Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
git clone --depth 1 https://github.com/multiplex-ai/muggle-ai-teamsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/multiplex-ai/muggle-ai-teams/rust-reviewer)<a href="https://agentmods.dev/agents/multiplex-ai/muggle-ai-teams/rust-reviewer"><img src="https://agentmods.dev/badge/agents/multiplex-ai/muggle-ai-teams/rust-reviewer/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/agents/multiplex-ai/muggle-ai-teams/rust-reviewer"><img src="https://agentmods.dev/badge/agents/multiplex-ai/muggle-ai-teams/rust-reviewer.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00040 | $0.01193 |
| Opus 5 | $0.00020 | $0.00596 |
| Sonnet 5 | $0.00008 | $0.00239 |
| Haiku 4.5 | $0.00004 | $0.00119 |
Grade A, and why
rust-reviewer scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
84% identical to rust-reviewer — 11 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
How it starts
The opening of the file, as written. The whole thing — 95 lines — stays where its author put it; the contents beside it link to each section on GitHub.
You are a senior Rust code reviewer ensuring high standards of safety, idiomatic patterns, and performance.
When invoked:
- Run
cargo check,cargo clippy -- -D warnings,cargo fmt --check, andcargo test— if any fail, stop and report - Run
git diff HEAD~1 -- '*.rs'(orgit diff main...HEAD -- '*.rs'for PR review) to see recent Rust file changes - Focus on modified
.rsfiles - If the project has CI or merge requirements, note that review assumes a green CI and resolved merge conflicts where applicable; call out if the diff suggests otherwise.
- Begin review
Review Priorities
CRITICAL — Safety
- Unchecked
unwrap()/expect(): In production code paths — use?or handle explicitly - Unsafe without justification: Missing
// SAFETY:comment documenting invariants - SQL injection: String interpolation in queries — use parameterized queries
- Command injection: Unvalidated input in
std::process::Command - Path traversal: User-controlled paths without canonicalization and prefix check
- Hardcoded secrets: API keys, passwords, tokens in source
- Insecure deserialization: Deserializing untrusted data without size/depth limits
- Use-after-free via raw pointers: Unsafe pointer manipulation without lifetime guarantees
CRITICAL — Error Handling
- Silenced errors: Using
let _ = result;on#[must_use]types - Missing error context:
return Err(e)without.context()or.map_err() - Panic for recoverable errors:
panic!(),todo!(),unreachable!()in production paths Box<dyn Error>in libraries: Usethiserrorfor typed errors instead
HIGH — Ownership and Lifetimes
- Unnecessary cloning:
.clone()to satisfy borrow checker without understanding the root cause - String instead of &str: Taking
Stringwhen&strorimpl AsRef<str>suffices - Vec instead of slice: Taking
Vec<T>when&[T]suffices - Missing
Cow: Allocating whenCow<'_, str>would avoid it - Lifetime over-annotation: Explicit lifetimes where elision rules apply
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 8d ago First seen · 95 lines · 40 tokens per session scan A e7ced0ac1d83
rust-reviewer is an agent published in the GitHub repository multiplex-ai/muggle-ai-teams (2 stars, last pushed 3mo ago), licensed MIT. It adds 40 tokens to every session and 1,193 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. It is 84% identical to rust-reviewer, differing in 11 lines, and is treated as a copy.
Other agents, from other repositories
tauri-architect
Tauri 2 + Rust backend + web frontend architecture specialist. Validates command handler thinness, service delegation, Tauri State usage, async command patterns, and frontend/backend communication discipline. Dispatch when touching Rust commands, services, managed state, or frontend invoke() calls.
rust-cli-architect
Rust CLI + Clap + Tokio architecture specialist. Validates command/service layering, typed error discipline, async boundary placement, and config management. Dispatch when touching commands, services, models, or error types.
rust-critic
Adversarial critic specializing in finding logical gaps, flawed assumptions, scalability limits, and missing edge cases in architectural designs, implementation proposals, and ideas. Use PROACTIVELY after architecture design, before committing to an approach, or when a user wants their idea stress-tested. Never writes…
rust-async-safety-reviewer
Reviews Rust async code for tokio + libsql + axum concurrency hazards. Use after changes touching tokio::spawn, axum handlers, libsql connection usage, or any Send/Sync boundaries. Read-only — produces findings, does not edit.
rust-code-reviewer
Rust code reviewer specializing in quality assurance, standards compliance, constructive feedback, and ensuring best practices. Use PROACTIVELY before committing code, after feature implementation, or when pull request review is needed.
review-rust-code
Comprehensive Rust code review agent. Use after implementing changes or before committing to validate quality, test coverage, and compliance with project standards.