Your wallpaper, promoted to information desk.
Every AI agent running on your machine, what it's doing, what it cost you, and how the box is holding up —
drawn live on the Omarchy desktop in your current theme, one glance away, one click to jump in.
The public preview is the real plugin rendered on an empty Omarchy desktop using Infomarchy's explicit, transient demo-data mode. It contains no live prompt, hostname, username, network, path, process, or session data.
Want to see the plain desktop? After configuring the shortcuts, press
SUPER + Ito hide the Infomarchy cards and reveal your wallpaper. PressSUPER + Iagain to bring the dashboard back.
You run Claude Code in three terminals, Codex in a fourth, Grok is poking at a repo somewhere, Ollama is warming a model, and your weekly limit is quietly at 86%. The only way to know any of that is to go look — tab through windows, read titles, run nvidia-smi, open a dashboard.
Infomarchy puts all of it on the one surface you always have open and never use: the wallpaper. It's not a widget in the bar and not another window to manage. It's the desk itself, and it's always current.
One card per running agent — Claude Code, Codex, Cursor, Grok, Grok Bot, Gemini, Hermes, opencode, aider, Ollama chats — detected straight from Zombies. A session nobody is attached to (background, or no window and nothing to attach to) that is not busy and has had no prompt for six hours gets a STALE · idle Nh tag on its card. Right-click it: a background Claude session offers STOP SESSION ( Cursor. Both ways of running it get a card. A worker lives as long as its Cursor window, not as long as a conversation — so unlike a terminal agent you close when you are done, a Cursor card can sit on the desk for days. That is why the STALE tag and quiet grouping matter more here than for anything else; liveness is the process, and decay is the last prompt. History comes from Cursor's own transcripts at Which chat a worker is on comes from the newest transcript under its own directory. That has to be read rather than inferred: the generic inference only accepts a prompt within half an hour of launch, which fits a terminal agent prompted right after starting and not a worker that outlives any one conversation. Cursor is also the one provider with a real busy signal instead of a terminal-title guess: a transcript ends with Grok Bot. The xAI desktop app runs every bot in its roster inside one Electron process, so Grouping quiet sessions. A roster that size costs a card per bot, and ten of them alone trip the dense layout (> 8 sessions), shrinking every Claude and Codex card on the desk to pay for bots nobody has touched in weeks. So a provider's quiet sessions group into one card that names a few of them with their idle times — still clickable, right-click still opens that individual bot in the inspector — and the chip expands the rest. On the desk this was written for that took SESSIONS from fifteen cards to six and turned dense mode off, giving the surviving cards their working directory, host, git and pid lines back. The three attention states are deliberately not treated alike: waiting (an agent blocked on your answer) and blocked (a conflict, crash or failure) are requests, a request does not expire, and neither ever groups at any age. done — ready for review, or a bot holding unread replies — is a notification, and one nobody has looked at for a month has stopped being news, so it groups once past the window (an hour by default) and the card says Each card also attributes live CPU, resident RAM, process-tree size, and—when Only the full per-session cards appear in Live AI Sessions; there is no duplicate compact workspace-card strip. Each large card includes its workspace number. In the session inspector, workspace buttons 1–10 can move that exact agent window silently; the current workspace is highlighted and disabled. Window thumbnails are opt-in: right-click a large session card, toggle PREVIEWS OFF/ON in its inspector, then hover a live card. Infomarchy captures only that exact address after a short delay, downsizes it to 160×90, applies a heavy blur, and displays a 320×180 still. The raw capture moves through bounded in-memory streams from Cards also show the repository branch, clean/changed state, ahead/behind counts, and merge conflicts. A Needs You strip calls out agents that appear blocked, waiting for input, or finished for review, plus repositories being shared by multiple live agents. Active Needs You signals get a faint breathing outline (the module chip glows too if the card is removed). Click the signal to focus it, 10M to snooze it for ten minutes, or × to dismiss that signal for the lifetime of its process. Snoozes and dismissals persist between the wallpaper and fullscreen overlay. The card's alert controls send deduplicated Omarchy notifications when an agent is blocked, waiting for an answer, ready for review, or ends — and, when the terminal title says so, when it has crashed (Infomarchy reads titles and Click a Needs You signal → jump straight to that agent's terminal. From the fullscreen overlay, Infomarchy closes itself after focusing the session. Click a card → Infomarchy focuses the terminal window hosting that agent. It walks the process tree up to the Hyprland client, so it works through Right-click a card → inspect it in place. The centered inspector shows its window, shortened session identity, workspace, uptime, pid, and repository state. From there you can focus the existing window or open a fresh terminal in the project directory; paths are passed as process arguments, never evaluated as shell text. |
Above the limit meters sits a 7-day trend: one line per provider, tokens processed per day, three gridlines, hover any day for the exact figures. The TOKENS / ≈ $ VALUE chip switches the same lines to an estimated API value — what those tokens would have cost at published API prices — and each provider row shows today's and lifetime estimates, the share of lifetime tokens that were cache reads, and the session count. Prices come from a pinned, attributed LiteLLM snapshot ( Session (5-hour) and weekly (7-day) rate-limit meters with time-to-reset, today's prompt count and token volume, per subscription. Meters turn yellow past 60% and red past 85%, in your theme's yellow and red. Provider chips filter the card interactively. Toggle PERCENT / FORECAST to project each recognized 5-hour or 7-day meter to reset from its elapsed-window pace; young or malformed windows say Infomarchy reuses the cache that Omarchy's own Ollama up/down, every loaded model with its VRAM, GPU utilisation / memory / temperature, and lifetime totals per provider. Arrow controls select any locally installed model and show its parameter count, quantization, and disk size. LOAD pins the selected model in memory; each loaded row has its own UNLOAD action. Models at least 8 GiB—or larger than currently available accelerator/system memory—require a second CONFIRM click. Model changes go through a bounded stdin-framed helper. It validates the model name against Ollama's live |
One row per host named in INFOMARCHY_FLEET_HOSTS (a comma-separated list of ssh aliases — the same aliases you'd already use typing ssh <alias> yourself; user, identity file and proxy jump stay in ~/.ssh/config, never in this variable). Each host gets a status dot, provider chips for whatever it's running, and a relative "checked Ns ago" time. Invisible until you configure at least one host — the same "no tag until you run it" rule every other provider already follows.
Detection is one bounded, read-only ps call over ssh -o BatchMode=yes per host per refresh (30 s), matched against the identical providerOf() regex table local detection already uses — a remote Hermes, Claude, Codex, or anything else PROVIDERS recognises is identified exactly the way a local process is, just seen over a different channel. An unreachable host reads unreachable, never fabricated. INFOMARCHY_SKIP_FLEET=1 disables it from the collector's environment.
Per-session rows. When a host runs Infomarchy itself (and bun), its row expands into one line per remote session: project, whether it's working, and a NEEDS YOU tag when that agent is idle and waiting on you — the same attention state the local session cards use, derived on the far end by the same code. The card glows like the Needs You inbox does when any remote session is waiting. Clicking a session opens a terminal, sshes to that host and jumps straight into its tmux window and pane. A host that can't answer the richer probe keeps the plain ps row above unchanged, and is re-asked every 10 minutes instead of every refresh, so a fleet of ordinary ssh boxes costs nothing extra. Only session-level facts cross the machine boundary — provider, project basename, attention state, busy/idle, and the tmux address the jump needs. Window titles, prompt text, paths and git state stay on the host that produced them; INFOMARCHY_SKIP_FLEET_SESSIONS=1 turns the whole layer off and leaves the ps rows. See FLEET sessions.
