Omahub
← All plugins
M

Cliamp Now Playing

by Miguel

Now playing widget for cliamp with playback controls.

Security review

No obvious issues detected

Deterministic scan — not a security guarantee

None
Risk level
None
Analyzed commit
b93988f
Scanned
1 month ago

No potentially dangerous behavior detected in the analyzed commit.

Automated analysis only — not a security guarantee.

AI advisory review

No obvious issues detected

Language-model assessment · ~deepseek/deepseek-v4-flash-latest — advisory only

Low
AI risk level
Low
Recommendation
install
Model
~deepseek/deepseek-v4-flash-latest
Analyzed commit
b93988f
Reviewed
1 month ago

The plugin is a straightforward media widget that polls cliamp status and exposes playback controls. The deterministic scan found no issues, and the code is clean and non-obfuscated. The only notable behavior is that on first load it copies a small read-only Lua plugin into the user's cliamp config and auto-trusts it, which is documented and benign.

  • Auto-installs and auto-trusts a companion Lua plugin (~/.config/cliamp/plugins/next-track.lua) without an explicit user prompt, though it is read-only and documented in the README.
  • Runs external commands (cliamp status, cliamp plugins call, cliamp toggle, etc.) periodically, but these are expected for a media widget and are non-destructive.
How this check works

This review combines the deterministic scan (the rule-based results above) with an independent look at the plugin's code by a language model. The model reads a trimmed sample of the repository's files, the manifest, and the README, then gives a plain-language risk level and a recommendation: install (no notable danger), review (look closer first), or avoid (clearly dangerous).

It runs on the same analyzed commit as the deterministic scan and is strictly advisory — it is not a security guarantee and never blocks a plugin by itself. A human moderator still reviews plugins before they are listed.

AI advisory only — automated analysis, not a security guarantee.

Install
$ omarchy plugin add https://github.com/miguelRibeir0/omarchy-cliamp-nowplaying --enable
Widgets #media

Cliamp Now Playing

A bar widget for Omarchy that shows what cliamp is playing, with playback controls.

<p align="center"> <img src="screenshots/cliamp-plugin-1.png" width="49%" alt="Bar widget" /> <img src="screenshots/cliamp-plugin-2.png" width="49%" alt="Popup panel" /> </p>

Features

  • Fixed-width ticker that scrolls the current title · artist while playing
  • Separate play/pause and next buttons, click the ticker for the popup panel
  • Popup with progress + elapsed/duration, transport controls, volume slider, playback status, and an "Up next" line for the next track in the queue
  • Hotkey/script IPC: omarchy-shell cliamp status | playPause | next | previous | volume <dB> | panel

Install

omarchy plugin add https://github.com/yourname/omarchy-cliamp-nowplaying.git --enable

Dependency (auto-installed)

The "Up next" line reads the queue through a small cliamp Lua plugin (cliamp/next-track.lua). On first load the widget copies it to ~/.config/cliamp/plugins/ and approves it with cliamp plugins trust next-track --yes (read-only, declares no permissions). Restart cliamp once after install to activate it. Without it the widget still works — "Up next" simply stays hidden.

Settings

omarchy bar set miguel.cliamp-nowplaying hideWhenStopped false   # keep visible when cliamp is off
omarchy bar set miguel.cliamp-nowplaying maxWidth 120            # ticker width in px

Keybindings

Bind whatever you like to these shell IPC calls:

omarchy-shell cliamp playPause
omarchy-shell cliamp next
omarchy-shell cliamp volume -12

Remove

omarchy plugin remove miguel.cliamp-nowplaying

To also remove the companion cliamp plugin: rm ~/.config/cliamp/plugins/next-track.lua (and its entry in ~/.config/cliamp/plugins/.trust.json).