Repository navigation
feat(third_party): add Workday plugin - #518
Merged
Merged
Conversation
djiang-jq
marked this pull request as ready for review
October 7, 2026 04:53
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Adds
workdayto the marketplace. It follows the same pattern asquickbooks-online(#512): a metadata-only plugin that gates a Cursor-hosted built-in MCP server backed by a Merge Agent Handler connector.Why there is no
mcp.jsonWorkday is served by Cursor as a built-in MCP server (Merge Agent Handler's
workdayconnector). The backend offers that server only to callers who have a plugin with a matching name installed from a global marketplace, so this manifest carries metadata and a logo and nothing else.namemust stay exactlyworkday. It is the join key the backend matches against the connector'smarketplacePluginName. Renaming it silently turns the connector off.cursor-publicto have any effect.Backend dependency
This plugin has no effect until the backend registers the connector.
MERGE_CONNECTORSinbackend/server/src/mcp/merge/connectors.tscurrently holds only QuickBooks Online; Workday needs an entry like:plus
"workday": { "enabled": true }in themerge_connector_settingsStatsig config. Landing this plugin first is harmless: with no matching connector, nothing is offered.Contents
.cursor-plugin/plugin.jsonmcpServers, novariables— auth is Cursor-managed OAuth.assets/logo.pngREADME.mdmcp.jsonup front; capability table mirrors Merge's Workday tool categories.CHANGELOG.md,LICENSEPlus the usual two registry edits: an entry in
.cursor-plugin/marketplace.jsonand a row in the rootREADME.mdtable.Logo provenance
Avatar of the official
WorkdayGitHub organization (github.com/Workday.png), resized 400→192 and converted to RGBA. Same sourcing approach as Xero's.Things I could not verify — please check
applicationCredentialExternalId: "grok". I don't know whether a Workday OAuth credential exists in Merge yet, so the backend snippet above leaves it unset (Merge default).minClientVersions.cursoris3.19.0, copied fromquickbooks-online, with the same open question about which client release supports Cursor-hosted built-in connectors.Validation
npm install --no-save ajv ajv-formats && node scripts/validate-plugins.mjs→All plugins validated successfully.Opened as a draft pending the confirmations above.
Note
Low Risk
Repo-only marketplace metadata and documentation with no runtime or auth code; connector behavior and sensitive HR data access depend on separate backend rollout.
Overview
Adds a new
workdayintegration to the official marketplace, following the same metadata-only pattern as QuickBooks Online: manifest, docs, logo, and registry rows—nomcp.json, because the MCP server is Cursor-hosted and gated by installing a plugin whosenamemust stayworkday.Registers the plugin in
.cursor-plugin/marketplace.jsonand the rootREADME.mdplugin table. Underthird_party/workday/, shipsplugin.json(integrations category, Cursor-managed OAuth,minClientVersions.cursor3.19.0), plus README (install, capabilities for workers/org/time off/payroll/recruiting/WQL), CHANGELOG, and MIT LICENSE.Until the backend registers the Merge Workday connector and enables it in config, installing the plugin has no effect; landing this first is safe.
Reviewed by Cursor Bugbot for commit 6060c2c. Bugbot is set up for automated code reviews on this repo. Configure here.