Omahub
← All plugins
J

OmaConnect

by Jitendra Dara (jitendradara12)

Seamless KDE Connect integration for Omarchy: Tailscale discovery, pairing, SMS, battery stats, clipboard sync, file sharing, remote commands, and media controls.

Security review

Potentially dangerous behavior detected · 25 findings

Deterministic scan — not a security guarantee

High
Risk level
High
Analyzed commit
71282d2
Scanned
1 week ago
  • high destructive_filesystem tests/test_state.py:762

    Destructive operation on the root filesystem or a block device.

    rm -rf /; $(id).txt")
  • high destructive_filesystem tests/test_state.py:763

    Destructive operation on the root filesystem or a block device.

    rm -rf /; $(id).txt"])
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo pacman -S --needed kdeconnect glib2 dbus", install_source)
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw allow 1714:1764/tcp", firewall_source)
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw allow 1714:1764/udp", firewall_source)
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw reload", firewall_source)
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo pacman -S --needed kdeconnect glib2 dbus"
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw allow 1714:1764/tcp & udp (or firewalld)"
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw allow 1714:1764/tcp comment 'KDE Connect'
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw allow 1714:1764/udp comment 'KDE Connect'
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw reload
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw allow 1714:1764/tcp comment 'KDE Connect'; } && \
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw allow 1714:1764/udp comment 'KDE Connect'; } && \
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw reload; then
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo firewall-cmd --permanent --add-service=kdeconnect
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo firewall-cmd --reload
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo firewall-cmd --permanent --add-service=kdeconnect && \
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo firewall-cmd --reload; then
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo pacman -S --needed kdeconnect glib2 dbus
  • Command runs with sudo, elevating the process beyond the plugin environment.

    sudo pacman -S --needed kdeconnect glib2 dbus; then
  • Augments a command with octal/hex escape sequences.

    \x00file.txt"))
  • Docs sudo README.md:60

    Command runs with sudo, elevating the process beyond the plugin environment.

    sudo pacman -S --needed kdeconnect glib2 dbus
  • Docs sudo README.md:74

    Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw allow 1714:1764/tcp comment 'KDE Connect'
  • Docs sudo README.md:75

    Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw allow 1714:1764/udp comment 'KDE Connect'
  • Docs sudo README.md:76

    Command runs with sudo, elevating the process beyond the plugin environment.

    sudo ufw reload

Automated analysis only — not a security guarantee.

AI advisory review

No obvious issues detected

Language-model assessment · ~deepseek/deepseek-v4-flash-latest — advisory only

Low
AI risk level
Low
Recommendation
install
Model
~deepseek/deepseek-v4-flash-latest
Analyzed commit
71282d2
Reviewed
1 week ago

The high-severity deterministic findings are test-only: the "rm -rf /" strings and the octal escape in tests/test_state.py are fixtures for path/command sanitization tests and are not executed during installation or normal plugin operation. The sudo commands are limited to documentation plus explicit user-triggered helper scripts for installing dependencies and opening firewall ports, and those scripts print the exact commands before running them. No hidden persistence, credential theft, destructive install-time behavior, or obfuscated runtime code was found.

  • Confirm that tests/test_state.py is not executed as part of the plugin install/validation path; the dangerous-looking strings are only test data.
  • The sudo-based dependency and firewall helpers should remain opt-in and should not be auto-invoked by the GUI without user action.
  • KDE Connect's remote commands and file sharing are powerful by design, so users should only pair the plugin with trusted devices.
How this check works

This review combines the deterministic scan (the rule-based results above) with an independent look at the plugin's code by a language model. The model reads a trimmed sample of the repository's files, the manifest, and the README, then gives a plain-language risk level and a recommendation: install (no notable danger), review (look closer first), or avoid (clearly dangerous).

It runs on the same analyzed commit as the deterministic scan and is strictly advisory — it is not a security guarantee and never blocks a plugin by itself. A human moderator still reviews plugins before they are listed.

AI advisory only — automated analysis, not a security guarantee.

Install
$ omarchy plugin add https://github.com/jitendradara12/omaconnect --enable
Productivity #quickshell

OmaConnect

Control phones and connected devices from the Omarchy bar using KDE Connect.

OmaConnect panel

Install

Just install the plugin with this command. It will handle dependencies and firewall in GUI.

omarchy plugin add https://github.com/jitendradara12/omaconnect.git --enable --yes

Features

  • Device status. Battery level, charging state, cellular network type, signal strength, and reachability.
  • Quick actions. Ring phone, sync clipboard, send files, share text or links, and ping devices.
  • SMS launcher. Open kdeconnect-sms for paired devices.
  • Media playback. Track metadata, playback controls, and player switching.
  • File picker. Pick recent files with omarchy-menu-select.
  • Remote commands. Run custom commands configured on paired devices.
  • Pairing. Manage requests, verification keys, and unpairing.
  • Network discovery. Add Tailscale peers or custom LAN and VPN IP addresses.
  • Bar widget. Show connection and battery status directly in the Omarchy bar.

Preferences

Configure OmaConnect in Omarchy bar widget settings.

Setting Default Description
showBatteryStats true Battery percentage and charging state
showBarBattery false Battery percentage next to the icon in the bar
showNetworkStats true Cellular network type and signal strength
showTailscale true Tailscale and custom IP discovery
showDeviceTypeIcons true Device type icons in bar and panel
showMediaPlayer true Media player controls and track metadata
showRemoteCommands true Remote commands section
showTroubleshooting true Setup and firewall helpers when offline
showActionRing true Ring device button
showActionClipboard true Clipboard sync button
showActionFile true File transfer button
showActionSms true SMS launcher button
showActionPing false Ping button
showActionText true Text and link share button
defaultPingMessage "" Default ping message draft

Shortcuts

(Optional) Add to ~/.config/omarchy/shortcuts.lua:

o.bind("SUPER + SHIFT + C", "Toggle OmaConnect", "omarchy-shell shell toggle omaconnect")

Dependencies

Requires kdeconnect, glib2, dbus, and omarchy-menu-select (for file sharing). tailscale and kdeconnect-sms are optional.

sudo pacman -S --needed kdeconnect glib2 dbus

Tailscale and custom IPs

Expand Network Discovery to add detected Tailscale peers, or enter custom LAN and VPN IP addresses directly.

Firewall

KDE Connect requires ports 1714:1764 (TCP and UDP). Click Allow in Firewall in the panel when devices are offline, or allow them manually:

Firewall setup in OmaConnect

sudo ufw allow 1714:1764/tcp comment 'KDE Connect'
sudo ufw allow 1714:1764/udp comment 'KDE Connect'
sudo ufw reload

Update

omarchy plugin update omaconnect

Remove

omarchy plugin remove omaconnect

Star History

<a href="https://www.star-history.com/?repos=jitendradara12%2Fomaconnect&type=date&releases=&legend=bottom-right"> <picture> <source srcset="https://api.star-history.com/chart?repos=jitendradara12/omaconnect&type=date&legend=bottom-right" /> <img alt="Star History Chart" src="https://api.star-history.com/chart?repos=jitendradara12/omaconnect&type=date&legend=bottom-right" /> </picture> </a>