This is beyond extremely well documented. This is where you start, everything is here:
Then move onto here:
And finally here:
This has no maintainer so the AUR calls it orphan because the previous maintainer has stopped working on that package. There are security risks if a new maintainer picks it up. Otherwise it will be removed from the AUR entirely at some point.