pub fn opt_in_rules() -> HashSet<&'static str>
Returns the set of rule names that require explicit opt-in