python-river

MEDIUM
maintainer a821 1 votes scanned 2026-10-05 23:40:58.404909
View on AUR
Why flagged

This package was orphaned and re-adopted within the last 30 days — a window where ownership transfers can introduce malicious changes.

Triggered rules

Medium Recently orphaned & re-adopted orphaned_readopted

This package was orphaned and re-adopted within the last 30 days — a window where ownership transfers can introduce malicious changes.

PKGBUILD

1# Maintainer: a821 at mail de
2# Contributor: Nicolas Bizzozzéro <nicolas.bizzozzero@protonmail.com>
3
4pkgname=python-river
5pkgver=0.26.1
6pkgrel=1
7pkgdesc="Online machine learning in Python"
8arch=("x86_64")
9url="https://riverml.xyz"
10license=('BSD-3-Clause')
11depends=(
12 python
13 python-narwhals
14 python-numpy
15 python-scikit-learn
16 python-scipy
17)
18makedepends=(
19 python-build
20 python-installer
21 python-maturin
22 python-wheel
23)
24optdepends=(
25 graphviz
26 python-pandas
27 python-sqlalchemy
28)
29source=("$pkgname-$pkgver.tar.gz::https://github.com/online-ml/river/archive/refs/tags/${pkgver}.tar.gz")
30sha256sums=('b5a6e618a9eb436307ed801eb75c82699ad542a7c18c050477364e21b48633c2')
31
32build() {
33 cd "river-$pkgver"
34 python -m build --wheel --no-isolation
35}
36
37package() {
38 cd "river-$pkgver"
39 python -m installer --destdir="$pkgdir" dist/*.whl
40 install -Dm644 LICENSE -t "$pkgdir/usr/share/licenses/$pkgname"
41}
42
43# vim: set ts=2 sw=2 et:
44

Changes since previous scan

--- PKGBUILD @ 2026-06-18 16:11
+++ PKGBUILD @ 2026-10-05 23:40
@@ -1,31 +1,44 @@
-# Maintainer: Nicolas Bizzozzéro <nicolas.bizzozzero@protonmail.com>
-pkgname="python-river"
-pkgver=0.9.0
-pkgrel=2
+# Maintainer: a821 at mail de
+# Contributor: Nicolas Bizzozzéro <nicolas.bizzozzero@protonmail.com>
+
+pkgname=python-river
+pkgver=0.26.1
+pkgrel=1
pkgdesc="Online machine learning in Python"
arch=("x86_64")
url="https://riverml.xyz"
-license=('custom:BSD 3-clause')
-provides=("python-river")
-conflicts=("python-river")
-depends=("python" "python-numpy" "python-scipy" "python-pandas")
-makedepends=("python-setuptools" "cython")
-source=("https://github.com/online-ml/river/archive/refs/tags/${pkgver}.tar.gz")
-sha512sums=("SKIP")
-
+license=('BSD-3-Clause')
+depends=(
+ python
+ python-narwhals
+ python-numpy
+ python-scikit-learn
+ python-scipy
+)
+makedepends=(
+ python-build
+ python-installer
+ python-maturin
+ python-wheel
+)
+optdepends=(
+ graphviz
+ python-pandas
+ python-sqlalchemy
+)
+source=("$pkgname-$pkgver.tar.gz::https://github.com/online-ml/river/archive/refs/tags/${pkgver}.tar.gz")
+sha256sums=('b5a6e618a9eb436307ed801eb75c82699ad542a7c18c050477364e21b48633c2')
build() {
- cd "${srcdir}/river-${pkgver}"
- python setup.py build
+ cd "river-$pkgver"
+ python -m build --wheel --no-isolation
}
-
package() {
- cd "${srcdir}/river-${pkgver}"
- python setup.py install --prefix=/usr --root="${pkgdir}" --optimize=1
-
- install -m755 -d "${pkgdir}/usr/share/licenses/python-river-git"
- install -m644 LICENSE "${pkgdir}/usr/share/licenses/python-river-git/"
+ cd "river-$pkgver"
+ python -m installer --destdir="$pkgdir" dist/*.whl
+ install -Dm644 LICENSE -t "$pkgdir/usr/share/licenses/$pkgname"
}
+# vim: set ts=2 sw=2 et:

Scan history

Scanned at (UTC)SeverityRules
2026-10-05 23:40:58 Medium 1
2026-06-18 16:11:54 Clean 0

Report a package

Reports go to the AURWatch maintainer (one person) and are read by hand. No login required.

0 / 4000
Your suggestion