Source profileQuality 92/100Review permissions

terrylica/cc-skills/plugins/rust-tools/skills/rust-sota-arsenal/SKILL.md

rust-sota-arsenal

Reference guide for state-of-the-art Rust tooling across refactoring, profiling, benchmarking, testing, and SIMD optimization. Use whenever the.

Source repository stars
61
Declared platforms
0
Static risk flags
3
Last source update
2026-08-26
Source checked
2026-08-28

Decision brief

What it does: where it fits

State-of-the-art Rust tooling knowledge for refactoring, profiling, benchmarking, testing, and SIMD optimization — tools that LLMs often lack deep training data on.

Best for

  • Refactoring Rust code (AST-aware search/replace, API compatibility)
  • Performance work (profiling, PGO, Cargo profile tuning)
  • Benchmarking (choosing divan vs Criterion, setting up benchmarks)

Not for

  • Tasks that require unconfirmed production actions or broad system permissions.
  • Environments where the pinned source and install steps cannot be inspected.

Compatibility matrix

Platform support, with evidence labels

PlatformStatusEvidenceWhat to check
CodexNot declaredNo explicit evidencePortability before use
Claude CodeNot declaredNo explicit evidencePortability before use
CursorNot declaredNo explicit evidencePortability before use
Gemini CLINot declaredNo explicit evidencePortability before use
Open the compatibility checker

Installation

Inspect first. Install second.

The source command is displayed only when detected. A safe inspection prompt is always available so your agent can explain every action before execution.

Source-detected install commandSource
npx skills add https://github.com/terrylica/cc-skills --skill "plugins/rust-tools/skills/rust-sota-arsenal"
Safe inspection promptEditorial

Inspect the Agent Skill "rust-sota-arsenal" from https://github.com/terrylica/cc-skills/blob/05f53c5b24a445c1895e9b0590212e66cd70f39e/plugins/rust-tools/skills/rust-sota-arsenal/SKILL.md at commit 05f53c5b24a445c1895e9b0590212e66cd70f39e. List every install step, command, network request, credential, file read/write, external action, and rollback step. Explain whether it fits my task. Do not install or execute anything until I approve.

Workflow

What the source asks the agent to do

  1. 01

    Refactoring Workflow

    When to use: Refactoring patterns across a codebase — safer than regex because it understands Rust syntax.

    When to use: Refactoring patterns across a codebase — safer than regex because it understands Rust syntax.
  2. 02

    Performance Workflow

    Review the “Performance Workflow” section in the pinned source before continuing.

    Review and apply the “Performance Workflow” source section.
  3. 03

    Step 1: Profile with samply

    Review the “Step 1: Profile with samply” section in the pinned source before continuing.

    Review and apply the “Step 1: Profile with samply” source section.
  4. 04

    Step 2: Auto-configure profiles with cargo-wizard

    Review the “Step 2: Auto-configure profiles with cargo-wizard” section in the pinned source before continuing.

    Review and apply the “Step 2: Auto-configure profiles with cargo-wizard” source section.
  5. 05

    Step 3: PGO + BOLT with cargo-pgo

    Three-phase workflow for maximum performance:

    Three-phase workflow for maximum performance:

Permission review

Static risk signals and limitations

Network access

medium · line 14

The documentation includes network, browsing, or remote request actions.

WebFetch: https://crates.io/api/v1/crates/{crate_name}

Network access

medium · line 21

The documentation includes network, browsing, or remote request actions.

