agentsroom-bin
The package installs a prebuilt Electron binary from the project's official domain; while the host is not on common whitelists, it is the legitimate project site, and the binary is verified via sha512sums, posing no active execution risk beyond standard proprietary software.
Triggered rules
zero_votes_recent
Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.
llm_review
An AI model (qwen/qwen3-235b-a22b-2507) reviewed this and agrees it is LOW (confidence 95%): The package installs a prebuilt Electron binary from the project's official domain; while the host is not on common whitelists, it is the legitimate project site, and the binary is verified via sha512sums, posing no active execution risk beyond standard proprietary software.
PKGBUILD
# Maintainer: Eike Ahmels <eike.ahmels89 at gmail dot com>
# Contributor: AgentsRoom <contact at agentsroom dot dev>
pkgname=agentsroom-bin
_pkgname=agentsroom
pkgver=1.201.0
pkgrel=1
pkgdesc="Visual command center to run and coordinate multiple AI coding agents"
arch=('x86_64' 'aarch64')
url="https://agentsroom.dev"
license=('LicenseRef-proprietary')
depends=('gtk3' 'nss' 'alsa-lib' 'libxss' 'libxtst' 'at-spi2-core' 'libsecret'
'libnotify' 'util-linux-libs' 'xdg-utils'
'python') # resources/pty-helper.py backs every terminal on Linux
optdepends=('libappindicator-gtk3: system tray icon'
'git: project detection and version control features'
'nodejs: run bundled MCP servers on system Node instead of Electron')
provides=("${_pkgname}")
conflicts=("${_pkgname}")
# Prebuilt Electron bundle: stripping or generating debug symbols breaks it.
options=('!strip' '!debug' '!emptydirs')
source_x86_64=("${pkgname}-${pkgver}-x86_64.deb::${url}/downloads/desktop_${pkgver}_amd64.deb")
source_aarch64=("${pkgname}-${pkgver}-aarch64.deb::${url}/downloads/desktop_${pkgver}_arm64.deb")
sha512sums_x86_64=('086438bd45e41b2314465e01e28f747962d99192efa0ea579d46a53cdee74c81d68e1a026a9a47bc515b262df3565ae1cb6c4f6729050556d74b1b98d00208de')
sha512sums_aarch64=('706ac277224323a7573e0f7129b7fc5693eccee44fdaaeba96c4a0aec6e9639fa40756591014e5691e8905ed9a9840a4d9d33f4b0ddb70364ace756f401c25fc')
# makepkg would only unwrap the outer `ar` archive; we unpack data.tar ourselves.
noextract=("${pkgname}-${pkgver}-x86_64.deb" "${pkgname}-${pkgver}-aarch64.deb")
install="${pkgname}.install"
_appdir="/opt/AgentsRoom"
package() {
# Stream data.tar.* straight out of the .deb, whatever its compression.
bsdtar -xOf "${srcdir}/${pkgname}-${pkgver}-${CARCH}.deb" 'data.tar.*' \
| bsdtar -xf - -C "${pkgdir}" ./opt ./usr
# Debian changelog, filed under the .deb's internal package name "desktop".
rm -rf "${pkgdir}/usr/share/doc"
# The .deb postinst does these three things; pacman has no postinst payload,
# so they are baked into the package instead.
# 1. /usr/bin entry point = the sandbox-aware launcher, never the raw binary.
install -dm755 "${pkgdir}/usr/bin"
ln -sf "${_appdir}/agentsroom-launcher" "${pkgdir}/usr/bin/${_pkgname}"
chmod 755 "${pkgdir}${_appdir}/agentsroom-launcher"
# 2. Chromium SUID sandbox helper. fakeroot already gives it root:root; the
# setuid bit is recorded in the package and restored by pacman on install.
# If it ever ends up unusable (nosuid /opt), launcher.sh degrades instead
# of aborting.
chmod 4755 "${pkgdir}${_appdir}/chrome-sandbox"
# 3. Tell electron-updater this is a pacman install. Without this it reads the
# "deb" marker shipped in the .deb payload and would try to dpkg-install an
# update over pacman-owned files. Our release feed carries no .pacman
# artifact, so the app cleanly reports that it cannot self-update and the
# user upgrades through their AUR helper.
echo 'pacman' > "${pkgdir}${_appdir}/resources/package-type"
# The shipped .desktop file execs the raw Electron binary; route menu
# launches through the launcher as well.
sed -i "s|^Exec=${_appdir}/agentsroom |Exec=${_pkgname} |" \
"${pkgdir}/usr/share/applications/${_pkgname}.desktop"
install -dm755 "${pkgdir}/usr/share/licenses/${pkgname}"
ln -s "${_appdir}/LICENSE.electron.txt" "${_appdir}/LICENSES.chromium.html" \
"${pkgdir}/usr/share/licenses/${pkgname}/"
}
Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-10-06 00:13:36 | Low | 2 |
| 2026-10-05 23:40:58 | Low | 2 |