CPAC

A package trust layer for Arch-based Linux Distros.

Overview

CPAC is a package trust layer for Arch-based Linux distributions. It analyzes packages from both official repositories and the AUR, providing detailed trust scores and security analysis before you install anything.

CPAC checks community consensus, detects suspicious PKGBUILD patterns, and integrates with the cpac-trust-db for known advisories.

Builds from source, installs to /usr/local/bin. No leftover dependencies. How to install: Documentation

Current Status

Active Development

CPAC is currently in active development. Core package resolution algorithms are being refined, and the CLI interface is stabilizing.

Recent Updates