WebFetch: https://crates.io/api/v1/crates/{crate_name}/{version}/dependencies

Sends data out

high · line 34

The documentation includes sending, uploading, or posting data to a remote service.

curl -s -X POST https://api.firecrawl.dev/v2/scrape \

Runs scripts

medium · line 103

The documentation asks the agent to run terminal commands or scripts.

cargo semver-checks check-release

Runs scripts

medium · line 106

The documentation asks the agent to run terminal commands or scripts.

cargo semver-checks check-release --baseline-version 1.2.0

Evidence record

Why each signal appears

EvidenceSourceComputedTestedEditorial
SignalValueEvidence typeMeaning
Quality score92/100ComputedDocumentation, specificity, maintenance, and trust rules
Repository stars61SourceRepository attention, not individual Skill quality
Compatibility0 platformsSourceDeclared in the catalog source record
Usage guideautomated source guideEditorialGenerated or reviewed according to the visible evidence level

Pinned source

Provenance and original SKILL.md

Repository
terrylica/cc-skills
Skill path
plugins/rust-tools/skills/rust-sota-arsenal/SKILL.md
Commit
05f53c5b24a445c1895e9b0590212e66cd70f39e
License
MIT
Collected
2026-08-28
Default branch
main
View the original SKILL.md

Rust SOTA Arsenal

State-of-the-art Rust tooling knowledge for refactoring, profiling, benchmarking, testing, and SIMD optimization — tools that LLMs often lack deep training data on.

Self-Evolving Skill: This skill improves through use. If instructions are wrong, parameters drifted, or a workaround was needed — fix this file immediately, don't defer. Only update for real, reproducible issues.

CRITICAL: Web-Verify Before Acting

The reference docs in this skill are a starting point, not ground truth. Tool versions, compatibility matrices, and API surfaces evolve faster than static docs. Before recommending specific versions or making upgrade decisions:

  1. Check crates.io for latest versions: WebFetch the crates.io API to get current version info

    WebFetch: https://crates.io/api/v1/crates/{crate_name}
    Prompt: "What is the latest version? List recent versions."
    
  2. Check dependency compatibility: When upgrading (e.g., PyO3), verify downstream crate compatibility

    WebFetch: https://crates.io/api/v1/crates/{crate_name}/{version}/dependencies
    Prompt: "What version of {dependency} does this require?"
    
  3. Search for breaking changes: WebSearch for changelogs and migration guides

    WebSearch: "{crate_name} latest version changelog migration"
    
  4. Fallback: Firecrawl scrape (if WebFetch fails or returns incomplete data — e.g., JS-heavy pages, rate limits):

    curl -s -X POST https://api.firecrawl.dev/v2/scrape \
      -H "Content-Type: application/json" \
      -d '{"url": "https://crates.io/crates/{crate_name}", "formats": ["markdown"], "waitFor": 0}' \
      | jq -r '.data.markdown'
    

    Public API — no key, no tailnet. See /devops-tools:firecrawl-research-patterns for full API reference.

Why: The opendeviationbar-py session discovered PyO3 was at 0.28.2 (not 0.28) and pyo3-arrow at 0.17.0 only by web-searching — static docs would have led to wrong upgrade decisions.

When to Use

  • Refactoring Rust code (AST-aware search/replace, API compatibility)
  • Performance work (profiling, PGO, Cargo profile tuning)
  • Benchmarking (choosing divan vs Criterion, setting up benchmarks)
  • Testing (faster test runner, mutation testing, feature flag testing)
  • SIMD optimization (portable SIMD on stable Rust)
  • Migrating PyO3 bindings (0.22+)

Quick Reference

ToolInstallOne-linerCategory
ast-grepcargo install ast-grepAST-aware search/rewrite for RustRefactoring
cargo-semver-checkscargo install cargo-semver-checksAPI compat linting (hundreds of lints)Refactoring
samplycargo install samplyProfile → Firefox Profiler UIPerformance
cargo-pgocargo install cargo-pgoPGO + BOLT optimizationPerformance
cargo-wizardcargo install cargo-wizardAuto-configure Cargo profilesPerformance
divandivan = "<version>" in dev-deps#[divan::bench] attribute APIBenchmarking
criterioncriterion = "<version>" in dev-depsStatistics-driven, Gnuplot reportsBenchmarking
cargo-nextestcargo install cargo-nextest3x faster, process-per-testTesting
cargo-mutantscargo install cargo-mutantsMutation testing (missed/caught)Testing
cargo-hackcargo install cargo-hackFeature powerset testingTesting
maceratormacerator = "<version>" in depsType-generic SIMD + multiversioningSIMD
cargo-auditcargo install cargo-auditRUSTSEC vulnerability scanDependencies
cargo-denycargo install cargo-denyLicense + advisory + banDependencies
cargo-vetcargo install cargo-vetMozilla supply chain auditDependencies
cargo-outdatedcargo install cargo-outdatedDependency freshnessDependencies
cargo-geigercargo install cargo-geigerDetect unsafe code in depsDependencies
cargo-machetecargo install cargo-macheteFind unused dependenciesDependencies