When a host is running Hermes, USAGE & LIMITS gains a Hermes row too — no second API key to manage, since everything comes from files Hermes already keeps on that host. Token counts and the per-model breakdown come from Hermes's own local billing ledger (~/.hermes/state.db, read with sqlite3 -readonly); the dollar figures and a MONTHLY limit bar come from Hermes's cached snapshot of OpenRouter's own key-usage API (~/.hermes/workspace/openrouter_key_usage.json) when present. That split matters: the local ledger is only as old as Hermes's current session-tracking window, not real lifetime spend — verified live, where it undercounted true lifetime cost by roughly 30× — so the ledger's own per-row estimate is a fallback only, used when the key-usage file isn't there. The card's status line says which source produced the number you're looking at. Token counts and the per-model breakdown are model-agnostic — nothing is keyed to Deepseek or any other specific model, so switching Hermes's model shows up correctly on its own. The dollar figure currently assumes that model is still billed through OpenRouter, though: it's an account-level total, not scoped per model, so a model billed through a different provider entirely would need its own fix to be counted (see docs/fleet-remote-hosts.md).
An hour-by-hour heatmap of prompts across every provider, newest day at the bottom, with a red tick at now. The dominant provider colours each cell; intensity is volume. Cells are local wall-clock hours, so on the two DST nights a year one hour is doubled up (fall) or absent (spring). Hover a cell for the exact breakdown ("Tue 18 Aug 16:00 · 8 prompts (Claude 6, Codex 2)"). Click an hour to filter Recent Tasks to that hour; click a provider in the legend to combine a provider filter. The selected cell and provider stay outlined, and clicking either again—or clear—removes that part of the filter. The header carries today/week counts per provider.
Beside ACTIVITY is the identical grid fed from GitHub: commits, PRs, reviews, issues, comments and everything else (releases, forks, stars, branch creates) as other, each cell coloured by its dominant kind, the same red tick at now. Hover a cell for the breakdown plus the repositories involved ("Fri 4 Sep 23:00 · 9 events · commits 7 · PRs 2 · infomarchy, blip"). The header carries today/week counts per kind. There is no list to filter here, so a click pins a cell (its breakdown stays in the status line) and clicking a kind in the legend recolours the grid to that kind alone; clear or the overlay's A key resets all activity filters. In the overlay the module answers to key 4 (ACTIVITY is 3; the modules after it shift by one and 0 reaches the tenth).
Data comes through the already-authenticated GitHub CLI (gh), nothing else: commits from search/commits by author date (one row per commit, default branches only — a push to a feature branch shows once it lands), everything else from your own events feed, private repositories included. GitHub caps a search at 1000 rows and 30 calls a minute, so the week is filled in incrementally — one step a minute until the oldest day is covered (the status line says filling in older days meanwhile), then a five-minute refresh. Rows are cached in a private state file written by the wallpaper collector and read by the overlay, so a restart or a dropped connection shows the cached grid rather than an empty card — marked stale once fetches have been failing for fifteen minutes, with retries backing off to five minutes. Every six hours the week is walked again so a commit merged days after it was authored still lands in its hour. Switching gh accounts starts the store over. Without gh, or before gh auth login, the card says exactly that. INFOMARCHY_SKIP_GITHUB=1 in the collector's environment disables the fetch entirely. The enabled heatmap cards share the row and stack at smaller widths; hide any card using the module strip.
GITEA uses the same seven-day heatmap, theme colors, hover details, pinned cells, and kind filters as GITHUB. It appears beside GITHUB and can be hidden with the GITEA module chip. Existing numbered module shortcuts keep their assignments; A clears all activity filters.
Configure a server with tea login add. Infomarchy reads ${XDG_CONFIG_HOME:-~/.config}/tea/config.yml, using the default login or the sole login. With multiple accounts, set INFOMARCHY_GITEA_LOGIN in the shell's environment to the exact tea login name. No dashboard-specific copy of the token is stored. HTTP and HTTPS servers, custom ports, and subdirectory installations are supported; HTTPS is the default for an address without a scheme. Requests never follow redirects with credentials.
Alternatively, supply both GITEA_HOST (the server base URL, without /api/v1) and GITEA_TOKEN. A host alone selects its matching tea login; a token alone is rejected so it cannot be sent to the wrong server. INFOMARCHY_SKIP_GITEA=1 disables the feed. Tokens must allow reading the authenticated user and their activity feed, including repository access for private activity.
The feed counts your own pushes, PR events, reviews, issue events, comments, and other supported activity. A push is one event, even if it contains several commits. This differs from GitHub's commit-search count. Gitea's activity retention and permissions determine the available history. Servers must provide /api/v1/users/{username}/activities/feeds.
The wallpaper collector refreshes every five minutes and fills older pages incrementally once a minute; the overlay reads the same private cache. Each attempt reads at most two pages, requests time out after four seconds, and the cache holds up to 6,000 recent events. Only timestamps, event IDs, kinds, and repository names are retained; commit messages, issue bodies, and credentials are discarded. Changing the configured account starts a new cache. Failed fetches back off and show cached data as stale after fifteen minutes. The whole window is reconciled every six hours.
The newest prompts across all providers — time ago, provider tag, project, and the prompt itself — so the question "what was I doing an hour ago?" has an answer on the wall. The list keeps up to 80 rows in a scrollable history, with a search box that matches prompt text, project, or provider (filtered searches can show up to 200 matches). Prompts whose exact agent session is still running stay bright and clickable; click one to jump to its terminal. Supported closed sessions are dimmed but remain interactive: hover for RESUME, then click to reopen that exact Claude, Codex, Grok, or OpenCode session in a terminal at its project directory.
Right-click a prompt for its action drawer: copy, pin/unpin, open the project, and review up to five recent prompts from the same session. Pins persist and sort above ordinary recency without changing the underlying history. Wheel and touchpad deltas are handled directly by the row beneath the pointer, and the wider scrollbar track can be clicked or dragged.
Three compact cards sit beneath the live sessions:
- What Changed fingerprints each active repository and highlights it until you inspect the newest state. It summarizes staged, untracked, test, addition/deletion, and commit data; expand a row to copy changed paths or open the project.
- Next Actions turns terminal state into a short reason and an exact control: Answer, Resolve, Review, Resume, or Open Project. Permission/approval prompts, conflicts, failures, questions, and completed work no longer share one vague warning.
- Project Health combines live agent count, branch, clean/dirty state, ahead/behind and conflicts, the last commit, and the newest GitHub Actions result when authenticated
ghis available. Click a repository to filter sessions, prompts, changes, and action signals across the whole dashboard; click the project chip at the top to clear it.
