cursor says plugins can bundle:
- MCP servers
- Skills
- Subagents
- Rules
- Hooks
If you're rolling out agentic coding across a team, these controls are a practical way to:
- Keep tool access consistent across developers
- Reduce "it works on my machine" drift in agent setups
- Standardize safety defaults (for example, requiring specific hooks or rules)
Source
- Cursor changelog: Team Marketplace Updates (May 1, 2026): https://cursor.com/changelog/05-01-26
Tools Mentioned in This Article
Free Resource
2026 AI Coding Tools Comparison Chart
Side-by-side comparison of features, pricing, and capabilities for every major AI coding tool.
No spam, unsubscribe anytime.
Workflow Resources
Cookbook
AI-Powered Code Review & Quality
Automate code review and enforce quality standards using AI-powered tools and agentic workflows.
Cookbook
Building AI-Powered Applications
Build applications powered by LLMs, RAG, and AI agents using Claude Code, Cursor, and modern AI frameworks.
Cookbook
Building APIs & Backends with AI Agents
Design and build robust APIs and backend services with AI coding agents, from REST to GraphQL.
Cookbook
Debugging with AI Agents
Systematically debug complex issues using AI coding agents with structured workflows and MCP integrations.
MCP Server
AWS MCP Server
Interact with AWS services including S3, Lambda, CloudWatch, and ECS from your AI coding assistant.
MCP Server
Context7 MCP Server
Fetch up-to-date library documentation and code examples directly into your AI coding assistant.
MCP Server
Docker MCP Server
Manage Docker containers, images, and builds directly from your AI coding assistant.
MCP Server
Figma MCP Server
Access Figma designs, extract design tokens, and generate code from your design files.
Frequently Asked Questions
What changed in Cursor's Team Marketplace on May 1, 2026?
What is a Cursor plugin in this update?
Related Articles
Cursor Security Review (April 30, 2026): Always-on PR Security Reviewer + Scheduled Vulnerability Scanner
Cursor Security Review entered beta on April 30, 2026 for Teams and Enterprise plans, adding always-on security agents: a PR Security Reviewer that leaves inline findings and a scheduled Vulnerability Scanner that can send Slack updates.
Read more →NewsClaude Code v2.1.126 (May 1, 2026): claude project purge, gateway-aware /model, OAuth paste login, managed-sandbox security fix
Claude Code v2.1.126 adds claude project purge to delete local state, lists gateway /v1/models in /model when using ANTHROPIC_BASE_URL, lets claude auth login accept pasted OAuth codes for SSH/WSL/containers, expands dangerously-skip-permissions for protected paths, and ships a managed-sandbox security fix.
Read more →NewsGemini API April 2026 Update: Flex/Priority Tiers, Deep Research with MCP, embedding-2 GA, gemini-3.1-flash-tts-preview
April 2026 in the Gemini API: new Flex and Priority inference tiers (Apr 1), gemini-3.1-flash-tts-preview (Apr 15), Deep Research updates with MCP server integration and File Search (Apr 21), gemini-embedding-2 GA (Apr 22), and the gemini-robotics-er-1.5-preview shutdown (Apr 30).
Read more →