alephone-eternalx
maintainer hildigerr
· 8 votes
· scanned 2026-08-03 00:08:14.047287
LOW
View on AUR ↗
Why flagged
The source is a game scenario data archive from a plausible project-specific host; it is not executed directly and poses no code execution risk even if the host were compromised.
Triggered rules
LOW
AI review downgraded a static finding
llm_review
The static rules flagged this MEDIUM, but an AI model (qwen/qwen3-235b-a22b-07-25) reviewed the full PKGBUILD and judged it LOW (confidence 95%): The source is a game scenario data archive from a plausible project-specific host; it is not executed directly and poses no code execution risk even if the host were compromised.
1 higher static finding superseded - not the current verdict (shown for transparency)
MEDIUM
source=() URL on a non-standard host
source_untrusted_domain
One or more source=() URLs point to a host outside the trusted allowlist (github.com, gitlab.com, codeberg.org, pypi.org, …).
-
PKGBUILD:13
source=("http://eternal.bungie.org/files/_releases/EternalXv${pkgver//./}.zip"
PKGBUILD
1 offending line(s) highlighted
1
# Maintainer: carstene1ns <arch carsten-teibes de> - http://git.io/ctPKG
2
# Contributor: rabyte <rabyte__gmail>
3
4
pkgname=alephone-eternalx
5
pkgver=1.2.1
6
pkgrel=2
7
pkgdesc="A free scenario for Aleph One that continues the story of the Marathon trilogy"
8
arch=('any')
9
url="http://eternal.bungie.org/"
10
license=('unknown')
11
depends=('alephone')
12
install=eternalx.install
13
source=("http://eternal.bungie.org/files/_releases/EternalXv${pkgver//./}.zip"
14
"$pkgname.sh"
15
"$pkgname.desktop")
16
sha256sums=('f2c99574bec261bac8cc2aaeddeaa4e8a41e9a928b5ae109f6a592b5d5a4616a'
17
'367eac6d3652cb0aaa2d66c74770190d0e8eccfb8e46acf7fc991d652bfc70d0'
18
'57dfa56c798a325f4a673d608c71dd5dda73c06270229b6bdf2379a06b9a1df0')
19
20
prepare() {
21
# remove Mac OS metadata
22
find "Eternal $pkgver" -name .DS_Store -delete
23
}
24
25
package() {
26
# scenario data
27
install -d "$pkgdir"/usr/share/AlephOne/scenarios
28
cp -r "Eternal $pkgver" "$pkgdir"/usr/share/AlephOne/scenarios/eternalx
29
30
# sane permissions
31
chmod 755 "$pkgdir"/usr/share/AlephOne/scenarios/eternalx
32
find "$pkgdir"/usr/share/AlephOne/scenarios/eternalx -type f -exec chmod 644 {} \;
33
34
# launcher script and .desktop file
35
install -Dm755 $pkgname.sh "$pkgdir"/usr/bin/$pkgname
36
install -Dm644 $pkgname.desktop "$pkgdir"/usr/share/applications/$pkgname.desktop
37
}
38
Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-08-03 00:08:14 | LOW | 2 |
| 2026-08-02 00:16:08 | LOW | 2 |
| 2026-08-01 00:11:18 | LOW | 2 |
| 2026-07-31 00:14:10 | LOW | 2 |
| 2026-07-30 00:17:23 | LOW | 2 |
| 2026-07-29 00:25:53 | LOW | 2 |
| 2026-07-28 00:07:28 | LOW | 2 |
| 2026-07-27 00:24:32 | LOW | 2 |
| 2026-07-26 00:07:32 | LOW | 2 |
| 2026-07-25 00:13:44 | LOW | 2 |
| 2026-07-24 00:02:28 | LOW | 2 |
| 2026-07-23 00:14:47 | LOW | 2 |
| 2026-07-22 00:29:32 | LOW | 2 |
| 2026-07-21 00:24:15 | LOW | 2 |
| 2026-07-20 00:19:49 | LOW | 2 |
| 2026-07-19 00:17:08 | LOW | 2 |
| 2026-07-18 00:14:48 | LOW | 2 |
| 2026-07-17 00:06:16 | LOW | 2 |
| 2026-07-16 00:05:41 | LOW | 2 |
| 2026-07-15 00:09:25 | LOW | 2 |