All three cards are independently removable. Drag their headers left or right to reorder them; they snap into place and the order persists. The layout compacts automatically when one or two cards are hidden.
| Meter | Colour | Detail |
|---|---|---|
| CPU | theme blue | % busy, 1-min load, hottest thermal zone |
| RAM | theme green | used / total, % |
| Disk | theme yellow | used / total per mount (btrfs subvolume twins collapsed) |
| Wi-Fi | theme green | SSID, signal in dBm (bar = link quality), IPv4 |
| WAN | theme cyan | cached external IPv4/IPv6 |
| ↓ ↑ throughput | green | real-time bits/s (Kb/Mb/Gb) on the default route interface, wired or wireless |
| ⇄ latency | green / yellow / red | live ping to Cloudflare 1.1.1.1 — red on timeout |
| Battery | — | % and charging state, hidden on desktops |
Any meter goes red when it's genuinely in trouble (RAM > 90%, disk > 90%, CPU > 85%, ping dead).
The three right-column cards—Usage, Local AI, and Machine—also have draggable headers. Drag one far enough up or down to swap it with its neighbor; the card snaps into place and the order persists across overlay and shell restarts. Every section can still be removed and restored from the module strip.
The wallpaper is interactive wherever no window covers it (double-click or right-click the empty desk opens Omarchy's wallpaper switcher, as stock does). After configuring the shortcuts, press SUPER + I to hide the wallpaper dashboard and see the clean desktop; press it again to restore the cards. When you're buried in terminals, SUPER + D shows the desktop on top of everything — the wallpaper exactly as the desk paints it, with the dashboard when SUPER+I has it visible and the plain photo when it doesn't; Esc or a click on the backdrop dismisses it.
The module strip doubles as a keyboard command strip in the overlay: 1–9 toggle modules, J/K (or arrows) select a live session, Enter focuses it, A clears activity filters, and Esc closes. The selected session gets a bright outline.
Enable APPS in the module strip to register existing development commands and control their systemd user services: stable ports, HTTP readiness, checkout and branch, Open, Start/Stop, Restart, logs and configuration editing while an app is stopped. App package scripts stay unchanged. The helper uses the existing Bun runtime; no extra daemon or agent configuration is required. See Development apps for setup and CLI usage.
Web Mode makes the Infomarchy desk available in a browser on your phone, tablet, or another computer. It runs with the desktop plugin, so the computer and Omarchy shell must stay running. Open SETTINGS from the desk's module strip to manage access. The strip's WEB chip opens SETTINGS while WEB is off, and turns WEB off while it is on. omarchy-shell infomarchy toggleWeb turns WEB on only after the check SETTINGS runs for the chosen mode passes, and shows the reason in SETTINGS when it does not.
The page follows the live Omarchy theme and wallpaper. Wide screens use two columns. Narrow screens stack cards and offer UP/DOWN ordering. Module chips show or hide sections, and zoom is remembered for the current browser tab. Web section visibility and narrow-screen order are independent of the desktop layout but shared by web viewers. A successful refresh updates the page and theme every five seconds while preserving scroll position.
Web Mode displays sessions, recent tasks, activity, usage, local AI status, and machine telemetry. USAGE includes per-model meters and TOKENS · 7 days, with unavailable token counts omitted. MEDIA CONTROLS and the $ VALUE chart are absent. Browser controls change presentation. Desktop actions such as focusing sessions and loading models remain on the desktop.
| Mode | Reachability | Transport | Default port |
|---|---|---|---|
| PRIVATE HTTPS | Connected Tailscale devices permitted by your tailnet policy | HTTPS through Tailscale Serve to a loopback backend | 8788 |
| MANUAL HTTPS | A configured private IPv4 interface or loopback, with the source allow list | Direct HTTPS using your existing certificate and private key | 8789 |
The modes are mutually exclusive. Selecting a different mode turns WEB off. Enable it again after reviewing the new setup. Private HTTPS supports viewing away from home through Tailscale. Public internet exposure and Funnel are outside the supported setup.
Pre-release builds of Web Mode also offered LAN HTTP. It was removed because it sent the dashboard and the viewer token over the network unencrypted. A saved LAN setting loads with WEB off and no mode selected, and WEB stays off until you choose PRIVATE HTTPS or MANUAL HTTPS. Nothing switches to another mode on its own. Viewer links from those builds are replaced once, the first time the desk reads them, because they may have crossed the network unencrypted. Labels and the allow list are kept. Share a new link with each viewer.
Each viewer link contains a bearer token: someone with the link and network access can use it. A viewer link is revealed only by COPY URL, SHOW QR, or bun web-server.ts url <id> --reveal run in a terminal, and only once the listener is ready. Without --reveal, url prints the token id and the last four characters of the token. status, tokens and startup print token ids and four-character suffixes only. The QR helper hands the link to the desk encoded as a QR matrix, so treat its output like the link. Keep links and QR images out of public screenshots, logs, commits, and chat. Tokens are individually revocable. Turning WEB off stops access but keeps them for the next start.
The browser shows PRIVACY ON/OFF · controlled on desktop. Use the desktop privacy chip or SUPER+SHIFT+I to change it: one press enables privacy, and three presses within two seconds disable it. Privacy is off until the desk saves it on. A missing, unreadable, or malformed setting reads as off in the browser exactly as it does on the desk, so the two never disagree.
With privacy on, the server omits WAN/LAN addresses, Wi-Fi SSID, and user/host identity, shortens home mounts, and sends recent prompts only through their first four words plus the mask. Full values are absent from the HTML and JSON, including hidden elements. Session topics are dropped, because a topic is keywords lifted from your prompts, and the desk drops them the same way. Project names and prompts of four words or fewer stay visible. GitHub login remains excluded at either setting. The JSON view also excludes desktop action arguments, session working directories, previews, and extra provider fields.
Turning desktop privacy off lets connected viewers receive the permitted full values. Changes apply to subsequent responses, normally at the next successful five-second refresh. Previously received or saved data cannot be retracted, and a disconnected page can retain its old content. Desktop source data and full-text COPY EXCERPT are preserved.
Install and enable Infomarchy first using Install. Open the desk with SUPER+D, then SETTINGS. Choose the desktop privacy setting you want before sharing a viewer link.
Web helpers require Bun, flock (util-linux) and timeout (coreutils). SHOW QR uses qrencode. COPY URL uses wl-copy --sensitive from wl-clipboard, which asks clipboard managers not to keep the link in history. On Omarchy/Arch, install the optional viewer tools with sudo pacman -S --needed qrencode wl-clipboard. Tailscale process cleanup requires Python 3. The optional CA recipe requires OpenSSL, and its download helper uses Python 3.
-
Install and connect Tailscale on the desktop. On Omarchy versions that ship it, the built-in installer can be run with:
omarchy-install-service-tailscale
Follow its sign-in prompts. The installed Omarchy script starts the service, grants your local user Tailscale operator access, and adds a Tailscale admin-console web app and bar integration. If that installer is unavailable, use the official Tailscale installation guide. Infomarchy detects Tailscale but does not install it or sign in for you.
-
Enable the tailnet prerequisites. In the Tailscale admin console's DNS page, enable MagicDNS, then enable HTTPS Certificates. Review the certificate-name disclosure shown there: certificate hostnames appear in the public Certificate Transparency ledger. See Tailscale's HTTPS setup. Infomarchy uses Serve to manage HTTPS, so you do not need to create certificate files yourself.
-
Connect the viewing device. Install the Tailscale app on your phone or other device, sign in to the intended tailnet, and connect it. The Tailscale web app's device-enrollment QR flow can help with phone setup. Complete any device approval and ensure tailnet policy permits this device to reach the desktop on TCP 8788.