Refactoring Workflow

ast-grep: AST-Aware Search and Rewrite

When to use: Refactoring patterns across a codebase — safer than regex because it understands Rust syntax.

# Search for .unwrap() calls
ast-grep --pattern '$X.unwrap()' --lang rust

# Replace unwrap with expect
ast-grep --pattern '$X.unwrap()' --rewrite '$X.expect("TODO: handle error")' --lang rust

# Find unsafe blocks
ast-grep --pattern 'unsafe { $$$BODY }' --lang rust

# Convert match to if-let (single-arm + wildcard)
ast-grep --pattern 'match $X { $P => $E, _ => () }' --rewrite 'if let $P = $X { $E }' --lang rust

For complex multi-rule transforms, use YAML rule files. See ast-grep reference.

cargo-semver-checks: API Compatibility

When to use: Before publishing a crate version — catches accidental breaking changes.

# Check current changes against last published version
cargo semver-checks check-release

# Check against specific baseline
cargo semver-checks check-release --baseline-version 1.2.0

# Workspace mode
cargo semver-checks check-release --workspace

Hundreds of built-in lints covering function removal, type changes, trait impl changes, and more (lint count grows with each release). See cargo-semver-checks reference.

Performance Workflow

Step 1: Profile with samply

# Build with debug info (release speed + symbols)
cargo build --release

# Profile (macOS — uses dtrace, needs SIP consideration)
samply record ./target/release/my-binary

# Opens Firefox Profiler UI in browser automatically
# Look for: hot functions, call trees, flame graphs

See samply reference for macOS dtrace setup and flame graph interpretation.

Step 2: Auto-configure profiles with cargo-wizard

# Interactive — choose optimization goal
cargo wizard

# Templates:
# 1. "fast-compile" — minimize build time (incremental, low opt)
# 2. "fast-runtime" — maximize performance (LTO, codegen-units=1)
# 3. "min-size"     — minimize binary size (opt-level="z", LTO, strip)

cargo-wizard writes directly to Cargo.toml [profile.*] sections. Endorsed by the Cargo team. See cargo-wizard reference.

Step 3: PGO + BOLT with cargo-pgo

Three-phase workflow for maximum performance:

# Phase 1: Instrument
cargo pgo build

# Phase 2: Collect profiles (run representative workload)
./target/release/my-binary < typical_input.txt

# Phase 3: Optimize with collected profiles
cargo pgo optimize

# Optional Phase 4: BOLT (post-link optimization, Linux only)
cargo pgo bolt optimize

PGO typically gives 10-20% speedup on CPU-bound code. See cargo-pgo reference.

Benchmarking Workflow

divan vs Criterion — When to Use Which

AspectdivanCriterion
API style#[divan::bench] attributecriterion_group! + criterion_main! macros
SetupAdd dep + #[divan::bench]Add dep + benches/ dir + Cargo.toml [[bench]]
Generic benchmarksBuilt-in #[divan::bench(types = [...])]Manual with macros
Allocation profilingBuilt-in AllocProfilerNeeds external tools
ReportsTerminal (colored)HTML + Gnuplot graphs
CI integrationCodSpeed (native)CodSpeed + criterion-compare
MaintenanceMaintained (check crates.io for cadence)Active (criterion-rs organization)

Recommendation: divan for new projects (simpler API); Criterion for existing projects or when HTML reports needed. See divan-and-criterion reference.

divan Quick Start

fn main() {
    divan::main();
}

#[divan::bench]
fn my_benchmark(bencher: divan::Bencher) {
    bencher.bench(|| {
        // code to benchmark
    });
}

