moarchy-trivia
CLEAN
maintainer simonschubert
0 votes
scanned 2026-09-29 00:07:46.805866
Triggered rules
Clean
AI review downgraded a static finding
llm_review
The static rules flagged this LOW, but an AI model (qwen/qwen3-235b-a22b-2507) reviewed the full PKGBUILD and judged it CLEAN (confidence 95%): The package builds from a release asset on the project's own GitHub repository, installs only QML/JS files and a launcher script, and depends on standard system components; no remote code execution or untrusted payloads are involved.
1 higher static finding superseded - not the current verdict (shown for transparency)
Low
Few votes, recently uploaded
zero_votes_recent
Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.
PKGBUILD
1
# Maintainer: Simon Schubert <simon@librem.one>
2
#
3
# Trivia as an app: the QML tree in /usr/share/moarchy-trivia, started by
4
# /usr/bin/moarchy-trivia. That launcher opens it in the running Omarchy shell
5
# when the plugin is installed there, and as its own Quickshell process
6
# everywhere else -- so this package needs Quickshell, not Omarchy.
7
pkgname=moarchy-trivia
8
pkgver=0.1.0
9
pkgrel=1
10
pkgdesc='Multiple-choice quizzes by category and difficulty, from Open Trivia DB, for Quickshell'
11
arch=('any')
12
url='https://github.com/SimonSchubert/moarchy-apps'
13
license=('MIT')
14
# qt6-declarative (QtQuick) comes with quickshell. curl asks Open Trivia DB for
15
# the questions. The kit's icons are Nerd Font glyphs, which namcap cannot see,
16
# so it calls that dependency unneeded.
17
depends=('quickshell' 'curl' 'ttf-jetbrains-mono-nerd' 'hicolor-icon-theme')
18
# A release asset that packaging/release.sh builds from apps/trivia at the tag,
19
# with shared/kit in place of the kit link -- not GitHub's generated archive,
20
# whose compression has moved under pinned checksums before.
21
source=("$url/releases/download/trivia-v$pkgver/$pkgname-$pkgver.tar.gz")
22
# Pinned in the commit after the tag, as every app's here is.
23
sha256sums=('34315009582a5e3506f10d7e3a2a730237ac161fa55a53d9f138bfa47647095c')
24
25
check() {
26
cd "$pkgname-$pkgver"
27
# The parsing, the rounds and the file. No display and no network needed.
28
QT_QPA_PLATFORM=offscreen /usr/lib/qt6/bin/qmltestrunner -input tests
29
}
30
31
package() {
32
cd "$pkgname-$pkgver"
33
34
install -d "$pkgdir/usr/share/$pkgname/kit"
35
install -m644 manifest.json ./*.qml ./*.js icon.svg "$pkgdir/usr/share/$pkgname/"
36
install -m644 kit/*.qml kit/*.js "$pkgdir/usr/share/$pkgname/kit/"
37
38
install -Dm755 bin/moarchy-trivia "$pkgdir/usr/bin/moarchy-trivia"
39
install -Dm644 org.moarchy.Trivia.desktop \
40
"$pkgdir/usr/share/applications/org.moarchy.Trivia.desktop"
41
install -Dm644 icon.svg "$pkgdir/usr/share/icons/hicolor/scalable/apps/org.moarchy.Trivia.svg"
42
install -Dm644 LICENSE "$pkgdir/usr/share/licenses/$pkgname/LICENSE"
43
}
44
Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-09-29 00:07:46 | Clean | 2 |
| 2026-09-28 23:22:18 | Low | 1 |