atari-breakout

maintainer darose · 6 votes · scanned 2026-08-03 00:08:14.047287
LOW
View on AUR ↗
Why flagged The source is a ROM file from a project-specific, plausible official site (atariage.com) for an Atari 2600 game; while the host is not whitelisted, it hosts historical game data, not executable code, and the file is used as static data for an emulator.

Triggered rules

LOW AI review downgraded a static finding llm_review

The static rules flagged this MEDIUM, but an AI model (qwen/qwen3-235b-a22b-07-25) reviewed the full PKGBUILD and judged it LOW (confidence 95%): The source is a ROM file from a project-specific, plausible official site (atariage.com) for an Atari 2600 game; while the host is not whitelisted, it hosts historical game data, not executable code, and the file is used as static data for an emulator.

1 higher static finding superseded - not the current verdict (shown for transparency)
MEDIUM source=() URL on a non-standard host source_untrusted_domain

One or more source=() URLs point to a host outside the trusted allowlist (github.com, gitlab.com, codeberg.org, pypi.org, …).

  • PKGBUILD:12 source=('http://www.atariage.com/2600/roms/Breakout.zip')

PKGBUILD

1 offending line(s) highlighted
1# The original Breakout game for the old Atari 2600 game console
2
3# Contributor: David Rosenstrauch <darose@darose.net>
4pkgname=atari-breakout
5pkgver=1.0
6pkgrel=3
7pkgdesc="The original Breakout game for the old Atari 2600 game console"
8arch=('any')
9url="http://www.atariage.com/software_page.php?SoftwareLabelID=52"
10license=('unknown')
11depends=(stella)
12source=('http://www.atariage.com/2600/roms/Breakout.zip')
13md5sums=('9c90533b643db8b62aebba7958a25944')
14
15package() {
16 cd "$srcdir"
17
18 install -d $pkgdir/usr/share/$pkgname/
19 _rom_img_file=Breakout.bin
20 install -m644 $_rom_img_file $pkgdir/usr/share/$pkgname/
21 echo "#!/bin/sh" > $pkgname
22 echo stella /usr/share/$pkgname/$_rom_img_file >> $pkgname
23 install -D -m755 $pkgname $pkgdir/usr/bin/$pkgname
24}
25

Scan history

Scanned at (UTC)SeverityRules
2026-08-03 00:08:14 LOW 2
2026-08-02 00:16:08 LOW 2
2026-08-01 00:11:18 LOW 2
2026-07-31 00:14:10 LOW 2
2026-07-30 00:17:23 LOW 2
2026-07-29 00:25:53 LOW 2
2026-07-28 00:07:28 LOW 2
2026-07-27 00:24:32 LOW 2
2026-07-26 00:07:32 LOW 2
2026-07-25 00:13:44 LOW 2
2026-07-24 00:02:28 LOW 2
2026-07-23 00:14:47 LOW 2
2026-07-22 00:29:32 LOW 2
2026-07-21 00:24:15 LOW 2
2026-07-20 00:19:49 LOW 2
2026-07-19 00:17:08 LOW 2
2026-07-18 00:14:48 LOW 2
2026-07-17 00:06:16 LOW 2
2026-07-16 00:05:41 LOW 2
2026-07-15 00:09:25 LOW 2

Report a package

Reports go to the AURWatch maintainer (one person) and are read by hand. No login required.

0 / 4000
Your suggestion