Omahub
← All plugins
R

GitHub Stats

by ricky

GitHub contribution boxes and inbox notifications in the Omarchy bar.

Security review

No obvious issues detected

Deterministic scan — not a security guarantee

None
Risk level
None
Analyzed commit
5f5fff6
Scanned
1 month ago

No potentially dangerous behavior detected in the analyzed commit.

Automated analysis only — not a security guarantee.

AI advisory review

No obvious issues detected

Language-model assessment · ~deepseek/deepseek-v4-flash-latest — advisory only

None
AI risk level
None
Recommendation
install
Model
~deepseek/deepseek-v4-flash-latest
Analyzed commit
5f5fff6
Reviewed
1 month ago

This is a GitHub stats bar widget that uses the user's local gh CLI to fetch contribution data and notifications, and to mark notifications read/done as the user requests. No credential theft, obfuscation, destructive commands, or unexpected persistence was found in the sampled code, and untrusted GitHub/helper output is sanitized before display. The deterministic scan's "none" finding matches this review.

How this check works

This review combines the deterministic scan (the rule-based results above) with an independent look at the plugin's code by a language model. The model reads a trimmed sample of the repository's files, the manifest, and the README, then gives a plain-language risk level and a recommendation: install (no notable danger), review (look closer first), or avoid (clearly dangerous).

It runs on the same analyzed commit as the deterministic scan and is strictly advisory — it is not a security guarantee and never blocks a plugin by itself. A human moderator still reviews plugins before they are listed.

AI advisory only — automated analysis, not a security guarantee.

Install
$ omarchy plugin add https://github.com/srineshr1/omarchy-ghstats --enable
Widgets #bar #quickshell #system

GitHub Stats for Omarchy

Contribution boxes and GitHub inbox notifications in the Omarchy Quattro bar.

The bar shows the GitHub icon, the last seven days of contributions, and an unread badge. Click it for the year heatmap, streak, and notification list.

<p align="center"> <img src="preview.png" alt="GitHub contribution heatmap and inbox in the Omarchy bar" width="80%" /> </p>

Install

Needs Omarchy 4 (Quattro) and a signed-in GitHub CLI. The plugin talks to GitHub only through gh. It does not store tokens and does not overwrite your shell config unless you enable it.

gh auth login
omarchy plugin add https://github.com/srineshr1/omarchy-ghstats.git --enable

If the heatmap loads but the inbox does not:

gh auth refresh -s notifications

Usage

Action How
Open the panel Left click the bar icon
Refresh Middle click, or R in the panel
Open github.com/notifications Right click the bar icon, or O in the panel
Open a thread Click it, or Enter on the highlighted row
Done (dismiss) The check on a row, E, or X
Unread / all U / A
Close Escape

CI / GitHub Actions noise is hidden by default. Turn that off in the widget settings (excludeCi).

Configure

omarchy bar move io.github.ricky.ghstats --section right
Key Default Meaning
refreshIntervalSec 120 How often to poll GitHub
showHeatmap true Last-seven-day boxes on the bar
showUnreadCount true Badge next to the icon
hideWhenEmpty false Hide the widget when nothing is unread
excludeCi true Drop ci_activity / CheckSuite items
username (signed-in account) Public calendar for someone else; inbox stays yours

Remove

omarchy plugin remove io.github.ricky.ghstats

License

MIT. See LICENSE.

External dependency: GitHub CLI (gh), already on Omarchy and signed in with your GitHub account.