elan-bin
maintainer marcool04
· 2 votes
· scanned 2026-08-03 00:08:14.047287
LOW
View on AUR ↗
Why flagged
The source is a tarball from the official project's host (mpi.nl), which is plausibly the project's own release infrastructure; building from this source is standard practice for AUR packages and poses no inherent risk.
Triggered rules
LOW
AI review downgraded a static finding
llm_review
The static rules flagged this MEDIUM, but an AI model (qwen/qwen3-235b-a22b-2507) reviewed the full PKGBUILD and judged it LOW (confidence 95%): The source is a tarball from the official project's host (mpi.nl), which is plausibly the project's own release infrastructure; building from this source is standard practice for AUR packages and poses no inherent risk.
1 higher static finding superseded - not the current verdict (shown for transparency)
MEDIUM
source=() URL on a non-standard host
source_untrusted_domain
One or more source=() URLs point to a host outside the trusted allowlist (github.com, gitlab.com, codeberg.org, pypi.org, …).
-
PKGBUILD:31
source=("https://www.mpi.nl/tools/${_pkgname}/${_pkgname_caps}_${pkgver//\./\-}_linux.tar.gz"
PKGBUILD
1 offending line(s) highlighted
1
# Maintainer: Mark Collins <tera_1225 [at] hotmail [ðot] com>
2
pkgname=elan-bin
3
_pkgname=elan
4
_pkgname_caps=ELAN
5
pkgver="7.1"
6
pkgrel=3
7
pkgdesc="A video and audio annotation tool"
8
arch=('x86_64')
9
url="https://tla.mpi.nl/tools/tla-tools/elan/"
10
provides=('elan')
11
conflicts=('elan')
12
depends=(
13
'alsa-lib'
14
'ffmpeg'
15
'freetype2'
16
'gcc-libs'
17
'glibc'
18
'libx11'
19
'libxcb'
20
'libxext'
21
'libxi'
22
'libxrender'
23
'libxtst'
24
'zlib'
25
)
26
optdepends=(
27
'vlc: enable use of VLC as the media framework'
28
'vlc-plugins-all: enable use of VLC as the media framework'
29
)
30
license=('GPL-3.0-or-later')
31
source=("https://www.mpi.nl/tools/${_pkgname}/${_pkgname_caps}_${pkgver//\./\-}_linux.tar.gz"
32
"${_pkgname}.desktop"
33
"${_pkgname}_wrapper.sh")
34
sha256sums=('ab0095ccb4dca8439d76da6cb14d22613c446d6edf021729ca454f65d9c77b94'
35
'29952b1c1cc51afec11e9aaf119e65656199b8eaa41972854fe0b1871dfd0dcb'
36
'baf3fc09376cc59df4db7239cda6c1f23999d3414aa644ef29c7a7ae09211a62')
37
options=(!debug)
38
39
package() {
40
cd "${srcdir}/${_pkgname_caps}_${pkgver}/"
41
42
echo "Installing ${_pkgname} in /opt/${_pkgname}"
43
install -d -m755 "${pkgdir}/opt/${_pkgname}"
44
install -d -m755 "${pkgdir}/opt/${_pkgname}/bin"
45
cp -r "lib" "${pkgdir}/opt/${_pkgname}/"
46
install -D -m755 "bin/${_pkgname_caps}_$pkgver" "${pkgdir}/opt/${_pkgname}/bin/"
47
48
echo "Installing binary wrapper shell script"
49
sed -i 's/VERSIONSTRINGHERE/'"$pkgver"'/' "${srcdir}/${_pkgname}_wrapper.sh"
50
install -d -m755 "${pkgdir}/usr/bin/"
51
