CPAC
Overview
CPAC is a package trust layer for Arch-based Linux distributions. It analyzes packages from both official repositories and the AUR, providing detailed trust scores and security analysis before you install anything.
CPAC checks community consensus, detects suspicious PKGBUILD patterns, and integrates with the cpac-trust-db for known advisories.
Builds from source, installs to /usr/local/bin. No leftover dependencies. How to install: Documentation
Current Status
Active Development
CPAC is currently in active development. Core package resolution algorithms are being refined, and the CLI interface is stabilizing.
Recent Updates
- June 30, 2026
v1.0.0— View on GitHub
- June 29, 2026
v0.9.4— View on GitHub
- June 28, 2026
v0.9.3— View on GitHub