luajit-2.1-lua52-git
maintainer ilovemikael
· 1 votes
· scanned 2026-08-03 00:08:14.047287
LOW
View on AUR ↗
Why flagged
The source is a Git clone from the official project's own domain (luajit.org), which is a legitimate and expected source for this package; building from a non-whitelisted but project-owned host is normal for AUR packages and does not constitute a significant security risk.
Triggered rules
LOW
AI review downgraded a static finding
llm_review
The static rules flagged this MEDIUM, but an AI model (qwen/qwen3-235b-a22b-2507) reviewed the full PKGBUILD and judged it LOW (confidence 95%): The source is a Git clone from the official project's own domain (luajit.org), which is a legitimate and expected source for this package; building from a non-whitelisted but project-owned host is normal for AUR packages and does not constitute a significant security risk.
2 higher static findings superseded - not the current verdict (shown for transparency)
MEDIUM
source=() URL on a non-standard host
source_untrusted_domain
One or more source=() URLs point to a host outside the trusted allowlist (github.com, gitlab.com, codeberg.org, pypi.org, …).
-
PKGBUILD:13
source=('git+https://luajit.org/git/luajit-2.0.git#branch=v2.1')
MEDIUM
Recently orphaned & re-adopted
orphaned_readopted
This package was orphaned and re-adopted within the last 30 days — a window where ownership transfers can introduce malicious changes.
PKGBUILD
1 offending line(s) highlighted
1
# Maintainer: RhiobeT (Pierre Jeanjean) <rhiobet@gmail.com>
2
pkgname=luajit-2.1-lua52-git
3
pkgver=2.1.0.beta3.r360.ga91d0d9d
4
pkgrel=1
5
pkgdesc='Just-in-time compiler and drop-in replacement for Lua (v2.1 branch, Lua 5.2 support)'
6
arch=('i686' 'x86_64')
7
url='https://luajit.org/'
8
license=('MIT')
9
depends=('gcc-libs')
10
makedepends=('git')
11
conflicts=('luajit')
12
provides=('luajit')
13
source=('git+https://luajit.org/git/luajit-2.0.git#branch=v2.1')
14
md5sums=('SKIP')
15
16
pkgver() {
17
cd $srcdir/luajit-2.0
18
git describe --tags | sed 's/^v//;s/\([^-]*-g\)/r\1/;s/-/./g'
19
}
20
21
build() {
22
cd luajit-2.0
23
make amalg XCFLAGS=-DLUAJIT_ENABLE_LUA52COMPAT PREFIX=/usr
24
}
25
26
package() {
27
cd luajit-2.0
28
make install DESTDIR=$pkgdir PREFIX=/usr
29
install -Dm644 COPYRIGHT \
30
$pkgdir/usr/share/licenses/$pkgname/COPYRIGHT
31
install -Dm755 src/luajit \
32
$pkgdir/usr/bin/luajit
33
}
34
35
Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-08-03 00:08:14 | LOW | 3 |
| 2026-08-02 00:16:08 | LOW | 3 |
| 2026-08-01 00:11:18 | LOW | 3 |
| 2026-07-31 00:14:10 | LOW | 3 |
| 2026-07-30 00:17:23 | LOW | 3 |
| 2026-07-29 00:25:53 | LOW | 3 |
| 2026-07-28 15:39:03 | MEDIUM | 2 |
| 2026-06-19 23:51:18 | CLEAN | 2 |
| 2026-06-19 19:07:35 | MEDIUM | 2 |
| 2026-06-18 16:11:54 | MEDIUM | 1 |