eusoft-dehelper

LOW
maintainer Chapman 0 votes scanned 2026-10-09 02:12:05.690464
View on AUR
Why flagged

The .deb is downloaded from static.eudic.net, which is the official vendor domain for Eudic/Eusoft dictionary software, has a pinned sha256 checksum, and is repackaged in a straightforward way; the only mild concern is that it is a proprietary prebuilt binary, but it comes from the project's own official infrastructure rather than a swappable third-party host.

Triggered rules

Low Few votes, recently uploaded zero_votes_recent

Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.

Low AI review downgraded a static finding llm_review

The static rules flagged this MEDIUM, but an AI model (anthropic/claude-sonnet-4.6) reviewed the full PKGBUILD and judged it LOW (confidence 80%): The .deb is downloaded from static.eudic.net, which is the official vendor domain for Eudic/Eusoft dictionary software, has a pinned sha256 checksum, and is repackaged in a straightforward way; the only mild concern is that it is a proprietary prebuilt binary, but it comes from the project's own official infrastructure rather than a swappable third-party host.

1 higher static finding superseded - not the current verdict (shown for transparency)
Medium source=() URL on a non-standard host source_untrusted_domain

One or more source=() URLs point to a host outside the trusted allowlist (github.com, gitlab.com, codeberg.org, pypi.org, …).

  • PKGBUILD:36 "${pkgname}-${pkgver}.deb::https://static.eudic.net/pkg/dehelper.deb"

PKGBUILD

1 offending line(s) highlighted
1# Maintainer: Chapman <touch65536@gmail.com>
2
3pkgname=eusoft-dehelper
4pkgver=13.5.2
5pkgrel=1
6pkgdesc="Dehelper (德语助手) - German dictionary software for Linux (Community Repackage)"
7arch=('x86_64')
8url="https://www.eudic.net/v4/de/app/dehelper"
9license=('LicenseRef-Proprietary')
10provides=('dehelper' 'eudic-de' 'eusoft-dehelper')
11conflicts=('dehelper')
12depends=(
13 'at-spi2-core'
14 'gtk3'
15 'hicolor-icon-theme'
16 'libnotify'
17 'libsecret'
18 'libxkbcommon-x11'
19 'libxss'
20 'libxtst'
21 'nss'
22 'util-linux-libs'
23 'xdg-utils'
24)
25optdepends=(
26 'noto-fonts-cjk: Chinese font support'
27)
28options=(!strip !debug)
29
30source=(
31 "dehelper.sh"
32 "eusoft-dehelper.desktop"
33 "LICENSE"
34)
35source_x86_64=(
36 "${pkgname}-${pkgver}.deb::https://static.eudic.net/pkg/dehelper.deb"
37)
38noextract=("${pkgname}-${pkgver}.deb")
39
40sha256sums=(
41 'f3f7d40617f96c3a20196d9a8b18b95df316cd15eee3006537e272d695a96875'
42 '54ab59de3dc984a39143e8c2a4116d26af936121c6912e315e9b0d8a10e1f3ea'
43 '377ddd4aecf677aa2b0fdd264f6285118f3e01f6463eb957db972d0b8404cf69'
44)
45sha256sums_x86_64=(
46 'fc47e56b3907522a8d3dbd906a4e4117991e0aed772c08547b0214c8b08fcccc'
47)
48
49prepare() {
50 bsdtar -xf "${pkgname}-${pkgver}.deb" data.tar.xz
51}
52
53package() {
54 # Extract data hierarchy from official deb
55 tar -xf data.tar.xz -C "${pkgdir}"
56
57 # Remove upstream obsolete Ubuntu system libraries dumped in root dir
58 rm -f "${pkgdir}/usr/share/${pkgname}"/lib*.so* 2>/dev/null || true
59
60 # Remove bundled outdated libxkbcommon-x11 to avoid segfault with Arch libxkbcommon
61 rm -f "${pkgdir}/usr/share/${pkgname}/lib/libxkbcommon-x11.so.0" 2>/dev/null || true
62
63 # Remove upstream AppRun (replaced by our launcher)
64 rm -f "${pkgdir}/usr/share/${pkgname}/AppRun" 2>/dev/null || true
65
66 # Clean up empty apprun-hooks from deb if present
67 rm -rf "${pkgdir}/apprun-hooks" 2>/dev/null || true
68
69 # Install clean launcher script
70 install -Dm755 "${srcdir}/dehelper.sh" "${pkgdir}/usr/bin/dehelper"
71 ln -sf dehelper "${pkgdir}/usr/bin/${pkgname}"
72
73 # Install desktop entry
74 install -Dm644 "${srcdir}/eusoft-dehelper.desktop" "${pkgdir}/usr/share/applications/eusoft-dehelper.desktop"
75 ln -sf eusoft-dehelper.desktop "${pkgdir}/usr/share/applications/dehelper.desktop"
76
77 # Install hicolor icons
78 install -Dm644 "${pkgdir}/usr/share/pixmaps/com.eusoft.dehelper.png" \
79 "${pkgdir}/usr/share/icons/hicolor/256x256/apps/com.eusoft.dehelper.png"
80 ln -sf com.eusoft.dehelper.png "${pkgdir}/usr/share/icons/hicolor/256x256/apps/dehelper.png"
81 ln -sf com.eusoft.dehelper.png "${pkgdir}/usr/share/pixmaps/dehelper.png"
82
83 # Install license
84 install -Dm644 "${srcdir}/LICENSE" "${pkgdir}/usr/share/licenses/${pkgname}/LICENSE"
85
86 # Normalize directory and file permissions
87 find "${pkgdir}" -type d -exec chmod 755 {} +
88 chmod 755 "${pkgdir}/usr/share/${pkgname}/dehelper"
89}
90

Scan history

Scanned at (UTC)SeverityRules
2026-10-09 02:12:05 Low 3
2026-10-09 02:10:17 Medium 3

Report a package

Reports go to the AURWatch maintainer (one person) and are read by hand. No login required.

0 / 4000
Your suggestion