gnokii

LOW
maintainer orphaned 0 votes scanned 2026-10-02 00:00:32.890515
View on AUR
Why flagged

The source is a legitimate tarball from samba.org, a well-known and trusted host for open-source projects, despite not being on a standard whitelist; the package builds from official source code with no signs of malicious behavior.

Triggered rules

Low AI review downgraded a static finding llm_review

The static rules flagged this MEDIUM, but an AI model (qwen/qwen3-235b-a22b-2507) reviewed the full PKGBUILD and judged it LOW (confidence 95%): The source is a legitimate tarball from samba.org, a well-known and trusted host for open-source projects, despite not being on a standard whitelist; the package builds from official source code with no signs of malicious behavior.

1 higher static finding superseded - not the current verdict (shown for transparency)
Medium source=() URL on a non-standard host source_untrusted_domain

One or more source=() URLs point to a host outside the trusted allowlist (github.com, gitlab.com, codeberg.org, pypi.org, …).

  • PKGBUILD:21 source=("https://download.samba.org/pub/$pkgname/$pkgname/$pkgname-$pkgver.tar.bz2"

PKGBUILD

1 offending line(s) highlighted
1# Maintainer: Balló György <ballogyor+arch at gmail dot com>
2# Contributor: Andrea Scarpino <andrea@archlinux.org>
3# Contributor: Roman Kyrylych <roman@archlinux.org>
4# Contributor: Aurelien Foret <orelien@chez.com>
5
6pkgname=gnokii
7pkgver=0.6.31
8pkgrel=21
9pkgdesc='Tools and user space driver for use with mobile phones'
10arch=('x86_64')
11url='https://www.gnokii.org/'
12license=('GPL')
13depends=('libusb-compat' 'libxpm' 'bluez-libs' 'libical' 'sqlite' 'systemd')
14makedepends=('gtk2' 'mariadb-libs' 'postgresql-libs' 'intltool')
15optdepends=('dialog: sendsms tool'
16 'gtk2: xgnokii GUI'
17 'mariadb-libs: smsd mysql backend'
18 'postgresql-libs: smsd postgresql backend')
19backup=('etc/gnokiirc')
20install=$pkgname.install
21source=("https://download.samba.org/pub/$pkgname/$pkgname/$pkgname-$pkgver.tar.bz2"
22 'gnokii-config.patch'
23 'gnokii-lock.patch'
24 'gnokii-gcc5.patch'
25 'gnokii-gcc7.patch')
26sha256sums=('8f5a083b05c1a66a3402ca5cd80084e14c2c0632c991bb53b03c78e9adb02501'
27 '4c795f0b80b3703a2813adb32399b42080a01670619c1db63ab094494cb6f329'
28 'e0584a44268e9055b43f1673d7db828f45294c5108635ebd5f664e12703f108b'
29 'eafe67990e383e92636a88de27f003674374db81d986ddbb397ab18d82b6556d'
30 'a5db8684216904bd2a2cd8a557dcc16484831b9bc2ec91a0b102b14c3bfe9245')
31
32prepare() {
33 cd $pkgname-$pkgver
34
35 # Set bindir location
36 patch -Np1 -i ../gnokii-config.patch
37
38 # Set lock path
39 patch -Np1 -i ../gnokii-lock.patch
40
41 # Fix build with GCC 5 (Fedora patch)
42 patch -Np1 -i ../gnokii-gcc5.patch
43
44 # Fix build with GCC 7
45 patch -Np1 -i ../gnokii-gcc7.patch
46}
47
48build() {
49 cd $pkgname-$pkgver
50
51 _CFLAGSADDITIONS="-Wno-error=incompatible-pointer-types"
52 CFLAGS+=" ${_CFLAGSADDITIONS}"
53 export CFLAGS
54
55 ./configure --prefix=/usr --sysconfdir=/etc --sbindir=/usr/bin \
56 --enable-security
57 make
58 pushd xgnokii
59 make
60 popd
61}
62
63package() {
64 cd $pkgname-$pkgver
65
66 make DESTDIR="$pkgdir" install
67 pushd xgnokii
68 make DESTDIR="$pkgdir" install
69 popd
70
71 # Install initial config file
72 install -Dm644 Docs/sample/gnokiirc "$pkgdir/etc/gnokiirc"
73
74 # Fix file permission
75 chmod 755 "$pkgdir/usr/bin/sendsms"
76
77 # Setup lock directory
78 install -dm755 "$pkgdir"/usr/lib/tmpfiles.d
79 echo 'd /run/lock/lockdev 0775 root lock -' > "$pkgdir/usr/lib/tmpfiles.d/$pkgname.conf"
80}
81

Scan history

Scanned at (UTC)SeverityRules
2026-10-02 00:00:32 Low 2
2026-10-01 00:02:06 Low 2
2026-09-30 00:20:07 Low 2
2026-09-29 00:07:46 Low 2
2026-09-28 00:28:32 Low 2
2026-09-27 00:07:07 Low 2
2026-09-26 00:12:15 Low 2
2026-09-25 00:03:36 Low 2
2026-09-24 00:24:14 Low 2
2026-09-23 00:28:13 Low 2
2026-09-22 00:15:14 Low 2
2026-09-21 00:26:32 Low 2
2026-09-20 00:25:31 Low 2
2026-09-19 00:25:36 Low 2
2026-09-18 00:17:11 Low 2
2026-09-17 00:27:14 Low 2
2026-09-16 00:03:17 Low 2
2026-09-15 00:25:31 Low 2
2026-09-14 00:27:57 Low 2
2026-09-13 00:19:54 Low 2

Report a package

Reports go to the AURWatch maintainer (one person) and are read by hand. No login required.

0 / 4000
Your suggestion