Installation¶
TrustSight requires Arch Linux, Python 3.11 or later, and git (for cloning AUR repositories during analysis).
Install From This Repository¶
Repository PKGBUILD only
aur.archlinux.org/trustsight.git does not exist. There is no AUR package yet: build the PKGBUILD in this repository, as above. PyPI distributions are available for isolated virtual environments, but not for installation into Arch's system Python.
The PKGBUILD runs the packaged test suite during build, excluding
tests/test_fetcher.py and tests/test_rebaseline.py because they require
network and corpus fixtures unavailable in a clean package build. makepkg -si
pulls in the dependencies (pygit2, tldextract, rich, typer, cryptography) as proper
system packages. The result is tracked by pacman, so it upgrades and
uninstalls like anything else on the system.
Do not install into the system interpreter with pip: it is blocked by the
system Python's externally-managed-environment protection, and forcing it
with --break-system-packages risks conflicting with pacman-managed files.
For an isolated environment, install the PyPI distribution with
python -m venv .venv && .venv/bin/pip install trustsight.
For a development checkout with the test dependencies, use a virtualenv instead (see development setup).
Verdicts¶
Verdicts are template-based descriptions of each triggered finding. The score is always deterministic and calculated locally. No external API or LLM is needed.
Verify the installation¶
You should see a list of available commands: review, inspect, history, list, status, seed-db, baseline, full-aur, import-baseline, config, db, override, lint-rules, corpus, ioc, seed, forget.
Check your configuration:
Common failures¶
| Symptom | Cause | Fix |
|---|---|---|
trustsight review prints "No outdated packages found." |
No AUR packages installed, or all are up to date | Install an AUR package or wait for updates |
ModuleNotFoundError: No module named 'pygit2' |
System git not found or libgit2 headers missing | sudo pacman -S libgit2, then reinstall |