Agent skill

Update Deps

by webern in webern/cargo-readme

Update cargo dependencies to their latest major versions one at a time, verifying each with check/build/test and committing individually.

Apache-2.0Auto-check passedDevelopment

Install Update Deps

skills CLI
$ npx skills add webern/cargo-readme --skill update-deps -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install webern/cargo-readme update-deps --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/webern/cargo-readme.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/update-deps .claude/skills/update-deps && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
update-deps
GitHub stars
385
Token cost
~661 tokens
SKILL.md length
353 words
Files
1
Skills in repo
2
Repo updated
First seen
Licence
Apache-2.0

At a glance

Update cargo dependencies to their latest major versions one at a time, verifying each with check/build/test and committing individually.

  • Works in 4 steps: Cargo Update Before Major Bumps → Identify Major Version Bumps → Update Each Dependency → …
  • Tasks that involve Technical documentation
  • SKILL.md covers Preconditions, Step 1 — Cargo Update Before…, Step 2 — Identify Major… and Step 3 — Update Each Dependency, plus 2 more sections
  • Calls cargo and git

What it does

Update Deps is an agent skill from webern/cargo-readme. Update cargo dependencies to their latest major versions one at a time, verifying each with check/build/test and committing individually. Invoke with /update-deps.

Its SKILL.md is about 660 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Technical documentation. It works with Rust and Git. The repository describes itself as: Generate README.md from docstrings. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Technical documentation

Example prompts

  • “/update-deps”

Workflow steps

4 steps, taken from the step headings in SKILL.md.

  1. Cargo Update Before Major Bumps
  2. Identify Major Version Bumps
  3. Update Each Dependency
  4. Minor/Patch Updates

What it can do on your machine

Read from SKILL.md and the folder at commit d76a96d. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • cargo
    • git

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Update Deps loads about 661 tokens when it runs. Until then it costs about 44 tokens; SKILL.md has 353 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~44
When it runs · the whole SKILL.md, loaded when a task matches
~661

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from webern/cargo-readme at commit d76a96d, republished under its Apache-2.0 licence (© webern). 353 words, ~661 tokens.

Download SKILL.mdSave it as .claude/skills/update-deps/SKILL.md (or your agent's skills folder).
name
update-deps
description
Update cargo dependencies to their latest major versions one at a time, verifying each with check/build/test and committing individually. Invoke with /update-deps.
disable-model-invocation
false
user-invocable
true

Update Cargo Dependencies

Update each dependency in the root Cargo.toml to its latest major version, one at a time, with verification and individual commits. Then run cargo update for minor/patch updates.

Preconditions

Verify ALL of the following before starting. If any fails, stop and tell the user.

  1. Not on main: git branch --show-current must not be main.
  2. Up to date with main: git fetch origin main, then git rev-parse HEAD must equal git rev-parse origin/main. If not: AskUserQuestion Is this branch OK?
  3. Clean working tree: git status --porcelain must produce no output. If not: AskUserQuestion commit before proceeding?

Step 1 — Cargo Update Before Major Bumps

Run cargo update, then cargo check, cargo build, and cargo test. Fix issues. If there are changes, commit with the message run cargo update

Step 2 — Identify Major Version Bumps

Read the root Cargo.toml. For each crate under [dependencies] (skip [dev-dependencies]), run cargo search <crate-name> --limit 1 to find the latest published version.

Major update rules:

  • 0.x crates: minor version is the major. 0.3 -> 0.4 is major; 0.3 -> 0.3.5 is not.
  • >=1 crates: only the major matters. 1 -> 2 is major; 1 -> 1.5 is not.

Print the list: <name>: <current> -> <latest-major>. If none, skip to Step 3.

Show full SKILL.md (148 more words)Show less

Step 3 — Update Each Dependency

Process each major update sequentially. For each:

  1. Edit Cargo.toml — change the version to the new major using least-specific semver. Preserve features and other attributes.
  2. cargo update — refresh Cargo.lock.
  3. Verify — run cargo check, cargo build, cargo test in order. If any step fails, read the errors and fix them. Repeat until all three pass. Don't give up after one attempt — breakage from major bumps is expected. Fix warnings in source code, not in test expectations.
  4. Commit — stage all changes. Message format: update <dep> from <old> to <new> using least-specific versions (e.g. update toml from 0.8 to 0.9).

Step 4 — Minor/Patch Updates

  1. Run cargo update
  2. If Cargo.lock changed (git diff --quiet Cargo.lock), commit it: run cargo update
  3. If unchanged, tell the user.

Completion

Summarize: which deps got major updates (from/to), whether cargo update changed anything, total commits created.

© webern, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .claude/skills/update-deps of webern/cargo-readme.

