agentsroom-bin

LOW
maintainer un1t 1 votes scanned 2026-10-06 00:13:36.889724
View on AUR
Why flagged

The package installs a prebuilt Electron binary from the project's official domain; while the host is not on common whitelists, it is the legitimate project site, and the binary is verified via sha512sums, posing no active execution risk beyond standard proprietary software.

Triggered rules

Low Few votes, recently uploaded zero_votes_recent

Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.

Low AI review llm_review

An AI model (qwen/qwen3-235b-a22b-2507) reviewed this and agrees it is LOW (confidence 95%): The package installs a prebuilt Electron binary from the project's official domain; while the host is not on common whitelists, it is the legitimate project site, and the binary is verified via sha512sums, posing no active execution risk beyond standard proprietary software.

PKGBUILD

1# Maintainer: Eike Ahmels <eike.ahmels89 at gmail dot com>
2# Contributor: AgentsRoom <contact at agentsroom dot dev>
3
4pkgname=agentsroom-bin
5_pkgname=agentsroom
6pkgver=1.201.0
7pkgrel=1
8pkgdesc="Visual command center to run and coordinate multiple AI coding agents"
9arch=('x86_64' 'aarch64')
10url="https://agentsroom.dev"
11license=('LicenseRef-proprietary')
12depends=('gtk3' 'nss' 'alsa-lib' 'libxss' 'libxtst' 'at-spi2-core' 'libsecret'
13 'libnotify' 'util-linux-libs' 'xdg-utils'
14 'python') # resources/pty-helper.py backs every terminal on Linux
15optdepends=('libappindicator-gtk3: system tray icon'
16 'git: project detection and version control features'
17 'nodejs: run bundled MCP servers on system Node instead of Electron')
18provides=("${_pkgname}")
19conflicts=("${_pkgname}")
20# Prebuilt Electron bundle: stripping or generating debug symbols breaks it.
21options=('!strip' '!debug' '!emptydirs')
22source_x86_64=("${pkgname}-${pkgver}-x86_64.deb::${url}/downloads/desktop_${pkgver}_amd64.deb")
23source_aarch64=("${pkgname}-${pkgver}-aarch64.deb::${url}/downloads/desktop_${pkgver}_arm64.deb")
24sha512sums_x86_64=('086438bd45e41b2314465e01e28f747962d99192efa0ea579d46a53cdee74c81d68e1a026a9a47bc515b262df3565ae1cb6c4f6729050556d74b1b98d00208de')
25sha512sums_aarch64=('706ac277224323a7573e0f7129b7fc5693eccee44fdaaeba96c4a0aec6e9639fa40756591014e5691e8905ed9a9840a4d9d33f4b0ddb70364ace756f401c25fc')
26# makepkg would only unwrap the outer `ar` archive; we unpack data.tar ourselves.
27noextract=("${pkgname}-${pkgver}-x86_64.deb" "${pkgname}-${pkgver}-aarch64.deb")
28install="${pkgname}.install"
29
30_appdir="/opt/AgentsRoom"
31
32package() {
33 # Stream data.tar.* straight out of the .deb, whatever its compression.
34 bsdtar -xOf "${srcdir}/${pkgname}-${pkgver}-${CARCH}.deb" 'data.tar.*' \
35 | bsdtar -xf - -C "${pkgdir}" ./opt ./usr
36
37 # Debian changelog, filed under the .deb's internal package name "desktop".
38 rm -rf "${pkgdir}/usr/share/doc"
39
40 # The .deb postinst does these three things; pacman has no postinst payload,
41 # so they are baked into the package instead.
42
43 # 1. /usr/bin entry point = the sandbox-aware launcher, never the raw binary.
44 install -dm755 "${pkgdir}/usr/bin"
45 ln -sf "${_appdir}/agentsroom-launcher" "${pkgdir}/usr/bin/${_pkgname}"
46 chmod 755 "${pkgdir}${_appdir}/agentsroom-launcher"
47
48 # 2. Chromium SUID sandbox helper. fakeroot already gives it root:root; the
49 # setuid bit is recorded in the package and restored by pacman on install.
50 # If it ever ends up unusable (nosuid /opt), launcher.sh degrades instead
51 # of aborting.
52 chmod 4755 "${pkgdir}${_appdir}/chrome-sandbox"
53
54 # 3. Tell electron-updater this is a pacman install. Without this it reads the
55 # "deb" marker shipped in the .deb payload and would try to dpkg-install an
56 # update over pacman-owned files. Our release feed carries no .pacman
57 # artifact, so the app cleanly reports that it cannot self-update and the
58 # user upgrades through their AUR helper.
59 echo 'pacman' > "${pkgdir}${_appdir}/resources/package-type"
60
61 # The shipped .desktop file execs the raw Electron binary; route menu
62 # launches through the launcher as well.
63 sed -i "s|^Exec=${_appdir}/agentsroom |Exec=${_pkgname} |" \
64 "${pkgdir}/usr/share/applications/${_pkgname}.desktop"
65
66 install -dm755 "${pkgdir}/usr/share/licenses/${pkgname}"
67 ln -s "${_appdir}/LICENSE.electron.txt" "${_appdir}/LICENSES.chromium.html" \
68 "${pkgdir}/usr/share/licenses/${pkgname}/"
69}
70

Scan history

Scanned at (UTC)SeverityRules
2026-10-06 00:13:36 Low 2
2026-10-05 23:40:58 Low 2

Report a package

Reports go to the AURWatch maintainer (one person) and are read by hand. No login required.

0 / 4000
Your suggestion