Omahub
← All plugins
A

Islamic Prayer Times

by ah410

The five daily Islamic prayer times in your bar, with the current prayer highlighted. Set your city, calculation method and Asr school from the popup.

Security review

Review recommended · 4 findings

Deterministic scan — not a security guarantee

Medium
Risk level
Medium
Analyzed commit
ee60ca8
Scanned
1 month ago
  • medium package_manager …/workflows/ci.yml:37

    System package manager operation.

    apt-get update
  • medium package_manager …/workflows/ci.yml:38

    System package manager operation.

    apt-get install -y --no-install-recommends qt6-declarative-dev-tools
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo apt-get update
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo apt-get install -y --no-install-recommends qt6-declarative-dev-tools

Automated analysis only — not a security guarantee.

AI advisory review

No obvious issues detected

Language-model assessment · ~deepseek/deepseek-v4-flash-latest — advisory only

Low
AI risk level
Low
Recommendation
install
Model
~deepseek/deepseek-v4-flash-latest
Analyzed commit
ee60ca8
Reviewed
1 month ago

This is a benign QML bar widget that fetches prayer times from the Aladhan API and geocoding from Open-Meteo. It contains no obfuscated code, no destructive commands, and no persistence beyond normal settings writes. The deterministic scan flagged sudo usage in the CI workflow, but that is standard CI tooling and not part of the plugin's runtime.

  • The CI workflow uses sudo apt-get, but this is only for build/test tooling and does not affect the plugin's runtime behavior.
How this check works

This review combines the deterministic scan (the rule-based results above) with an independent look at the plugin's code by a language model. The model reads a trimmed sample of the repository's files, the manifest, and the README, then gives a plain-language risk level and a recommendation: install (no notable danger), review (look closer first), or avoid (clearly dangerous).

It runs on the same analyzed commit as the deterministic scan and is strictly advisory — it is not a security guarantee and never blocks a plugin by itself. A human moderator still reviews plugins before they are listed.

AI advisory only — automated analysis, not a security guarantee.

Install
$ omarchy plugin add https://github.com/ah410/omarchy-islamic-prayer-times --enable
Widgets #bar #quickshell #system

Islamic Prayer Times

A bar widget for the Omarchy Quickshell bar. It shows Fajr, Dhuhr, Asr, Maghrib and Isha, keeps the current prayer highlighted, and opens a popup where you can set your city, calculation method and Asr school.

Vibe-coded with some final human touches

Install

# User verification first
omarchy plugin add https://github.com/ah410/omarchy-islamic-prayer-times.git

OR

# Add and enable it in one go, skipping that review step
omarchy plugin add https://github.com/ah410/omarchy-islamic-prayer-times.git --enable

Usage

Click any prayer in the bar to open the popup. From there you can:

  • Click the city name to search for a different one. Pick a suggestion with the arrow keys or the mouse; times update as soon as it is saved.
  • Switch between Full (all five prayers) and Compact (just the current prayer and the next one, with names).
  • Change the Method used to calculate Fajr and Isha, and the Asr juristic school.

Both of those calculation settings matter. Hanafi puts Asr roughly an hour later than Standard, and switching from Muslim World League to Umm al-Qura moves Fajr by around twenty minutes, so it is worth setting them to whatever your local mosque follows rather than leaving the defaults.

The defaults for a fresh install are New York City, Muslim World League and Standard Asr.

Screenshots

<img width="2560" height="1440" alt="screenshot-2026-08-18_00-18-07" src="https://github.com/user-attachments/assets/160af021-64db-487c-93b2-992d191c0c50" />

How it works

Times come from the Aladhan API, fetched once a day for your coordinates and timezone. City search uses Open-Meteo's geocoder, which returns the IANA timezone along with the coordinates, so a city change is enough on its own. Nothing is sent anywhere else, and there is no account or API key.

If the network is not up yet when the shell starts, the widget retries with a backoff up to five minutes until it gets an answer.

Settings

Everything lives in the widget's own entry in ~/.config/omarchy/shell.json and is written by the popup, so you do not normally need to touch it:

Key Meaning
locationName, latitude, longitude, timezone Where prayers are calculated for
method Aladhan calculation method id
school 0 standard, 1 Hanafi
displayMode full or compact

License

MIT