bigsnatch
maintainer invisi101
· 0 votes
· scanned 2026-08-03 00:08:14.047287
LOW
View on AUR ↗
Why flagged
The flagged 'external install' is a cargo install of bpf-linker, a build dependency, during the build process from the official Rust crates.io registry, which is a standard and trusted practice for Rust projects; this does not constitute a supply-chain risk or execution of untrusted remote code.
Triggered rules
LOW
AI review downgraded a static finding
llm_review
The static rules flagged this MEDIUM, but an AI model (qwen/qwen3-235b-a22b-07-25) reviewed the full PKGBUILD and judged it LOW (confidence 95%): The flagged 'external install' is a cargo install of bpf-linker, a build dependency, during the build process from the official Rust crates.io registry, which is a standard and trusted practice for Rust projects; this does not constitute a supply-chain risk or execution of untrusted remote code.
1 higher static finding superseded - not the current verdict (shown for transparency)
MEDIUM
External install via pipx/uv/poetry/cargo/go/gem
alt_pkg_manager_install
A non-pip/npm package manager (pipx, uv, poetry, cargo install, go install, gem, conda…) fetches and builds an external package at build time, outside source=() and makepkg's checksums.
-
PKGBUILD:19
command -v bpf-linker >/dev/null 2>&1 || cargo install bpf-linker
PKGBUILD
1 offending line(s) highlighted
1
# Maintainer: invisi101 <https://github.com/invisi101>
2
pkgname=bigsnatch
3
pkgver=0.1.3
4
pkgrel=1
5
pkgdesc="Real-time eBPF network connection monitor — see what your computer is reaching out to"
6
arch=('x86_64')
7
url="https://github.com/invisi101/bigsnatch"
8
license=('GPL-3.0-only')
9
depends=('polkit')
10
makedepends=('rust' 'cargo' 'protobuf' 'base-devel' 'wayland' 'libxcb' 'fontconfig' 'freetype2')
11
source=("${pkgname}-${pkgver}.tar.gz::${url}/archive/v${pkgver}.tar.gz")
12
sha256sums=('231510786404a4bdb182d3aca0592f792d592120fdade7792d3eaa579abfdf4d')
13
14
build() {
15
cd "${pkgname}-${pkgver}"
16
17
# Install nightly + bpf-linker if not present
18
rustup toolchain install nightly --component rust-src 2>/dev/null || true
19
command -v bpf-linker >/dev/null 2>&1 || cargo install bpf-linker
20
21
make all
22
}
23
24
package() {
25
cd "${pkgname}-${pkgver}"
26
27
install -Dm755 target/release/snitchster-daemon "$pkgdir/usr/bin/bigsnatch-daemon"
28
install -Dm755 target/release/snitchster-gui "$pkgdir/usr/bin/bigsnatch"
29
install -Dm644 systemd/snitchster-daemon.service "$pkgdir/usr/lib/systemd/system/bigsnatch-daemon.service"
30
install -Dm644 assets/bigsnatch.svg "$pkgdir/usr/share/icons/hicolor/scalable/apps/bigsnatch.svg"
31
install -Dm644 LICENSE "$pkgdir/usr/share/licenses/${pkgname}/LICENSE" 2>/dev/null || true
32
33
# Desktop entry with correct installed paths
34
install -dm755 "$pkgdir/usr/share/applications"
35
cat > "$pkgdir/usr/share/applications/bigsnatch.desktop" <<EOF
36
[Desktop Entry]
37
Name=BigSnatch
38
Comment=Real-time network connection monitor
39
GenericName=Network Monitor
40
Exec=/usr/bin/bigsnatch
41
Terminal=false
42
Type=Application
43
Icon=bigsnatch
44
Categories=Network;Monitor;System;Security;
45
Keywords=network;firewall;monitor;connections;snitch;ebpf;
46
StartupWMClass=bigsnatch
47
EOF
48
}
49
Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-08-03 00:08:14 | LOW | 2 |
| 2026-08-02 00:16:08 | LOW | 2 |
| 2026-08-01 00:11:18 | LOW | 2 |
| 2026-07-31 00:14:10 | LOW | 2 |
| 2026-07-30 00:17:23 | LOW | 2 |
| 2026-07-29 00:25:53 | LOW | 2 |
| 2026-07-28 00:07:28 | LOW | 2 |
| 2026-07-27 00:24:32 | LOW | 2 |
| 2026-07-26 00:07:32 | LOW | 2 |
| 2026-07-25 00:13:44 | LOW | 2 |
| 2026-07-24 00:02:28 | LOW | 2 |
| 2026-07-23 00:14:47 | LOW | 2 |
| 2026-07-22 00:29:32 | LOW | 2 |
| 2026-07-21 00:24:15 | LOW | 2 |
| 2026-07-20 00:19:49 | LOW | 2 |
| 2026-07-19 00:17:08 | LOW | 2 |
| 2026-07-18 00:14:48 | LOW | 2 |
| 2026-07-17 00:06:16 | LOW | 2 |
| 2026-07-16 00:05:41 | LOW | 2 |
| 2026-07-15 00:09:25 | LOW | 2 |