-
Configure Infomarchy. Select PRIVATE HTTPS. CHECK PREREQUISITES inspects the installed CLI, connection, DNS name, and existing Serve configuration. Follow any message it displays, then click CONFIGURE & ENABLE. Wait for STARTING… to become WEB ON. The first real setup attempt may discover a missing certificate or permission prerequisite that the inspection could not confirm.
-
Recover directly if setup fails. Read the message beside WEB FAILED, fix the reported prerequisite, and click RETRY SETUP. For example, if HTTPS certificates were disabled, enable them in the admin console and retry. CHECK PREREQUISITES only checks. It does not restart failed setup. There is no need to flip WEB off and on.
-
Open the page using the selected viewer's COPY URL or SHOW QR, as described below. Keep Tailscale connected on both devices. Use the copied HTTPS hostname and port, including the viewer credential. A bare hostname or IP address is not the dashboard link.
Infomarchy owns a foreground Serve mapping on 8788, forwarding to its backend on 127.0.0.1:8787. The backend listens on loopback only, so there is no firewall rule to open for it and no background Serve mapping to create. If 8788 already belongs to another Serve or Funnel mapping, setup refuses to overwrite it. Resolve that specific conflict yourself. Unrelated services are preserved. Turning WEB off, stopping the listener, or removing the plugin removes its owned mapping while leaving Tailscale and unrelated services running.
If setup reports local permissions, make sure the user running Omarchy is allowed to manage Serve. The Omarchy installer configures operator access. If it reports a missing/stopped/signed-out client or an unsupported CLI, correct that condition and retry. For more detail, SETUP GUIDE opens Tailscale Serve documentation. Failed HTTPS setup never falls back to plain HTTP or public access.
This expert option uses certificate files you maintain. Starting without a CA? Follow Private LAN HTTPS without DNS or Tailscale below. Infomarchy binds the HTTPS listener and checks the certificate. You manage issuance, installation, DNS, client trust and renewal. The plugin does not create a CA, obtain certificates, change trust stores, or change DNS/firewall rules.
-
Choose the hostname or private IPv4 address and network. To avoid DNS, enter the desktop’s private IPv4 address as both HOSTNAME / IPv4 and BIND IPv4, and use a certificate with that exact IP SAN. Otherwise, arrange for that hostname to resolve to your desktop's private LAN/VPN IPv4 address on each viewing device. Use that specific interface address for BIND IPv4. The safe default is
127.0.0.1, which permits local viewing only. Wildcard and public bind addresses are refused.infomarchy.localhostwith loopback is useful for local testing without LAN DNS changes. Ports must be between 1024 and 65535, and the default is 8789. -
Prepare the certificate files. Use a PEM certificate chain with the server/leaf certificate first, followed by its intermediates, and an unencrypted PEM private key that matches the leaf. A hostname must be covered by DNS subject alternative names, and a literal address must match an IP subject alternative name (a DNS SAN containing IP text does not count). The files and their parent directories must be readable by the desktop user and protected against other users writing them. Use actual absolute paths without symlinks. The key must be owned by the desktop user or root and have mode 0600 or 0400. Infomarchy does not elevate privileges to read it. An existing certificate's signed hostname coverage cannot be changed by entering another hostname here.
-
Obtain its SHA-256 fingerprint. For example:
openssl x509 -in /absolute/path/to/server-chain.pem -noout -fingerprint -sha256
Enter the hex fingerprint after the
=sign, with or without colons. This identifies the exact leaf certificate, not its public key alone. Confirm it is the certificate you intend to serve. -
Configure the desk. Select MANUAL HTTPS, fill in hostname, bind address, port, certificate-chain path, private-key path and fingerprint, then SAVE CERTIFICATE SETTINGS. Saving changes turns Manual HTTPS off. After saving finishes, CHECK CERTIFICATE verifies file safety, the fingerprint, validity dates, SAN hostname/IP identity, matching key and supplied chain signatures. It does not change files, install trust, or start a listener. Click CONFIGURE & ENABLE, wait for WEB ON, then use COPY URL or SHOW QR. Startup checks the files again. A failure offers RETRY SETUP and never falls back to HTTP.
-
Set up viewing clients. A certificate from a CA already trusted by that browser requires no additional CA installation. For a private CA or self-signed certificate, configure trust deliberately on each client. The fingerprint entered on the desk does not install browser trust. Keep the existing source allow list and any firewall rules limited to your trusted networks. VPN ranges outside loopback/RFC1918 need an explicit allowed CIDR. Tokens and desktop-owned privacy work exactly as in the other modes.
If the desktop’s IP changes, update the address and use a certificate covering the new IP, including its new fingerprint. Reserve the LAN address in DHCP for repeat use. .localhost names always refer to the viewing device itself, so they cannot be used to reach the desktop from a phone.
- Handle renewal. Install the renewed certificate/key and update the leaf fingerprint, then save and re-enable HTTPS. Certificate files are loaded at startup rather than automatically replaced in a running listener. Expiry stops disclosure and the listener shuts down within 30 seconds. Client trust and certificate-chain validation are still the client's responsibility.
For background, see Bun's TLS support and Mozilla's explanation of browser certificate trust.
You can create your own CA and a certificate for the desktop's private IPv4 address using OpenSSL, then supply those files to Manual HTTPS. This is an operator-run setup. Infomarchy does not issue or renew certificates. The desktop and phone must be on a reachable trusted LAN. Reserve the desktop's address in DHCP if possible. These commands require Bash and OpenSSL, and the optional download helper requires Python 3.
Create the files. Replace 192.168.1.50 with the desktop's actual private IPv4 address (ip -4 addr shows interface addresses). Run this block once in a terminal. It creates a new directory and refuses to overwrite an existing setup. The CA lasts one year and the server certificate lasts 90 days. Both private keys remain protected by filesystem permissions. Keep the CA key private and securely backed up, since it can sign certificates trusted by your clients.
(
set -eu
umask 077
infomarchy_ip=192.168.1.50
infomarchy_pki="${XDG_STATE_HOME:-$HOME/.local/state}/infomarchy/pki/private-lan"
mkdir -p "$(dirname "$infomarchy_pki")"
mkdir -m 700 "$infomarchy_pki"
cd "$infomarchy_pki"
openssl req -x509 -newkey ec -pkeyopt ec_paramgen_curve:P-256 -nodes \
-keyout ca.key -out ca.crt -days 365 -subj '/CN=Infomarchy private LAN CA' \
-addext 'basicConstraints=critical,CA:TRUE,pathlen:0' \
-addext 'keyUsage=critical,keyCertSign,cRLSign' \
-addext "nameConstraints=critical,permitted;IP:$infomarchy_ip/255.255.255.255,permitted;DNS:infomarchy.invalid"
openssl req -new -newkey ec -pkeyopt ec_paramgen_curve:P-256 -nodes \
-keyout server.key -out server.csr -subj '/CN=Infomarchy LAN dashboard'
cat > server.ext <<EOF
basicConstraints=critical,CA:FALSE
keyUsage=critical,digitalSignature
extendedKeyUsage=serverAuth
subjectAltName=IP:$infomarchy_ip
EOF
openssl x509 -req -in server.csr -CA ca.crt -CAkey ca.key -CAcreateserial \
-out server.pem -days 90 -extfile server.ext
cat server.pem ca.crt > server-chain.pem
openssl verify -CAfile ca.crt -verify_ip "$infomarchy_ip" server.pem
openssl x509 -in server.pem -noout -fingerprint -sha256
pwd
)The CA's IP constraint permits the chosen address, and its DNS constraint permits only infomarchy.invalid and subdomains. The leaf contains only the chosen IP SAN. See OpenSSL's extension syntax. Keep this CA dedicated to this setup. Do not share ca.key or server.key, or serve the certificate directory over HTTP.