Criterion Quick Start

use criterion::{criterion_group, criterion_main, Criterion};

fn my_benchmark(c: &mut Criterion) {
    c.bench_function("name", |b| {
        b.iter(|| {
            // code to benchmark
        });
    });
}

criterion_group!(benches, my_benchmark);
criterion_main!(benches);

Testing Workflow

cargo-nextest: Faster Test Runner

# Run all tests (3x faster than cargo test)
cargo nextest run

# Run with specific profile
cargo nextest run --profile ci

# Retry flaky tests
cargo nextest run --retries 2

# JUnit XML output (for CI)
cargo nextest run --profile ci --message-format libtest-json

Config file: .config/nextest.toml. See cargo-nextest reference.

cargo-mutants: Mutation Testing

# Run mutation testing on entire crate
cargo mutants

# Filter to specific files/functions
cargo mutants --file src/parser.rs
cargo mutants --regex "parse_.*"

# Use nextest as test runner (faster)
cargo mutants -- --test-tool nextest

# Check results
cat mutants.out/missed.txt     # Tests that didn't catch mutations
cat mutants.out/caught.txt     # Tests that caught mutations

Result categories: caught (good), missed (weak test), timeout, unviable (won't compile). See cargo-mutants reference.

cargo-hack: Feature Flag Testing

# Test every feature individually
cargo hack test --each-feature

# Test all feature combinations (powerset)
cargo hack test --feature-powerset

# Exclude dev-dependencies (check only)
cargo hack check --feature-powerset --no-dev-deps

# CI: verify no feature combination breaks compilation
cargo hack check --feature-powerset --depth 2

Essential for library crates with multiple features. See cargo-hack reference.

SIMD Decision Matrix

CrateStable RustType-GenericMultiversioningMaintained
maceratorYesYesYes (stable)Active
wideYesNo (concrete types)NoActive
pulpYesYesYesSuperseded by macerator
std::simdNightly onlyYesNoNightly-only (tracking issue: rust-lang/rust#86656)

Recommendation: macerator for new SIMD work on stable Rust. It's a fork of pulp with type-generic operations and runtime multiversioning (SSE4.2 → AVX2 → AVX-512 dispatch). See macerator reference.

Watch list: fearless_simd (limited arch support — only NEON/WASM/SSE4.2), std::simd (nightly-only — check tracking issue for stabilization status).

PyO3 Upgrade Path

For Rust↔Python bindings, PyO3 has evolved significantly since 0.22. Always check the PyO3 changelog for the latest version:

VersionKey Change
0.22Bound<'_, T> API introduced (replaces GIL refs)
0.23GIL ref removal complete, IntoPyObject trait
0.24vectorcall support, performance improvements
0.25+Free-threaded Python (3.13t) support, UniqueGilRef

See PyO3 upgrade guide for migration patterns.

Reference Documents

Release Pipeline

A 4-phase release gate script is available at plugins/rust-tools/scripts/rust-release-check.sh. It consolidates all quality gates into a single executable that can be adapted to any Rust project.

Running

# Full pipeline (Phases 1-3)
./plugins/rust-tools/scripts/rust-release-check.sh

# Include nightly-only checks (Phase 4)
./plugins/rust-tools/scripts/rust-release-check.sh --nightly

# Skip test suite (Phases 1-2 only)
./plugins/rust-tools/scripts/rust-release-check.sh --skip-tests

To use as a mise task in your project, copy the script and add to tasks/:

cp plugins/rust-tools/scripts/rust-release-check.sh tasks/release-check

Phase Overview

PhaseNameToolsBlockingNotes
1Fast Gatesfmt, clippy, audit, machete, geigerYesRuns in parallel for speed
2Deep Gatesdeny, semver-checks, outdatedMixedoutdated is advisory-only (never fails build)
3Testsnextest (or cargo test fallback)YesSkippable with --skip-tests
4Nightly-Onlyudeps, hackYesOpt-in via --nightly flag

Phase 1 -- Fast Gates runs all tools in parallel using background processes. Each tool is checked for installation first; missing tools are skipped with a warning rather than failing.

