Omahub
← All plugins
R

Pomodoro Timer

by ronnie

Work/break countdown timer with desktop notifications

Security review

Review recommended · 1 finding

Deterministic scan — not a security guarantee

Low
Risk level
Low
Analyzed commit
70015dc
Scanned
1 month ago

Flagged patterns appear only in documentation files (README / docs) — descriptive examples, not executable code.

  • Docs external_hosts README.md:23

    Downloads or connects to an external HTTP(S) host.

    git clone https://github.com/Macs9319/Pomodoro.git ~/.config/omarchy/plugins/pomodoro

Automated analysis only — not a security guarantee.

AI advisory review

No obvious issues detected

Language-model assessment · ~deepseek/deepseek-v4-flash-latest — advisory only

Low
AI risk level
Low
Recommendation
install
Model
~deepseek/deepseek-v4-flash-latest
Analyzed commit
70015dc
Reviewed
1 month ago

The plugin is a straightforward Pomodoro timer implemented in QML. It only decrements a countdown, displays UI, and calls notify-send for phase transitions. The only flagged finding is a `git clone` install command in the README, which is documentation, not executable code, so it poses no real risk. No obfuscation, credential access, destructive commands, or suspicious network behavior were found.

  • The README shows a manual `git clone` install command; this is only documentation and not part of the plugin runtime.
  • The sample only shows part of Panel.qml; a full review may want to confirm there are no additional hidden behaviors beyond the timer and notification logic.
How this check works

This review combines the deterministic scan (the rule-based results above) with an independent look at the plugin's code by a language model. The model reads a trimmed sample of the repository's files, the manifest, and the README, then gives a plain-language risk level and a recommendation: install (no notable danger), review (look closer first), or avoid (clearly dangerous).

It runs on the same analyzed commit as the deterministic scan and is strictly advisory — it is not a security guarantee and never blocks a plugin by itself. A human moderator still reviews plugins before they are listed.

AI advisory only — automated analysis, not a security guarantee.

Install
$ omarchy plugin add https://github.com/Macs9319/Pomodoro --enable
Productivity #bar

Pomodoro Timer

A Pomodoro focus timer plugin for the Omarchy shell bar. Shows a single monochrome hourglass icon in the bar; click it to open a popup with the countdown, progress bar, and controls.

Popup

Install

Option 1 — omarchy plugin add (recommended):

omarchy plugin add https://github.com/Macs9319/Pomodoro.git --enable

You'll be prompted to pick a bar section (left/center/right) for the icon.

Option 2 — manual clone:

git clone https://github.com/Macs9319/Pomodoro.git ~/.config/omarchy/plugins/pomodoro
omarchy plugin enable pomodoro right

Either way, the shell picks up the plugin without a restart — edits under ~/.config/omarchy/plugins/ hot-reload automatically.

Usage

Bar icon:

Action Effect
Left click Open/close the timer popup
Right click Reset the current phase to full duration
Middle click Skip straight to the next phase

Popup controls: Start/Pause, Reset, Skip, plus a live countdown, progress bar, and completed-session count.

Work phases auto-advance into a break (with a desktop notification via notify-send); breaks pause on completion so a work session only starts on a deliberate click. Every 4th break is a longer one.

Configuration

Settings live on the plugin's bar entry in ~/.config/omarchy/shell.json (hot-reloads on save). Defaults:

Setting Default Meaning
workMinutes 25 Work phase length
breakMinutes 5 Short break length
longBreakMinutes 15 Long break length
sessionsUntilLongBreak 4 Work sessions between long breaks

Example entry:

{ "id": "pomodoro", "workMinutes": 50, "breakMinutes": 10 }

Uninstall

omarchy plugin remove pomodoro

License

MIT — see LICENSE.