languagetool-ngrams-en
The package downloads a large n-gram data file from the official project domain languagetool.org, which is not on the standard whitelist but is plausibly legitimate; the data is not executable and used solely for LanguageTool functionality.
Triggered rules
llm_review
The static rules flagged this MEDIUM, but an AI model (qwen/qwen3-235b-a22b-07-25) reviewed the full PKGBUILD and judged it LOW (confidence 95%): The package downloads a large n-gram data file from the official project domain languagetool.org, which is not on the standard whitelist but is plausibly legitimate; the data is not executable and used solely for LanguageTool functionality.
1 higher static finding superseded - not the current verdict (shown for transparency)
source_untrusted_domain
One or more source=() URLs point to a host outside the trusted allowlist (github.com, gitlab.com, codeberg.org, pypi.org, …).
-
PKGBUILD:15
source=(${pkgname}-${pkgver}.zip::"https://languagetool.org/download/ngram-data/ngrams-en-${pkgver}.zip")
PKGBUILD
1 offending line(s) highlighted# Maintainer: Jaja <jaja@mailbox.org>
#
pkgname=languagetool-ngrams-en
pkgver=20150817
pkgrel=1
pkgdesc="Finding errors using n-gram data, english text"
arch=('any')
url="http://wiki.languagetool.org/finding-errors-using-n-gram-data"
license=('CCPL')
optdepends=('languagetool: system wide installation of LT'
'libreoffice-extension-languagetool: standalone LT for LibreOffice'
'openoffice-extension-languagetool: standalone LT for OpenOffice')
install=${pkgname}.install
source=(${pkgname}-${pkgver}.zip::"https://languagetool.org/download/ngram-data/ngrams-en-${pkgver}.zip")
md5sums=('ee56b280af45daf8e68fe0d69dd0914d')
PKGEXT='.pkg.tar'
options=(!strip)
prepare() {
echo ''
echo 'Warning:'
echo '· This package requires about 15G to be available within /usr/share.'
echo '· Make sure you have a _fast_ disk serving /usr/share, i.e. an SSD. Without an SSD, using this data can make LanguageTool much slower.'
echo '· Because of size, you may run out of RAM if you use tmpfs aware aur helpers.'
echo '· The install script will modify your configuration files in each home directory.'
echo ''
}
package() {
install -d "${pkgdir}"/usr/share/ngrams
unlink "${srcdir}"/${pkgname}-${pkgver}.zip
mv "${srcdir}"/* "${pkgdir}"/usr/share/ngrams/
}
Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-09-17 00:27:14 | Low | 2 |
| 2026-09-16 00:03:17 | Low | 2 |
| 2026-09-15 00:25:31 | Low | 2 |
| 2026-09-14 00:27:57 | Low | 2 |
| 2026-09-13 00:19:54 | Low | 2 |
| 2026-09-12 00:25:17 | Low | 2 |
| 2026-09-11 00:19:22 | Low | 2 |
| 2026-09-10 00:22:44 | Low | 2 |
| 2026-09-09 00:04:09 | Low | 2 |
| 2026-09-08 00:18:08 | Low | 2 |
| 2026-09-07 00:30:15 | Low | 2 |
| 2026-09-06 00:17:06 | Low | 2 |
| 2026-09-05 00:16:27 | Low | 2 |
| 2026-09-04 00:03:13 | Low | 2 |
| 2026-09-03 00:15:47 | Low | 2 |
| 2026-09-02 00:02:31 | Low | 2 |
| 2026-09-01 00:11:19 | Low | 2 |
| 2026-08-31 00:19:57 | Low | 2 |
| 2026-08-30 00:04:14 | Low | 2 |
| 2026-08-29 00:29:17 | Low | 2 |