Configure Manual HTTPS. Use your desktop IP for both HOSTNAME / IPv4 and BIND IPv4, port 8789, and the absolute paths to server-chain.pem and server.key in the directory printed above. Enter the server certificate fingerprint printed by OpenSSL. Save, check the certificate, then enable WEB.
Allow incoming connections. With UFW, the following example permits only one phone to reach the listener. Substitute your Wi-Fi interface, phone IP and desktop IP:
sudo ufw allow in on wlo1 proto tcp from 192.168.1.60 to 192.168.1.50 port 8789 comment infomarchy-manualUse equivalent scoped rules for other firewalls. A successful request from the desktop itself does not test incoming firewall access. Do not configure router port forwarding. Guest Wi-Fi/client isolation may still prevent access.
Install the public CA on the phone. Transfer only ca.crt by USB or another trusted transfer method. On Android, open Settings and find Encryption & credentials → Install a certificate → CA certificate, then select the file. Menu names vary by device. See Google's certificate instructions. Install it as a CA certificate, not a Wi-Fi or client certificate. Other viewing devices need their own browser/OS trust setup. The dashboard fingerprint does not install client trust.
For a temporary LAN download instead of USB, copy only the public CA into a new, separate directory and serve that directory in a foreground terminal:
infomarchy_public=$(mktemp -d)
cp "${XDG_STATE_HOME:-$HOME/.local/state}/infomarchy/pki/private-lan/ca.crt" "$infomarchy_public/infomarchy-ca.crt"
python3 -m http.server 8790 --bind 192.168.1.50 --directory "$infomarchy_public"Substitute the desktop IP. Temporarily allow TCP 8790 with the same phone/interface/address restriction as 8789, then download http://192.168.1.50:8790/infomarchy-ca.crt on the phone. Before trusting a CA transferred over HTTP, compare its SHA-256 fingerprint in the phone's certificate details with openssl x509 -in /absolute/path/to/ca.crt -noout -fingerprint -sha256 on the desktop. Use USB if the phone cannot show it. This CA fingerprint is separate from the server fingerprint entered in Infomarchy.
After transferring, press Ctrl+C, remove the temporary directory with rm -r -- "$infomarchy_public", and remove the download firewall rule:
sudo ufw delete allow in on wlo1 proto tcp from 192.168.1.60 to 192.168.1.50 port 8790Open the dashboard. Once the CA is installed and WEB is on, use SHOW QR on the desktop and open the result in Chrome on Android. The CA download address is not the dashboard address. A long timeout usually calls for checking the address, listener, firewall and Wi-Fi isolation, and a certificate error calls for checking CA trust, IP SAN, dates and the device clock. Do not bypass certificate errors.
Maintain or retire the setup. Renew the leaf before 90 days, signing a new CSR with the protected CA and the same IP SAN, then update the server fingerprint and restart Manual HTTPS. Do not rerun the initial block over existing files. An IP change also requires a new CA with the matching constraint in this recipe, a new leaf and client CA installation. Replace the CA before its expiry. When retiring this setup or switching back to Tailscale, stop the download helper, remove its firewall rule and the matching 8789 rule, and remove this CA from each client's user trust store. Switching modes turns WEB off. Enable it again in the selected mode. When returning to Tailscale, reconnect both devices to your tailnet and use that mode’s COPY URL or SHOW QR. The Manual HTTPS IP address is a different endpoint. Viewer tokens survive the switch.
Once settings shows WEB ON, select a token in TOKENS, then use COPY URL to open it in a browser or SHOW QR to scan it on your phone. The Infomarchy QR opens the authenticated dashboard. It does not install Tailscale or authorize a device. This is separate from Tailscale's enrollment QR. Hide the QR when finished. Closing settings or changing tokens clears it too.
For independent revocation, enter a descriptive label and click ADD for each viewer/device, then select that token before copying or showing its QR. Labels help you remember the intended viewer, but the link itself is the credential and is not bound to that device. REVOKE invalidates that token for subsequent requests. Add a replacement before revoking the last token. Existing pages may retain already displayed data, but their next authenticated request will fail.
You can also deliberately copy the default viewer's address from the desktop without printing it:
omarchy-shell infomarchy copyWebUrlTo stop sharing, turn WEB ON off. Tokens survive stopping, restarting the shell, and switching modes. After changing modes, copy a fresh address because the hostname and port change even though the token remains valid.
Settings persist in $XDG_STATE_HOME/infomarchy/ (normally ~/.local/state/infomarchy/): dashboard.json holds desktop privacy, web layout/access preferences and Manual HTTPS file references/fingerprint, web.json holds private viewer credentials with mode 0600, and web-status.json holds noncredential runtime status. Preference changes and viewer-token updates are serialized so overlapping edits preserve desktop privacy and token revocation. Empty dashboard.lock and web-config.lock files also remain in the state directory. A failed desktop settings save displays an error and reloads the saved settings. Retry the change once the problem is resolved. Do not publish credential files or hand-edit them to recover a failed setup. Use the reported guidance and RETRY SETUP.
Turn WEB off before removing the plugin to stop dashboard access immediately. Plugin shutdown also stops the listener and its owned Tailscale Serve mapping. Viewer credentials/settings, manual certificate files, client CA trust, manually configured firewall rules, Tailscale itself and unrelated mappings remain. Remove your scoped rules and client CA trust separately when retiring Manual HTTPS.
sudo pacman -S --needed bun # the collector runs on bun; Omarchy does not ship it
omarchy plugin add https://github.com/nixfred/infomarchy.git --enable --yes
omarchy restart shell # first time only: services load at shell startIf bun is missing the desk says so in red at the top and in the sessions card, and fills in on the next refresh after you install it — no restart needed.
The plugin declares itself as a clone of omarchy.background, so Omarchy hands it the wallpaper role. Your chosen wallpaper is still there — dimmed to 32% behind the glass — and omarchy theme bg set … keeps working.
Installing or enabling the plugin does not create Hyprland keybindings. The dashboard's SUPER+I and SUPER+D hints assume you have added the bindings below.
Check your existing shortcuts with omarchy menu keybindings --print, then add the fullscreen overlay and wallpaper-dashboard toggle to ~/.config/hypr/bindings.lua. Pick free chords; if you intentionally replace an existing binding, add hl.unbind("SUPER + I") or hl.unbind("SUPER + D") before its replacement.
o.bind("SUPER + D", "Infomarchy: AI info desk", "omarchy-shell shell toggle nixfred.infomarchy '{}'")
-- Hide the cards to see the plain desktop; press again to restore them.
o.bind("SUPER + I", "Infomarchy: toggle wallpaper dashboard", "omarchy-shell infomarchy toggleDashboard")
-- Optional stream privacy: one press on, three within two seconds off.
o.bind("SUPER + SHIFT + I", "Infomarchy: stream privacy", "omarchy-shell infomarchy togglePrivacy")Reload and check for configuration errors:
hyprctl reload
hyprctl configerrorsPress SUPER+I to hide the dashboard, then press it again to restore it. If nothing happens, try the same action directly:
omarchy-shell infomarchy toggleDashboardIf this hides or restores the cards, the plugin is working; check that your binding was added to the loaded Hyprland config and that hyprctl configerrors is empty. This command toggles visibility too, so run it again if you want to restore the previous state.