install -D "${srcdir}/${_pkgname}_wrapper.sh" "${pkgdir}/usr/bin/${_pkgname}"
52
53
echo "Installing desktop file"
54
install -d -m755 "${pkgdir}/usr/share/applications/"
55
install -D "${srcdir}/${_pkgname}.desktop" "${pkgdir}/usr/share/applications/"
56
57
echo "Installing logo"
58
install -d -m755 "${pkgdir}/usr/share/pixmaps"
59
install -D "${srcdir}/${_pkgname_caps}_${pkgver}/lib/${_pkgname_caps}_${pkgver}.png" \
60
"${pkgdir}/usr/share/pixmaps/${_pkgname}.png"
61
}
62
Changes since previous scan
--- PKGBUILD @ 2026-06-19 19:07+++ PKGBUILD @ 2026-08-03 00:08@@ -3,7 +3,7 @@ _pkgname=elan _pkgname_caps=ELAN pkgver="7.1"-pkgrel=1+pkgrel=3 pkgdesc="A video and audio annotation tool" arch=('x86_64') url="https://tla.mpi.nl/tools/tla-tools/elan/"@@ -23,23 +23,38 @@ 'libxtst' 'zlib' )+optdepends=(+ 'vlc: enable use of VLC as the media framework' + 'vlc-plugins-all: enable use of VLC as the media framework'+) license=('GPL-3.0-or-later') source=("https://www.mpi.nl/tools/${_pkgname}/${_pkgname_caps}_${pkgver//\./\-}_linux.tar.gz"- "${_pkgname}.desktop")+ "${_pkgname}.desktop"+ "${_pkgname}_wrapper.sh") sha256sums=('ab0095ccb4dca8439d76da6cb14d22613c446d6edf021729ca454f65d9c77b94'- '918720769c986b0183b563596da1a8a9da039eb1196132b224b3b110d8233394')+ '29952b1c1cc51afec11e9aaf119e65656199b8eaa41972854fe0b1871dfd0dcb'+ 'baf3fc09376cc59df4db7239cda6c1f23999d3414aa644ef29c7a7ae09211a62')+options=(!debug) package() { cd "${srcdir}/${_pkgname_caps}_${pkgver}/"- install -d -m755 "${pkgdir}/opt/${_pkgname}"+ + echo "Installing ${_pkgname} in /opt/${_pkgname}"+ install -d -m755 "${pkgdir}/opt/${_pkgname}" install -d -m755 "${pkgdir}/opt/${_pkgname}/bin" cp -r "lib" "${pkgdir}/opt/${_pkgname}/" install -D -m755 "bin/${_pkgname_caps}_$pkgver" "${pkgdir}/opt/${_pkgname}/bin/"++ echo "Installing binary wrapper shell script"+ sed -i 's/VERSIONSTRINGHERE/'"$pkgver"'/' "${srcdir}/${_pkgname}_wrapper.sh" install -d -m755 "${pkgdir}/usr/bin/"- ln -s "/opt/${_pkgname}/bin/${_pkgname_caps}_$pkgver" "${pkgdir}/usr/bin/${_pkgname}"+ install -D "${srcdir}/${_pkgname}_wrapper.sh" "${pkgdir}/usr/bin/${_pkgname}"++ echo "Installing desktop file" install -d -m755 "${pkgdir}/usr/share/applications/"- sed -i 's/VERSIONSTRINGHERE/'"$pkgver"'/' "${srcdir}/${_pkgname}.desktop" install -D "${srcdir}/${_pkgname}.desktop" "${pkgdir}/usr/share/applications/"++ echo "Installing logo" install -d -m755 "${pkgdir}/usr/share/pixmaps" install -D "${srcdir}/${_pkgname_caps}_${pkgver}/lib/${_pkgname_caps}_${pkgver}.png" \ "${pkgdir}/usr/share/pixmaps/${_pkgname}.png"Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-08-03 00:08:14 | LOW | 2 |
| 2026-08-02 00:16:08 | LOW | 2 |
| 2026-08-01 13:20:32 | MEDIUM | 1 |
| 2026-06-19 19:07:35 | CLEAN | 2 |
| 2026-06-18 16:11:54 | MEDIUM | 1 |