Omahub
← All plugins
S

CodeBurn

by Sean Erswell-Liljefelt

Real-time AI spend and token usage tracker with model breakdown and provider stats for Omarchy.

Security review

No obvious issues detected

Deterministic scan — not a security guarantee

None
Risk level
None
Analyzed commit
76da696
Scanned
1 month ago

No potentially dangerous behavior detected in the analyzed commit.

Automated analysis only — not a security guarantee.

AI advisory review

Review recommended

Language-model assessment · ~deepseek/deepseek-v4-flash-latest — advisory only

Low
AI risk level
Low
Recommendation
review
Model
~deepseek/deepseek-v4-flash-latest
Analyzed commit
76da696
Reviewed
1 month ago

The plugin itself is a straightforward QML bar widget, and the shipped status.sh is defensive: it whitelists the period argument, invokes the selected CLI without shell interpolation, and contains no obfuscation or destructive commands. The deterministic scan's 'none' is accurate for the code in this repository. The only residual risk is that, when no local codeburn binary exists, the widget executes the third-party npm package codeburn@0.9.20 via npx/bunx at runtime, which is documented and version-pinned but is external code not reviewed here.

  • status.sh falls back to `npx --yes codeburn@0.9.20` or `bunx codeburn@0.9.20`, executing a remote npm package at runtime; this is transparent and pinned, but it is a supply-chain surface outside the plugin repository.
  • The script prepends user-controlled paths such as `$HOME/.local/bin` and mise shims to PATH, so the resolved codeburn/npx/bunx binary depends on the local user environment.
How this check works

This review combines the deterministic scan (the rule-based results above) with an independent look at the plugin's code by a language model. The model reads a trimmed sample of the repository's files, the manifest, and the README, then gives a plain-language risk level and a recommendation: install (no notable danger), review (look closer first), or avoid (clearly dangerous).

It runs on the same analyzed commit as the deterministic scan and is strictly advisory — it is not a security guarantee and never blocks a plugin by itself. A human moderator still reviews plugins before they are listed.

AI advisory only — automated analysis, not a security guarantee.

Install
$ omarchy plugin add https://github.com/erzz/omarchy-codeburn --enable
Widgets #bar #ai

omarchy-codeburn

Lightweight, real-time AI spend and token usage tracker for the Omarchy status bar.

omarchy-codeburn is an Omarchy shell bar-widget plugin powered by CodeBurn. It gives you instant visibility into your AI assistant spend, active provider accounts (OpenCode, Anthropic, OpenAI, etc.), token throughput, and model consumption directly from your desktop panel.

<p align="center"> <img src="preview.png" alt="CodeBurn Omarchy Status Bar Widget and Analytics Popup" width="420" /> </p>

<a href="https://www.buymeacoffee.com/erzz"><img src="docs/buy-me-a-coffee.png" alt="Buy me a coffee" /></a>


Features

  • Concise Bar Badge: Displays spend at a glance (e.g. 󰈸 $10.70) with automatic 5-minute background caching and refresh.
  • Selectable Reporting Periods: Switch reporting ranges on the fly with a single click or keystroke:
    • Today (default)
    • 7 Days
    • 30 Days
    • Month
    • 6 Months
    • Lifetime
  • Rich Analytics Popup:
    • Period Overview: Total cost, API call count, active sessions, and cache hit rate percentage.
    • Token Throughput Strip: Real-time input, output, and cache read tokens.
    • Provider Spend Breakdown: Granular cost tracking by provider (OpenCode, OpenAI, Anthropic, Fireworks, etc.).
    • Top Models Breakdown: Token spend per model with proportional visual burn distribution meters.
    • Activity Breakdown: Spend and turn counts grouped by activity (Exploration, Coding, Debugging, etc.).
  • Zero Configuration Required: Uses a local codeburn binary first; otherwise, npx or bunx runs the pinned codeburn@0.9.20 release.
  • Unobtrusive Recovery UX: When offline or if usage logs are uninitialized, displays a graceful recovery hint rather than intrusive error dialogs.
  • Full Keyboard Navigation: Supports standard Omarchy shortcuts (← / → for periods, 1–6 for direct jumps, R to refresh, Esc to close).

Prerequisites

  • Omarchy Linux with omarchy-shell (Quickshell).
  • Node.js with npx (or bun) available in your environment PATH.

(No global packages need to be installed manually; npx or bunx executes the pinned CodeBurn revision on demand.)


Installation

Add and enable the plugin directly using the Omarchy CLI:

omarchy plugin add https://github.com/erzz/omarchy-codeburn --enable

To position the widget in a specific location on the status bar (e.g., right next to omarchy.agents):

# Move or place next to existing widgets
omarchy bar move codeburn --after omarchy.agents

Usage & Controls

  • Left-Click: Toggle the CodeBurn details popup.
  • Right-Click: Instantly trigger a live background data refresh.
  • Keyboard Shortcuts (while popup is open):
    • ← / → or [ / ] — Cycle through reporting periods
    • 1 to 6 — Direct jump to period (1: Today, 2: 7 Days, 3: 30 Days, 4: Month, 5: 6 Months, 6: Lifetime)
    • R — Refresh data immediately
    • Esc — Close popup
    • Tab / Shift+Tab — Switch between adjacent Omarchy panels

Updating

Update to the latest version at any time with:

omarchy plugin update codeburn

Uninstallation

To remove the plugin from your system:

omarchy plugin remove codeburn --yes

Configuration

You can customize the polling interval directly in ~/.config/omarchy/shell.json under your widget layout settings:

{
  "id": "codeburn",
  "refreshIntervalSec": 300
}

Attribution & Acknowledgments

This plugin interfaces with CodeBurn, an open-source CLI for inspecting and optimizing LLM and AI coding assistant usage.


License

MIT © 2026 Sean Erswell-Liljefelt