If the command works from a terminal but the key still does nothing, the two are looking for the shell in different places. omarchy-shell finds the running shell by $OMARCHY_PATH, and a keybinding inherits Hyprland's copy of that variable, not your terminal's. After omarchy dev link (or anything else that changes OMARCHY_PATH), Hyprland keeps the old value until you log out or reboot, so the key asks for a shell that is not there and fails silently. Compare the two:
echo "$OMARCHY_PATH"
tr '\0' '\n' < /proc/$(pgrep -x Hyprland)/environ | grep '^OMARCHY_PATH='If they differ, log out and back in (or reboot).
Manual install
git clone https://github.com/nixfred/infomarchy.git ~/.config/omarchy/plugins/nixfred.infomarchy
omarchy-shell shell rescanPlugins
omarchy plugin enable nixfred.infomarchy
omarchy restart shellThen configure the keyboard shortcuts above.
Remove Infomarchy and return to the stock wallpaper service with:
omarchy plugin remove nixfred.infomarchy --yes
omarchy restart shellOmarchy Quattro with third-party shell plugin support, bun (not part of the Omarchy base install — sudo pacman -S bun), iw, iproute2, and ping. Optional: nvidia-smi (GPU row hides without it), authenticated GitHub CLI gh (for the latest CI result and the GITHUB heatmap), a tea login or Gitea environment credentials (for the GITEA heatmap), the omarchy.agents bar widget (for the usage card), Ollama (for the local-AI card), Herdr/Boomux/tmux when those hosts are actually used, and ssh/sqlite3 when INFOMARCHY_FLEET_HOSTS names a remote host. Infomarchy does not start or configure a multiplexer. Hyprland 0.56+ (Lua dispatch) and older (focuswindow) are both handled.
There are no colours in this plugin. Infomarchy reads the active theme's colors.toml — green, yellow, red, blue, cyan, magenta, foreground, background — and falls back to Omarchy's Color singleton for anything a theme leaves out. Fonts and spacing come from Omarchy's Style, so omarchy display text size scales the desk too. Switch themes and the desk re-skins in place.
The screenshots above are the Last Call theme. A theme gallery is on the roadmap — PRs with your theme's screenshot are very welcome.
┌──────────────────────────────┐ every 4 s ┌────────────────────────────────────┐
│ collector.ts (bun, ~0.2 s) │ ───── JSON ────────▶ │ InfoModel.qml │
│ /proc /sys hyprctl │ │ runs collector · parses snapshot │
│ ~/.claude/history.jsonl │ │ reads theme colors.toml │
│ ~/.codex/*.jsonl │ └──────────────┬─────────────────────┘
│ ~/.grok/active_sessions.json│ │ desk: InfoModel
│ ~/.local/share/opencode/*.db│ │
│ Ollama /api/ps /api/tags │ ┌─────────────────────┴───────────────────┐
│ omarchy agents usage cache │ │ InfoView.qml (cards, heatmap, meters) │
│ git · gh CI · gh activity │ └───────┬───────────────────────┬─────────┘
│ iw · ip · ping · nvidia-smi │ │ │
└──────────────────────────────┘ │ │
Infomarchy.qml ◀──┘ └──▶ Overlay.qml
service · WlrLayer.Background overlay · SUPER+D
(clonedFrom omarchy.background) WlrLayer.Overlay
collector.tsbuilds one snapshot. It readsargvfor every pid (cheap), then lazily opens only agent processes and their ancestors, so a 1 000-process box costs ~0.2 s warm. Local files are opened once with no-follow/nonblocking semantics, must be regular files, and are read under byte/time limits. Rate baselines use private, atomic state files under$XDG_STATE_HOME/infomarchy/prev-<instance>.json. It never parses the multi-hundred-MB Claude/Codex session transcripts — only the small history/index files and OpenCode's local SQLite history.gitea-activity.tsreads the selected tea login and keeps a bounded private cache of the authenticated user’s Gitea activity for the same heatmap.github-activity.tskeeps the 7-day GitHub row store: incrementalsearch/commitsand events fetches throughgh, keyed by sha and event id, pruned to the window, turned into the same 7×24 cells as the prompt heatmap.fleet-remote.tsprobesINFOMARCHY_FLEET_HOSTSoverssh -o BatchMode=yes, one bounded read-onlypscall per host, matched againstproviderOf()(passed in by reference, not duplicated) for the FLEET card.fleet-sessions.tsasks those same hosts for their own sessions when they run Infomarchy — one boundedcollector.ts --fleet-sessionscall over the existing ssh probe shape — and merges the result onto thepsrows, leaving a host that can't answer exactly as it was. Every field off the wire is re-validated and clamped on arrival; seedocs/fleet-sessions.md.hermes-usage.tsreads Hermes's local billing ledger (~/.hermes/state.db) over the same ssh hosts with one boundedsqlite3 -readonly -jsoncall, for the USAGE & LIMITS Hermes row.resume-session.tsmaps each supported provider to its installed CLI resume syntax and launches it throughxdg-terminal-exec. Provider, ID, and project are separate process arguments; prompt text is never executed.ollama-control.tsaccepts one bounded JSON frame over stdin, validates the requested model against Ollama's inventory, and performs only explicit load/unload operations.notification-events.tsderives bounded, stable attention and lifecycle events. The background service sends them through Omarchy's notification interface after persistent deduplication; the overlay never sends a duplicate copy.InfoModel.qmlowns the timer, the parse, the theme colours, and helpers (focusWindow, formatting).InfoView.qmlis pure presentation, hosted twice: on the background layer byInfomarchy.qml, and on the overlay layer byOverlay.qml. The background host keeps thebackgroundIPC target so Omarchy's wallpaper tooling is unaffected.
No usernames, hostnames or absolute paths are hardcoded anywhere. The collector honours HOME, XDG_STATE_HOME, XDG_DATA_HOME, CLAUDE_CONFIG_DIR, CODEX_HOME, OLLAMA_HOST and INFOMARCHY_FLEET_HOSTS; every source is optional and degrades to "not present" rather than failing. If you don't use Grok or OpenCode, its tag just never appears.
