Omahub
← All plugins
N

Vitals

by niraletter

Native Linux CPU, memory, GPU, storage, network, and process monitor

Security review

Review recommended · 4 findings

Deterministic scan — not a security guarantee

Medium
Risk level
Medium
Analyzed commit
f5f3f22
Scanned
1 week ago
  • medium package_manager Panel.qml:2023

    System package manager operation.

    apt-get install -y intel-gpu-tools; "
  • medium package_manager Panel.qml:2025

    System package manager operation.

    dnf install -y intel-gpu-tools; "
  • Docs sudo README.md:72

    Command runs with sudo, elevating the process beyond the plugin environment.

    sudo pacman -S --needed intel-gpu-tools
  • Docs sudo README.md:73

    Command runs with sudo, elevating the process beyond the plugin environment.

    sudo setcap cap_perfmon=ep "$(command -v intel_gpu_top)"

Automated analysis only — not a security guarantee.

AI advisory review

Review recommended

Language-model assessment · ~deepseek/deepseek-v4-flash-latest — advisory only

Medium
AI risk level
Medium
Recommendation
review
Model
~deepseek/deepseek-v4-flash-latest
Analyzed commit
f5f3f22
Reviewed
1 week ago

The plugin is a legitimate-looking system monitor with no signs of obfuscation or credential theft in the sampled files. The main real risk is the runtime Intel GPU setup in Panel.qml, which invokes package-manager commands with elevated privileges; this is documented in the README, but the exact gating and user-consent flow should be verified. The sudo commands flagged by the deterministic scan in README.md are documentation only and are not executed by the plugin.

  • Panel.qml contains apt-get and dnf install commands (lines 2023/2025) that can modify the system; verify they are only triggered by the documented pkexec/polkit prompt and Intel GPU detection flow.
  • The Intel GPU setup grants CAP_PERFMON to intel_gpu_top and persists across reboots, which is a system-level change beyond normal widget behavior.
  • The plugin advertises process termination; ensure kill actions are strictly user-initiated and cannot be triggered by panel events or unvalidated input.
  • The sampled Panel.qml is truncated, so the full intel_gpu_top setup function should be human-reviewed before publishing.
How this check works

This review combines the deterministic scan (the rule-based results above) with an independent look at the plugin's code by a language model. The model reads a trimmed sample of the repository's files, the manifest, and the README, then gives a plain-language risk level and a recommendation: install (no notable danger), review (look closer first), or avoid (clearly dangerous).

It runs on the same analyzed commit as the deterministic scan and is strictly advisory — it is not a security guarantee and never blocks a plugin by itself. A human moderator still reviews plugins before they are listed.

AI advisory only — automated analysis, not a security guarantee.

Install
$ omarchy plugin add https://github.com/niraletter/vitals --enable
System #system

Vitals

Native system monitor for Omarchy.

A compact metric lives in the top bar. Click it to open a dashboard with CPU, memory, swap, GPU, storage, network, and process information.

https://github.com/user-attachments/assets/4a33f637-2eac-4e74-89c9-834af9f2a63a

Installation

omarchy plugin add https://github.com/niraletter/vitals.git --enable

Install from a local checkout

Copy the repository into the user plugin directory:

mkdir -p ~/.config/omarchy/plugins
cp -r vitals ~/.config/omarchy/plugins/vitals

Then enable it:

omarchy plugin enable vitals

If the bar does not update automatically, restart the shell:

omarchy restart shell

Features

Feature Description
Bar Pin one or more of CPU, memory, GPU, storage, disk, or network to the top bar.
CPU & memory Usage, temperature, fans, uptime, per-core load, RAM, and swap.
GPU Intel, AMD, and NVIDIA. Usage, chip/hotspot temperature, VRAM, and per-app stats.
Storage & network Disk space, I/O speeds, live rates, and WIFI / ETH labels.
Processes Search, filter, sort, inspect commands, and end tasks.
Dashboard Expand tiles for more detail. Optional mini graphs.
Theme Matches Omarchy. High usage turns red.
Efficiency Stays light when closed; full stats when you open the dashboard.

Requirements

Omarchy with the shell plugin system and Quickshell bar widget support. Missing optional tools only disable their related metric.

Tool Provides
intel_gpu_top (intel-gpu-tools) Intel GPU device usage (i915 PMU)
pkexec / polkit One-time Intel GPU install and CAP_PERFMON setup prompts
sensors Additional temperatures (lm_sensors)
nvidia-smi NVIDIA GPU and VRAM data

Intel GPU setup

Intel device usage reads i915 performance counters through intel_gpu_top, similar to btop. On the first dashboard open with an Intel GPU, Vitals automatically:

  1. Installs intel-gpu-tools if missing (via pkexec + your package manager)
  2. Grants CAP_PERFMON to intel_gpu_top with setcap (persists across reboot)

Approve the system authentication dialog when it appears. Once setup succeeds, it won't run again.

Manual setup if auto-setup fails:

# Arch
sudo pacman -S --needed intel-gpu-tools
sudo setcap cap_perfmon=ep "$(command -v intel_gpu_top)"

If the GPU tile shows PMU access needed, cap_perfmon is not granted — run the setcap command above or reopen the dashboard to retry.

Per-process Intel GPU stats use DRM fdinfo (shared memory and per-app engine time).

Updating and removing

omarchy plugin update vitals
omarchy plugin disable vitals
omarchy plugin enable vitals
omarchy plugin remove vitals --yes

License

This project is licensed under the MIT License.