chill1
CLEAN
maintainer 1000hz
0 votes
scanned 2026-09-29 00:07:46.805866
Triggered rules
Clean
AI review downgraded a static finding
llm_review
The static rules flagged this LOW, but an AI model (qwen/qwen3-235b-a22b-2507) reviewed the full PKGBUILD and judged it CLEAN (confidence 95%): The package builds from a verifiable upstream source on GitHub with a matching checksum; the low-vote and recent-upload flags are metadata concerns, not security risks.
1 higher static finding superseded - not the current verdict (shown for transparency)
Low
Few votes, recently uploaded
zero_votes_recent
Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.
PKGBUILD
1
# Maintainer: 1000Hz <1000Hz radiowave + aur at gmail>
2
pkgname=chill1
3
pkgver=0.0.0
4
pkgrel=1
5
pkgdesc="Run a command with disk I/O bandwidth limits applied to all block devices"
6
arch=('x86_64' 'aarch64' 'riscv64')
7
url="https://github.com/dsvi/chill"
8
license=('zlib')
9
makedepends=('gcc')
10
install="${pkgname}.install"
11
12
# source file and tree keep the upstream name (chill), only the AUR
13
# package name is chill1
14
_source="chill"
15
source=("${_source}-$pkgver.tar.gz::${url}/archive/refs/tags/v${pkgver}.tar.gz")
16
sha256sums=('473bec29dac26517553544b788f8149b96e27e639339c7c8587cac14dbdf6287')
17
18
_srcdir="${_source}-$pkgver"
19
20
# the binary is intentionally still named `chill`, not `chill1`
21
build() {
22
cd "${srcdir}/${_srcdir}"
23
gcc -Os -Wall -Wextra -o "${_source}" "${_source}.c"
24
}
25
26
package() {
27
cd "${srcdir}/${_srcdir}"
28
29
# setuid root: chill needs privileges only to create its cgroup, write its
30
# io.max limits and remove the cgroup again; the command itself runs as the
31
# invoking user.
32
install -Dm4755 "${_source}" "${pkgdir}/usr/bin/${_source}"
33
}
34
Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-09-29 00:07:46 | Clean | 2 |
| 2026-09-28 23:22:18 | Low | 1 |