omarchy-shell infomarchy refresh # wallpaper collector now
omarchy-shell shell call nixfred.infomarchy refresh # overlay collector (only while summoned)
omarchy-shell infomarchy hardRefresh # wallpaper collector now, bypassing caches
omarchy-shell shell call nixfred.infomarchy hardRefresh # the same for the overlay
omarchy-shell infomarchy setWallpaperOpacity 0.5 # 0 = solid theme bg
omarchy-shell infomarchy toggleDashboard # hide/show cards; keep wallpaper
omarchy-shell infomarchy setDashboardVisible true # explicit on/off control
omarchy-shell infomarchy setDeskWorkspace 5 # cards only on workspace 5; wallpaper stays everywhere
omarchy-shell infomarchy setDeskWorkspace 0 # cards on every workspace again (default)
omarchy-shell infomarchy toggleSection machine # remove/restore one dashboard card
omarchy-shell infomarchy setSection recent true # explicit section visibility
omarchy-shell infomarchy toggleNotifications # all Infomarchy alerts on/off
omarchy-shell infomarchy geometry # live layout widths as JSON (view, columns, LOCAL AI card/body/rows)
omarchy-shell infomarchy toggleQuietHours # fixed quiet window, 22:00–08:00
omarchy-shell infomarchy setDemo true # sanitized screenshot data; transient
omarchy-shell infomarchy setDemo false # return to live local data| Knob | Where | Default |
|---|---|---|
| poll interval | refreshMs in Infomarchy.qml / Overlay.qml |
4000 / 3000 ms |
| wallpaper dim | wallpaperOpacity in Infomarchy.qml |
0.32 |
| wallpaper dashboard | SUPER+I or wallpaper IPC above; state survives shell/plugin restarts |
visible |
| desk workspace | setDeskWorkspace above; 0 is every workspace |
0 (every workspace) |
| session notifications | Next Actions card or wallpaper IPC above | on |
| notification quiet hours | Next Actions card or wallpaper IPC above | off (22:00–08:00 when enabled) |
| space left for the bar | live shell.bar edge and barSize in Infomarchy.qml |
measured bar thickness on that edge; 40 px × font scale at the top when no bar is injected |
| provider colours | providerColor() in InfoModel.qml |
theme ANSI roles |
| add a provider | one regex in PROVIDERS in collector.ts |
— |
| fleet hosts | INFOMARCHY_FLEET_HOSTS env var, comma-separated ssh aliases |
unset (disabled) |
| fleet/Hermes-usage refresh interval | FLEET_REFRESH_MS / HERMES_USAGE_REFRESH_MS in fleet-remote.ts / hermes-usage.ts |
30 000 / 60 000 ms |
| fleet per-session rows | automatic when a host runs Infomarchy; INFOMARCHY_SKIP_FLEET_SESSIONS=1 disables |
on |
| remote collector path | INFOMARCHY_FLEET_REMOTE_PATH env var |
the standard plugin install path |
| Grok billing / Claude token refresh | INFOMARCHY_ALLOW_GROK_BILLING=1 / INFOMARCHY_ALLOW_CLAUDE_REFRESH=1 env vars, and the USAGE card shown |
off |
Prompt and session data stays on the machine, with the one documented exception of automatic topic refinement described below. Prompt text is stored as a 140-character redacted excerpt; the drawer's COPY EXCERPT and the search box operate on that excerpt, not the full prompt. Network checks are limited to the existing ping to 1.1.1.1, the Ollama API, a Cloudflare trace request for the public IP at most once every 15 minutes per dashboard surface plus one on each HARD REFRESH, and—only when authenticated gh is installed—the newest GitHub Actions run for each active repository, cached for ten minutes. Two more outbound paths are off by default: only with INFOMARCHY_ALLOW_GROK_BILLING=1 or INFOMARCHY_ALLOW_CLAUDE_REFRESH=1 set, and only while the USAGE card is shown, does the collector call xAI's Grok billing endpoint or run the Claude CLI refresh and Omarchy's Claude limits check described under Usage collection and refresh. Automatic topic refinement sends recent prompt text to Ollama only when OLLAMA_HOST is loopback; pointing it at another machine disables refinement unless you set INFOMARCHY_ALLOW_REMOTE_OLLAMA=1 in the shell's environment, because that is prompt text leaving the machine. That test reads the address, not the destination: an SSH port forward to a remote Ollama answers on 127.0.0.1, passes the check, and refinement then posts prompt text off the machine. A forward cannot be told from a local socket by its address, so the remedy is a switch rather than a smarter test — set INFOMARCHY_SKIP_REFINEMENT=1 to disable automatic refinement outright, checked before both the loopback test and the opt-in. That check reads the address and not the destination, so an SSH port forward to a remote Ollama answers on loopback and passes it. Set INFOMARCHY_SKIP_REFINEMENT=1 to refuse automatic refinement outright — it is checked before both the loopback test and the opt-in. It must be in the environment of the running shell, not merely exported in a terminal: the wallpaper and overlay collectors inherit their environment at launch, so restart the shell to apply it, and it does not cancel a request already in flight. It governs automatic refinement only; inventory checks and explicit LOAD/UNLOAD still reach Ollama, the latter with an empty prompt to set model residency. Explicit LOAD/UNLOAD clicks still target whatever host you configured. Ollama state changes happen only after an explicit card action and can only load or unload a model already present in the corresponding local inventory. Notifications are sent to the local Omarchy notification service; no session data is relayed to a remote notification provider. Multiplexer reporting reads only documented Herdr/Boomux/tmux identity variables; tmux inventory commands run only while tmux is already present, and Infomarchy never invokes Herdr or Boomux control APIs. Recent task text is credential-redacted before it reaches QML (token prefixes, KEY=value style assignments, authenticated URLs, PEM blocks, JWTs and common cloud key shapes — best effort, not a guarantee). Attention states come from terminal-title heuristics and are only evaluated while an agent is idle; a title that merely mentions "permission" or "failed" while it is still working does not raise a signal. Hover previews (off by default) capture the screen region the window occupies, so an occluded window previews whatever is drawn on top of it. Collector JSON is depth/node/byte bounded and streamed to QML in capped frames. Desktop stream privacy masks host/network details, GitHub and Gitea logins, home paths, window titles (account, host and home path), window previews, and recent-task text after its first four words. Project names and session topics stay visible; COPY EXCERPT still copies the full stored excerpt. This is a display mask, not a change to the local collector snapshot. The explicit setDemo true screenshot mode replaces the whole snapshot with documentation-only sample data and resets off whenever the shell restarts.
Prompt and session data stays on the machine. Prompt text is stored as a 140-character redacted excerpt; the drawer's COPY EXCERPT and the search box operate on that excerpt, not the full prompt. Activity cards contact GitHub through authenticated gh and Gitea at the explicitly configured server, without sending prompt or session content. Other network checks are limited to the existing ping to 1.1.1.1, the Ollama API, a Cloudflare trace request for the public IP at most once every 15 minutes per dashboard surface plus one on each HARD REFRESH, and—only when authenticated gh is installed—the newest GitHub Actions run for each active repository, cached for ten minutes. Two more outbound paths are off by default: only with INFOMARCHY_ALLOW_GROK_BILLING=1 or INFOMARCHY_ALLOW_CLAUDE_REFRESH=1 set, and only while the USAGE card is shown, does the collector call xAI's Grok billing endpoint or run the Claude CLI refresh and Omarchy's Claude limits check described under Usage collection and refresh. Automatic topic refinement sends recent prompt text to Ollama only when OLLAMA_HOST is loopback; pointing it at another machine disables refinement unless you set INFOMARCHY_ALLOW_REMOTE_OLLAMA=1 in the shell's environment, because that is prompt text leaving the machine. Explicit LOAD/UNLOAD clicks still target whatever host you configured. Ollama state changes happen only after an explicit card action and can only load or unload a model already present in the corresponding local inventory. Notifications are sent to the local Omarchy notification service; no session data is relayed to a remote notification provider. Multiplexer reporting reads only documented Herdr/Boomux/tmux identity variables; tmux inventory commands run only while tmux is already present, and Infomarchy never invokes Herdr or Boomux control APIs. Recent task text is credential-redacted before it reaches QML (token prefixes, KEY=value style assignments, authenticated URLs, PEM blocks, JWTs and common cloud key shapes — best effort, not a guarantee). Attention states come from terminal-title heuristics and are only evaluated while an agent is idle; a title that merely mentions "permission" or "failed" while it is still working does not raise a signal. Hover previews (off by default) capture the screen region the window occupies, so an occluded window previews whatever is drawn on top of it. Collector JSON is depth/node/byte bounded and streamed to QML in capped frames. Desktop stream privacy masks host/network details, GitHub and Gitea logins, home paths, window titles (account, host and home path), window previews, and recent-task text after its first four words. Project names and session topics stay visible; COPY EXCERPT still copies the full stored excerpt. This is a display mask, not a change to the local collector snapshot. The explicit setDemo true screenshot mode replaces the whole snapshot with documentation-only sample data and resets off whenever the shell restarts.
