llama-prism-rocm-bin

LOW
maintainer lucas007 0 votes scanned 2026-10-06 00:13:36.889724
View on AUR
Why flagged

The package installs prebuilt binaries from a project-owned GitHub release, which is a normal AUR practice; the binaries are from a trusted source (GitHub) and the checksum is provided, reducing risk despite few votes and recent upload.

Triggered rules

Low Few votes, recently uploaded zero_votes_recent

Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.

Low AI review llm_review

An AI model (qwen/qwen3-235b-a22b-2507) reviewed this and agrees it is LOW (confidence 95%): The package installs prebuilt binaries from a project-owned GitHub release, which is a normal AUR practice; the binaries are from a trusted source (GitHub) and the checksum is provided, reducing risk despite few votes and recent upload.

PKGBUILD

1# Maintainer: lucas <lucas@localhost>
2pkgname=llama-prism-rocm-bin
3pkgver=b10754
4_commit=2459f68
5_rocmver=7.2
6pkgrel=1
7pkgdesc="llama.cpp Prism fork - LLM inference in C/C++ (prebuilt ROCm / HIP binaries for AMD GPUs)"
8arch=('x86_64')
9url="https://github.com/PrismML-Eng/llama.cpp"
10license=('MIT')
11depends=(
12 'glibc'
13 'gcc-libs'
14 'openssl'
15 'hip-runtime-amd'
16 'rocblas'
17 'hipblas'
18)
19optdepends=(
20 'rocm-smi-lib: query GPU status while running'
21)
22makedepends=('patchelf')
23provides=('llama-cpp')
24conflicts=('llama-cpp' 'llama-cpp-rocm-git' 'llama-prism-cuda')
25options=('!strip' '!debug')
26
27_asset="llama-prism-${pkgver}-${_commit}-bin-ubuntu-rocm-${_rocmver}-x64.tar.gz"
28source=("${pkgname}-${pkgver}.tar.gz::${url}/releases/download/prism-${pkgver}-${_commit}/${_asset}")
29sha256sums=('7a4fd4978340101d15eb0f8351563d52302fbb5c3bb112eb5f25fe66666a02f3')
30
31package() {
32 local _srcdir="$srcdir/llama-prism-${pkgver}-${_commit}"
33 local _libdir="/usr/lib/${pkgname}"
34
35 # The upstream binaries are built with DT_RUNPATH=$ORIGIN and load their
36 # private shared libraries from the directory they live in, so install the
37 # whole payload into a private libdir and expose launchers via symlinks.
38 install -d "$pkgdir$_libdir"
39 cp -a "$_srcdir"/. "$pkgdir$_libdir"/
40
41 # Upstream hardcodes /opt/rocm-7.2.1/lib in libggml-hip.so's RUNPATH, a path
42 # that does not exist on Arch (ROCm is found via ld.so.conf), so reduce it to
43 # $ORIGIN to drop the insecure absolute path.
44 patchelf --set-rpath '$ORIGIN' "$pkgdir$_libdir/libggml-hip.so"
45
46 # Drop the bundled license file from the runtime dir and install it properly.
47 rm -f "$pkgdir$_libdir/LICENSE"
48 install -Dm644 "$_srcdir/LICENSE" "$pkgdir/usr/share/licenses/${pkgname}/LICENSE"
49
50 # Symlink every executable (not the shared objects) into /usr/bin.
51 install -d "$pkgdir/usr/bin"
52 local _exe
53 while IFS= read -r -d '' _exe; do
54 ln -s "$_libdir/$(basename "$_exe")" "$pkgdir/usr/bin/$(basename "$_exe")"
55 done < <(find "$pkgdir$_libdir" -maxdepth 1 -type f -executable ! -name '*.so' ! -name '*.so.*' -print0)
56}
57

Scan history

Scanned at (UTC)SeverityRules
2026-10-06 00:13:36 Low 2
2026-10-05 23:40:58 Low 2

Report a package

Reports go to the AURWatch maintainer (one person) and are read by hand. No login required.

0 / 4000
Your suggestion