Omahub
← All plugins
S

Timezone Bar

by sergiotapia

Multi-timezone clock for the Omarchy bar. See your remote team's local times at a glance.

Security review

Review recommended · 1 finding

Deterministic scan — not a security guarantee

Low
Risk level
Low
Analyzed commit
fa48848
Scanned
1 month ago

Flagged patterns appear only in documentation files (README / docs) — descriptive examples, not executable code.

  • Docs external_hosts README.md:44

    Downloads or connects to an external HTTP(S) host.

    git clone https://github.com/sergiotapia/omarchy-timezone-bar ~/.config/omarchy/plugins/sergiotapia.omarchy-timezone-bar

Automated analysis only — not a security guarantee.

AI advisory review

No obvious issues detected

Language-model assessment · ~deepseek/deepseek-v4-flash-latest — advisory only

Low
AI risk level
Low
Recommendation
install
Model
~deepseek/deepseek-v4-flash-latest
Analyzed commit
fa48848
Reviewed
1 month ago

The plugin is a simple QML bar widget that runs two fixed `date` commands to display timezones; no install scripts, network calls, or destructive operations are present. The deterministic scan's medium finding refers to a `git clone` line in the README, which is documentation only and not executed by the plugin.

  • The widget executes a shell command via `bash -c`, but the command is a hardcoded, non-interactive `date` invocation with no user input or external data, so risk is minimal.
  • The README's `git clone`/`omarchy plugin add` lines are installation instructions, not part of the plugin's executable code.
How this check works

This review combines the deterministic scan (the rule-based results above) with an independent look at the plugin's code by a language model. The model reads a trimmed sample of the repository's files, the manifest, and the README, then gives a plain-language risk level and a recommendation: install (no notable danger), review (look closer first), or avoid (clearly dangerous).

It runs on the same analyzed commit as the deterministic scan and is strictly advisory — it is not a security guarantee and never blocks a plugin by itself. A human moderator still reviews plugins before they are listed.

AI advisory only — automated analysis, not a security guarantee.

Install
$ omarchy plugin add https://github.com/sergiotapia/omarchy-timezone-bar --enable
Widgets #quickshell

Timezone Bar for Omarchy

Multi-timezone clock widget for the Omarchy bar (Quickshell). Show your coworkers' local times at a glance — great for remote teams coordinating across timezones.

CoI 3:13 PM · Seattle 3:13 PM · Chicago 5:13 PM

Installation

Via Omarchy plugin manager

omarchy plugin add https://github.com/sergiotapia/omarchy-timezone-bar --enable

Then add the widget to your bar layout in ~/.config/omarchy/shell.json:

{
  "version": 1,
  "bar": {
    "layout": {
      "center": [
        { "id": "omarchy.clock" },
        { "id": "sergiotapia.omarchy-timezone-bar" }
      ]
    }
  }
}

And restart the shell:

omarchy restart shell

Manual installation

git clone https://github.com/sergiotapia/omarchy-timezone-bar ~/.config/omarchy/plugins/sergiotapia.omarchy-timezone-bar

Then follow the shell.json steps above.

Customizing cities

Edit BarWidget.qml — change the zones list and the matching TZ= lookups in the Process command. City of Industry and Seattle share Pacific time, so one lookup covers both.

License

MIT