Open the folder on GitHubat commit d76a96d

Compare with similar skills

Update Deps next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Update Deps compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Update Deps this skillwebern/cargo-readme385—~661Automated safety check: PassApache-2.0
Doc SyncJetBrains/ideavim10k2 repos~2.6kAutomated safety check: PassMIT
Worktrunk Tend CI Guidancemax-sixty/worktrunk8.9k—~6.4kAutomated safety check: PassCustom licence
Deepwiki Rssopaco/deepwiki-rs3.1k—~748Automated safety check: PassMIT
Worktrunk Release Workflowmax-sixty/worktrunk8.9k—~6.9kAutomated safety check: PassCustom licence
Mermaid Diagramsjjmartres/opencode1336 repos~1.9kAutomated safety check: PassMIT

Similar skills

  • Doc Sync

    JetBrains/ideavim

    Official

    Keeps IdeaVim documentation in sync with code changes. An agent skill from JetBrains/ideavim.

    10k GitHub starsUsed in 2 repos~2.6k tokens
    DevelopmentAuto-check passed
  • Worktrunk Tend CI Guidance

    max-sixty/worktrunk

    Adds Worktrunk-specific rules to the tend CI workflows: Codecov polling, Rust test commands, labels and review criteria for pull requests handled in CI.

    8.9k GitHub stars~6.4k tokensUpdated today
    DevelopmentAuto-check passed
  • Deepwiki Rs

    sopaco/deepwiki-rs

    AI-powered Rust documentation generation engine for comprehensive codebase analysis, C4 architecture diagrams, and automated technical documentation.

    3.1k GitHub stars~748 tokensUpdated 23 days ago
    DevelopmentAuto-check passed
  • Worktrunk Release Workflow

    max-sixty/worktrunk

    Walks a maintainer through cutting a Worktrunk release: sync the release branch, pass two test gates, review the changes, then publish.

    8.9k GitHub stars~6.9k tokensUpdated today
    DevelopmentAuto-check passed
  • Mermaid Diagrams

    jjmartres/opencode

    Helps an agent pick the right Mermaid diagram type and write the syntax for class, sequence, flow, ER, C4, state and other software diagrams.

    133 GitHub starsUsed in 6 repos~1.9k tokens
    DevelopmentAuto-check passed
  • RustPython Stdlib Upgrade

    RustPython/RustPython

    Upgrades a Python standard library module from CPython into RustPython with update_lib, then triages and marks the tests that still fail.

    22k GitHub stars~876 tokensUpdated today
    DevelopmentAuto-check passed

More from webern/cargo-readme

  • Review

    webern/cargo-readme

    Reviews a GitHub pull request for correctness, architecture, security, backward compatibility, and test coverage.

    385 GitHub stars~2k tokensUpdated 11 days ago
    Auto-check: notes

Works with

Categories

Questions about Update Deps

What does Update Deps do?

Update cargo dependencies to their latest major versions one at a time, verifying each with check/build/test and committing individually. Update Deps is an agent skill from webern/cargo-readme. Update cargo dependencies to their latest major versions one at a time, verifying each with check/build/test and committing individually.

When should I use Update Deps?

Update Deps fits situations like: tasks that involve Technical documentation.

How do I install Update Deps in Claude Code?

Run `npx skills add webern/cargo-readme --skill update-deps -a claude-code`. Or copy the skill folder (.claude/skills/update-deps in webern/cargo-readme) into .claude/skills/update-deps in your project. Claude Code loads it when a task matches its description.

How do I install Update Deps in Codex?

Run `npx skills add webern/cargo-readme --skill update-deps -a codex`. Or copy the skill folder (.claude/skills/update-deps in webern/cargo-readme) into .agents/skills/update-deps in your project. Codex loads it when a task matches its description.

Can I use Update Deps in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add webern/cargo-readme --skill update-deps -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/update-deps, .gemini/skills/update-deps, .github/skills/update-deps and .opencode/skills/update-deps in your project.

What does Update Deps need to run?

Going by SKILL.md and its folder, Update Deps needs the command-line tools its instructions call (cargo and git).

Does Update Deps access the network?

SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Update Deps safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Update Deps use?

Update Deps is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Update Deps use?

About 661 tokens (SKILL.md is roughly 2.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Update Deps?

Skills that share tags, products or a category with Update Deps: Doc Sync (JetBrains/ideavim, 10k stars), Worktrunk Tend CI Guidance (max-sixty/worktrunk, 8.9k stars), Deepwiki Rs (sopaco/deepwiki-rs, 3.1k stars) and Worktrunk Release Workflow (max-sixty/worktrunk, 8.9k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Update Deps?

webern (a GitHub user) maintains it in webern/cargo-readme, which has 385 GitHub stars. The repository holds 2 skills in this directory. The repository was last updated on September 26, 2026.

Source: webern/cargo-readme on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.