Package Details: tuwunel-git 0.5.0.5108.geb2949d6-1

Git Clone URL: https://aur.archlinux.org/tuwunel-git.git (read-only, click to copy)
Package Base: tuwunel-git
Description: successor to conduwuit with stable governance
Upstream URL: https://github.com/matrix-construct/tuwunel
Keywords: conduit conduwuit fork git rust tuwunel
Licenses: Apache-2.0
Conflicts: conduwuit
Provides: conduwuit, tuwunel
Submitter: Kimiblock
Maintainer: skarbricat
Last Packager: tippfehlr
Votes: 1
Popularity: 0.077369
First Submitted: 2025-04-17 05:14 (UTC)
Last Updated: 2026-06-14 18:28 (UTC)

Latest Comments

Alastor commented on 2026-06-14 17:29 (UTC)

This package has a malicious commit https://aur.archlinux.org/cgit/aur.git/commit/?h=tuwunel-git&id=0d6f8059b791da6cff34d8f0bbc2c074ab137cc9

Do not use this AUR package.

Kimiblock commented on 2025-07-24 04:51 (UTC)

Dropping because maintainers has been banned by the foundation

Kimiblock commented on 2025-07-24 04:14 (UTC)

Warnings ahead, quoted from https://matrix.to/#/!offtopic-2:continuwuity.org/$WexE0LUPdFLu6s-rCR_OQ6VrCjYnGbEjvXZZVTylOXI?via=nexy7574.uk&via=matrix.org&via=continuwuity.org:

Keep in mind the claim of being official is not true: this is a claim by one of the former co-maintainers of conduwuit, to claim legitimacy over other projects like continuwuity. Additionally, tuwunel's maintainer has openly made threats against the maintainers of continuwuity, aswell as being formally banned from the foundation for actively abusing protocol exploits. I'm not sure I'd trust a project primarily maintained by them for these reasons. Additionally, it's maintainer appears to currently also be pushing for publishing how to exploit the security vulnerabilities from the upcoming security release.

claim legitimacy over or de legitimise other projects:

  1. https://matrix.to/#/#ping:maunium.net/$V9aN1Wn0pId-JWbxH1WV5I8PAVMajooX7WMFKmDyh6E
  2. https://matrix.to/#/#ping:maunium.net/$IsfOfe8anRYqbRAwj7OdlX_hS-kBbHUJTVhQW-32Etk
  3. https://matrix.to/#/#ping:maunium.net/$-Bswk96jj3ns8xpSISKH0Y24pXZ2Xcd6Rwl8mRZQIaM (ironic)
  4. https://matrix.to/#/#meowlnir:maunium.net/$zOmf7-NIHfQ_f_Ku9Q794GeKyu8n9v2MAvPtYjlGJIE (ironic that he asked https://matrix.to/#/#meowlnir:maunium.net/$nE57Bi_DmvodZJe7JDPS7NxUBlxeDLUBhYIWNzgNk0g despite having cherrypicked a bunch of fixes from us already)
  5. https://matrix.to/#/#tuwunel:grin.hu/$svIUeuWfm2VWuHGSUMeT5VWWcZclraKcmUaDK3NiYEM ("June and I dealt with another "continuwuity" called "grapevine" last year.")

threats against the project:

  1. https://matrix.to/#/#ping:maunium.net/$o27P102ebbFa9U80e-FK-DxGTupy8IJ3TSWFYJm6hIs
  2. https://matrix.to/#/#ping:maunium.net/$priRlTsBuH2YfTo_pb04xHUJpTeU2DKXdJ7tAVrR5w4

personal threats:

  1. https://matrix.to/#/#ping:maunium.net/$5YefXN_uVR5WiGfj32j3Po9Q1JMKuTTfxve_8IHp1J8
  2. https://matrix.to/#/#ping:maunium.net/$L-dXYMXucfJiLkyc5dvv4t7pQqUKMwnLEd9zzLjZlu0

attempting to get security details released early (knowing only he and two other servers have finished implementing):

  1. https://matrix.to/#/!NasysSDfxKxZBzJJoE:matrix.org/%24_d2wJk45JtwblMHRVBdfeEV1cAU5flPuRebTAvfOr-s?via=nexy7574.co.uk&via=matrix.org&via=element.io
  2. https://matrix.to/#/#tuwunel:grin.hu/$mgi2dDGnL-L9Jqjm_YZPhu4NoAx8q3OMF9KIfRiGwFs