wayhud-bin

LOW
maintainer xifan 0 votes scanned 2026-10-06 00:13:36.889724
View on AUR
Why flagged

Package installs a prebuilt binary from a GitHub release by the same maintainer; while the host is not whitelisted, it's a plausible project-owned source, and the binary is the core software being distributed, not an obfuscated payload or remote code.

Triggered rules

Low Few votes, recently uploaded zero_votes_recent

Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.

Low AI review llm_review

An AI model (qwen/qwen3-235b-a22b-2507) reviewed this and agrees it is LOW (confidence 95%): Package installs a prebuilt binary from a GitHub release by the same maintainer; while the host is not whitelisted, it's a plausible project-owned source, and the binary is the core software being distributed, not an obfuscated payload or remote code.

PKGBUILD

1# Maintainer: xifan <xifan2333@gmail.com>
2pkgname=wayhud-bin
3_pkgname=wayhud
4pkgver=0.1.2
5pkgrel=1
6pkgdesc="Universal modern suckless Wayland on-screen HUD (GTK CSS styled)"
7arch=('x86_64')
8url="https://github.com/xifan2333/wayhud"
9license=('MIT')
10depends=('wayland' 'cairo' 'pango' 'libxkbcommon')
11provides=("${_pkgname}")
12conflicts=("${_pkgname}" "${_pkgname}-git")
13options=(!strip)
14source_x86_64=("${_pkgname}-${pkgver}-x86_64.tar.gz::https://github.com/xifan2333/wayhud/releases/download/v0.1.2/wayhud-0.1.2-x86_64-unknown-linux-gnu.tar.gz")
15sha256sums_x86_64=('0c8c473e7e63e416bda7e3f50869ad892b0a21d5fab53768f6a58bb3970a38a0')
16
17package() {
18 cd "${srcdir}/wayhud-${pkgver}-x86_64-unknown-linux-gnu"
19
20 install -Dm4755 "${_pkgname}" "${pkgdir}/usr/bin/${_pkgname}"
21 install -Dm644 man/wayhud.1 "${pkgdir}/usr/share/man/man1/wayhud.1"
22 install -Dm644 README.md "${pkgdir}/usr/share/doc/${_pkgname}/README.md"
23 install -Dm644 LICENSE "${pkgdir}/usr/share/licenses/${_pkgname}/LICENSE"
24}
25

Scan history

Scanned at (UTC)SeverityRules
2026-10-06 00:13:36 Low 2
2026-10-05 23:40:58 Low 2

Report a package

Reports go to the AURWatch maintainer (one person) and are read by hand. No login required.

0 / 4000
Your suggestion