Phase 2 -- Deep Gates runs sequentially. cargo deny requires a deny.toml to be present. cargo semver-checks only runs for library crates (detected via [lib] in Cargo.toml or src/lib.rs). cargo outdated is advisory -- it reports but never blocks.

Phase 3 -- Tests prefers cargo nextest run for speed but falls back to cargo test if nextest is not installed.

Phase 4 -- Nightly-Only requires the --nightly flag and a nightly toolchain. cargo +nightly udeps finds truly unused dependencies. cargo hack check --each-feature verifies every feature flag compiles independently.

Exit Codes

  • 0 -- All blocking gates passed (advisory warnings are OK)
  • 1 -- One or more blocking gates failed

The summary at the end reports total passes, failures, and advisory warnings.

Troubleshooting

ProblemSolution
ast-grep no matchesCheck --lang rust flag; patterns must match AST nodes, not text
samply permission deniedmacOS: sudo samply record or disable SIP for dtrace
cargo-pgo no speedupWorkload during profiling must be representative of real usage
cargo-mutants too slowFilter with --file or --regex; use -- --test-tool nextest
divan vs criterion conflictThey can coexist — use separate bench targets in Cargo.toml
macerator compile errorsCheck minimum Rust version; requires SIMD target features
cargo-nextest missing testsDoc-tests not supported; use cargo test --doc separately
cargo-hack OOM on powersetUse --depth 2 to limit combinations

Post-Execution Reflection

After this skill completes, reflect before closing the task:

  1. Locate yourself. — Find this SKILL.md's canonical path before editing.
  2. What failed? — Fix the instruction that caused it.
  3. What worked better than expected? — Promote to recommended practice.
  4. What drifted? — Fix any script, reference, or dependency that no longer matches reality.
  5. Log it. — Evolution-log entry with trigger, fix, and evidence.

Do NOT defer. The next invocation inherits whatever you leave behind.

Frequently asked questions

What to verify before installation and use

What does the rust-sota-arsenal source document cover?

State-of-the-art Rust tooling knowledge for refactoring, profiling, benchmarking, testing, and SIMD optimization — tools that LLMs often lack deep training data on.

How do I install rust-sota-arsenal?

The source record exposes this install command: npx skills add https://github.com/terrylica/cc-skills --skill "plugins/rust-tools/skills/rust-sota-arsenal". Inspect the command and pinned source before running it.

Which permission-related actions were detected?

Static rules flagged network, send-data, exec-script in the source; the page lists the matching lines and excerpts.

Alternatives

Compare before choosing

Computed 10045,960

coreyhaines31/marketingskills

ab-testing

When the user wants to plan, design, or implement an A/B test or experiment, or build a growth experimentation program. Also use when the user mentions "A/B test," "split test," "experiment," "test this change," "variant copy," "multivariate test," "hypothesis," "should I test this," "which version is better," "test two versions," "statistical significance," "how long should I run this test," "growth experiments," "experiment velocity," "experiment backlog," "ICE score," "experimentation program

Computed 1008

narrative-io/narrative-skills-marketplace

design-analysis

Translate a fuzzy analytical question into a rigorous investigation plan. Interrogates the ask, grounds the plan in the available data dictionary, applies analytical best practices, and produces a structured brief of query specifications for a downstream query-writing skill. Plans, does not write SQL. Use when: "why did X drop", "is there a relationship between A and B", "who are our highest-value customers", "what's driving the change in Y", "investigate this trend", "design an analysis for", "

Computed 9982

vasilyu1983/AI-Agents-public

qa-testing-ios

Guides iOS testing with XCTest, XCUITest, Swift Testing, simctl, and xcresult. Use when choosing destinations, controlling flakes, or parsing test artifacts for native apps.

Computed 9882

vasilyu1983/AI-Agents-public

foundations-consumer-neuroscience

Consumer-neuroscience primitives for attention, arousal, bonding, narrative, memory, and reward. Use when shaping ethical UX, neuro study design, or DMCC/AI Act gates.