Dear Arch Officials,

Will you please review the perpetual "moderation" that is attached to my AUR e-mail. This is going on a year and is quite ridiculous. This is my third request for review of this unfortunate matter.


-------- Forwarded Message --------
Subject: Re: Possible malicous PKGBUILD
Date: Wed, 30 Jul 2025 09:22:24 +0000
From: [email protected]
To: [email protected]

Your message to the Aur-general mailing-list was rejected for the following
reasons:

The message comes from a moderated member

The original message as received by Mailman is attached.


--
David C. Rankin, J.D.,P.E.
--- Begin Message ---
On 7/29/25 6:33 AM, Peter Jung wrote:
Hi Lex Black,

Thank you very much for noticing this.
We have removed the package from the AUR and consider further action for the 
user account.


Best regards,

Peter „ptr1337“ Jung

On 29. Jul 2025, at 13:23, Lex Black <[email protected]> wrote:

Hi
Will only be able top later create a deletion requests for a package, but maybe 
someone else wants to step up?
https://aur.archlinux.org/packages/gdox
Not a really stealthy and working approach to do harm, but such a PKGBUILD 
shouldn't stay up in my opinion.

Best regards


Good catch Lex,

Make no exceptions. If this was an intentional upload of a PKGBUILD that would generate inappropriate software, one-strike and you are out -- permanently should be our policy. Zero tolerance. And if the package could do damage or compromise security, there should be a policy to refer the incident to the appropriate governing body for prosecution in whatever jurisdiction Arch/AUR falls in.

A strong policy, and strong identification of AUR account holders/packages will prevent playing whack-a-mole as AI makes it easier for miscreants to create and disguise.

--
David C. Rankin, J.D.,P.E.


--- End Message ---

Reply via email to