Omahub
← All plugins
G

AP Lock

by geertjohan

Lock Wi-Fi to the current access point (disables periodic background scans)

Security review

No obvious issues detected

Deterministic scan — not a security guarantee

None
Risk level
None
Analyzed commit
530e977
Scanned
1 month ago

No potentially dangerous behavior detected in the analyzed commit.

Automated analysis only — not a security guarantee.

AI advisory review

No obvious issues detected

Language-model assessment · ~deepseek/deepseek-v4-flash-latest — advisory only

None
AI risk level
None
Recommendation
install
Model
~deepseek/deepseek-v4-flash-latest
Analyzed commit
530e977
Reviewed
1 month ago

The plugin is a transparent, well-documented NetworkManager BSSID lock toggle. The shell script and QML contain no obfuscation, persistence, or destructive behavior, and the only system change is the intended, reversible modification of the active Wi-Fi connection profile plus a reconnect. No notable danger found.

How this check works

This review combines the deterministic scan (the rule-based results above) with an independent look at the plugin's code by a language model. The model reads a trimmed sample of the repository's files, the manifest, and the README, then gives a plain-language risk level and a recommendation: install (no notable danger), review (look closer first), or avoid (clearly dangerous).

It runs on the same analyzed commit as the deterministic scan and is strictly advisory — it is not a security guarantee and never blocks a plugin by itself. A human moderator still reviews plugins before they are listed.

AI advisory only — automated analysis, not a security guarantee.

Install
$ omarchy plugin add https://github.com/GeertJohan/omarchy-lock-wifi-ap --enable
Widgets #bar #quickshell #system

omarchy-lock-wifi-ap

An Omarchy shell plugin that adds a Wi-Fi AP lock toggle to the status bar: one click pins your Wi-Fi connection to the access point you are currently on, and one click releases it again.

Why

On networks with more than one access point (mesh systems, multi-AP setups), NetworkManager enables wpa_supplicant's background scanning to keep a roaming candidate list fresh. Every few minutes the radio leaves its channel and sweeps the full spectrum — which takes several seconds and momentarily stalls all traffic.

For browsing you will never notice. For anything that needs a continuously stable connection it shows up as periodic multi-second freezes and audio drop-outs:

  • Game streaming and remote desktop tools (Moonlight/Sunshine, Steam Link, Parsec, RDP, VNC)
  • Video calls
  • Cloud gaming
  • Real-time audio

Locking the connection profile to its current BSSID makes NetworkManager skip background scanning entirely — the periodic stalls disappear. The trade-off: while locked, your machine will not roam to another access point. Unlock when you move around; lock when you sit down to stream.

Install

omarchy plugin add https://github.com/GeertJohan/omarchy-lock-wifi-ap.git --enable

By default the widget lands in the bar's center section. To place it next to the indicators cluster (night light, do-not-disturb, …):

omarchy bar move geertjohan.lock-wifi-ap --before omarchy.indicators

Use

The widget behaves like the built-in indicators:

State Appearance
Unlocked Hidden — hover the bar's center section to reveal it dimmed
Locked Wi-Fi-with-lock icon, always visible
Applying Wi-Fi-refresh icon, slowly pulsing — clicks are ignored until done

Clicking toggles the lock. Toggling briefly reconnects Wi-Fi (a few seconds), because the change only takes effect on reassociation — so flip it between sessions, not mid-stream. The lock is stored in the NetworkManager connection profile and survives reboots; there is no need to toggle it again until you want to roam.

If the locked access point ever becomes unavailable mid-toggle, the helper reverts the profile and reconnects rather than leaving you offline.

CLI

The bundled helper can also be used directly:

./omarchy-network-lock-ap          # show current + locked BSSID
./omarchy-network-lock-ap lock     # pin to the current AP and reconnect
./omarchy-network-lock-ap unlock   # release the pin and reconnect

Symlink it into your PATH if you want it as a command:

ln -s ~/.config/omarchy/plugins/geertjohan.lock-wifi-ap/omarchy-network-lock-ap ~/.local/bin/

Remove

Unlock first if you are locked — the pin lives in the NetworkManager profile, not in the plugin, so removing the plugin alone would leave it in force:

./omarchy-network-lock-ap unlock
omarchy plugin remove geertjohan.lock-wifi-ap

If you created the PATH symlink, remove it too:

rm ~/.local/bin/omarchy-network-lock-ap

(Should you ever need to clear a leftover pin without the helper: nmcli connection modify <connection-name> 802-11-wireless.bssid "", then nmcli connection up <connection-name>.)

Requirements

  • Omarchy (the plugin targets the Omarchy shell's bar plugin API)
  • NetworkManager with wpa_supplicant (the Omarchy default)

License

MIT