crab-on-desk-git

LOW
maintainer Supernovatux 0 votes scanned 2026-10-06 00:13:36.889724
View on AUR
Why flagged

The package builds from a git source repository, which is normal for AUR packages; the low severity is due to few votes and recent upload, but there is no evidence of malicious behavior or unverifiable prebuilt code execution.

Triggered rules

Low Few votes, recently uploaded zero_votes_recent

Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.

Low AI review llm_review

An AI model (qwen/qwen3-235b-a22b-2507) reviewed this and agrees it is LOW (confidence 95%): The package builds from a git source repository, which is normal for AUR packages; the low severity is due to few votes and recent upload, but there is no evidence of malicious behavior or unverifiable prebuilt code execution.

PKGBUILD

1# Maintainer: Supernovatux <thulashitharan.d at gmail dot com>
2_pkgname=crab-on-desk
3pkgname="${_pkgname}-git"
4pkgver=r0.0000000
5pkgrel=1
6pkgdesc="A rust based pet for coding agents."
7arch=('x86_64')
8url="https://github.com/Supernovatux/${_pkgname}"
9license=('AGPL-3.0-or-later')
10depends=('gcc-libs' 'glibc' 'wayland' 'libglvnd' 'libxkbcommon')
11makedepends=('git' 'cargo' 'cmake' 'clang')
12options=('!lto')
13optdepends=('crab-on-desk-themes: Themes from rullerzhou-afk/clawd-on-desk ported for this proj'
14 'hyprland: cursor tracking (roam, dizzy, eye tracking), permission prompt placement and focusing the terminal from it'
15 'kwin: cursor tracking (roam, dizzy, eye tracking) and permission prompt placement on KDE Plasma'
16 'xdg-desktop-portal: system accent colour and light/dark scheme in the settings and permission windows'
17 'claude-code: the agent whose hooks drive the pet')
18provides=("${_pkgname}")
19conflicts=("${_pkgname}")
20source=("git+${url}.git")
21sha256sums=('SKIP')
22
23pkgver() {
24 cd "${_pkgname}"
25 printf "r%s.%s" "$(git rev-list --count HEAD)" "$(git rev-parse --short HEAD)"
26}
27
28prepare() {
29 cd "${_pkgname}"
30 export RUSTUP_TOOLCHAIN=stable
31 cargo fetch --locked --target "$(rustc --print host-tuple)"
32}
33
34build() {
35 cd "${_pkgname}"
36 export RUSTUP_TOOLCHAIN=stable
37 make CARGO_FLAGS=--frozen
38}
39
40package() {
41 cd "${_pkgname}"
42 export RUSTUP_TOOLCHAIN=stable
43 make PREFIX=/usr DESTDIR="${pkgdir}" CARGO_FLAGS=--frozen install
44 install -Dm644 LICENSE "${pkgdir}/usr/share/licenses/${pkgname}/LICENSE"
45}
46

Scan history

Scanned at (UTC)SeverityRules
2026-10-06 00:13:36 Low 2
2026-10-05 23:40:58 Low 1

Report a package

Reports go to the AURWatch maintainer (one person) and are read by hand. No login required.

0 / 4000
Your suggestion