Read through the description to confirm that this is the desired package, note when the package was last updated, and read any comments.

There are several methods for acquiring the build files: to contain dangerous commands through malice or ignorance on the part of the author.

The Arch User Repository (AUR) is a community-driven repository for Arch users.

It contains package descriptions (PKGBUILDs) that allow you to compile a package from source with makepkg and then install it via pacman.

Since makepkg uses fakeroot (and should never be run as root), there is some level of protection but you should never count on it.