Use omarchy-shell infomarchy togglePrivacy or bind it to SUPER+SHIFT+I for stream privacy. One press enables it; three presses, with no more than two seconds between presses, disable it. The chip shows unlock progress, and the overlay ignores key repeat. omarchy-shell infomarchy setPrivacy false explicitly clears it in one call. The setting persists across restarts.
Observational Git commands disable filesystem monitors, hooks, external diffs, text conversion, and credential helpers, and ignore global/system Git configuration. GitHub CI polling resolves a github.com origin to owner/repo and calls gh --repo outside the agent working directory; INFOMARCHY_SKIP_GITHUB=1 skips both CI and activity fetching. Herdr focus requires the matching socket. Recent-task redaction also recognizes GitHub fine-grained, xAI, GitLab, Hugging Face, Stripe, and npm token prefixes, including Grok Bot text before markdown flattening. Resume uses the same project-directory guard as Open Project.
LOCAL AI can persist a server origin with omarchy-shell infomarchy setOllamaHost http://127.0.0.1:11434; getOllamaHost reads it and an empty value restores environment/default behavior. Both the model inventory and explicit load/unload actions use the selected origin. URLs containing credentials, paths, queries, or fragments are rejected. Topic refinement retains its loopback-only default unless INFOMARCHY_ALLOW_REMOTE_OLLAMA=1 is explicitly set.
FLEET dials nothing unless INFOMARCHY_FLEET_HOSTS names a host, and reads only that host — never a scan, never a discovery step. Each host gets one ssh -o BatchMode=yes -o ConnectTimeout=4 <host> <fixed commands> call per refresh; an unknown host key or a password prompt fails the probe instead of hanging or falling back to interactive auth, and the remote commands are fixed strings, never built from INFOMARCHY_FLEET_HOSTS beyond the host argument itself, so there is nothing in that variable for an entry to inject into. Presence detection runs ps -eo pid=,args=, bounded on both ends. Hermes usage reads two files in the same SSH call — ~/.hermes/state.db with sqlite3 -readonly, and ~/.hermes/workspace/openrouter_key_usage.json with a bounded cat — both read-only, both bounded. No OpenRouter or other third-party API is called by Infomarchy directly, and no API key is stored anywhere for this feature; the key-usage file is itself just Hermes's own cache of a call Hermes already made. INFOMARCHY_SKIP_FLEET=1 disables both probes.
Still and animated image wallpapers share one image surface. Supported animated GIF/WebP files play their own frames; still files remain still. The overlay pauses playback and rendering while closed. Existing video wallpaper handling is unchanged.
A hideable, reorderable MEDIA CONTROLS card uses the local MPRIS service for title, artist, album, player identity, and previous/play-pause/next actions. A playing player is preferred, and playerctld is used only when no other player exists. Metadata is bounded plain text; album art is never fetched. Demo mode shows sample metadata and disables actions.
Pi sessions are detected from the pi process and ~/.pi/agent/sessions JSONL history. Recent Tasks includes Pi prompts, activity, and resume via pi --session <id>. The recent-task window reserves space for quieter providers while retaining pinned-first and newest-first display order.
An optional CONTAINERS card joins the right column, with Docker (/usr/bin/docker) preferred over Podman. It shows up to eight rows and explicit start/stop toggles. Each action checks a fresh ps -a inventory and passes the matched name as a separate argument. The bounded snapshot retains only id, name, display label, compose service/project, short image, state, running status and health; it excludes compose working directories, env files, commands, mounts and ports. Hide/reorder the card through the existing module controls; INFOMARCHY_SKIP_CONTAINERS=1 skips collection.
When Omarchy has no usage record, Grok's per-turn usage records in updates.jsonl supply local token totals, falling back to session-directory counts when no usage records exist. Grok session files are read incrementally, newest first, at most 16 MiB per pass. OpenCode's row comes from its local opencode.db. Both are file reads with no network access. Providers appear in separate tinted blocks.
Grok's weekly meter is read from Grok CLI's own log (~/.grok/logs/unified.jsonl) whenever the CLI has fetched billing itself. Infomarchy makes no request for that.
Grok billing fetch, off unless you opt in. With INFOMARCHY_ALLOW_GROK_BILLING=1 set and the USAGE card shown, the collector reads the Grok CLI credential from ~/.grok/auth.json and sends it in an Authorization header to xAI's fixed HTTPS billing endpoint, with redirects refused and bounded response size and time. The endpoint is the one Grok CLI itself uses and is not a documented public API, so it can change without notice, and the request identifies itself as the CLI. The wallpaper and the overlay share a 60-second cache and a descriptor-held flock, and failures back off too. HARD REFRESH skips the cache but still waits 10 seconds after the last attempt. No credential enters argv, the snapshot or a state file. Once the opt-in is off, a result saved earlier is ignored rather than shown as current. A window whose reset time has passed is not shown either, from this fetch or from the CLI log.
Claude token refresh, off unless you opt in. With INFOMARCHY_ALLOW_CLAUDE_REFRESH=1 set and the USAGE card shown, when Claude's saved OAuth access token has expired, the wallpaper collector runs claude -p ping --max-turns 0 --output-format json so the installed CLI refreshes the token, at most once every 15 minutes per machine, HARD REFRESH included. Claude Code's CLI reference describes -p as printing a response and --max-turns as a limit on agentic turns. It does not document 0 or promise that no model request is made, so treat each refresh as possibly one small request counted against your Claude plan. The same opt-in covers the next step, Omarchy's omarchy-agent-usage-claude --limits-only, which queries Anthropic's OAuth usage endpoint. Its output is read in memory. Infomarchy never writes Omarchy's usage records. That Omarchy script keeps its own cache under ~/.cache/omarchy/agent-usage exactly as it does when the bar widget runs it, and reuses a probe from the last 15 seconds. Successful limits no longer retain stale sign-in help.
Both variables must be in the environment of the running shell, not merely exported in a terminal: the collectors inherit their environment at launch, so restart the shell after setting or clearing one. The USAGE card counts as shown while the desk is visible (SUPER+I) with the USAGE section enabled, or while the overlay is open with the desk visible and the USAGE section enabled.
The first module-strip chip, HARD REFRESH, bypasses cached Grok billing, GitHub activity and external-IP reads, and re-reads Claude limits when the Claude opt-in is on. IPC: omarchy-shell infomarchy hardRefresh, or omarchy-shell shell call nixfred.infomarchy hardRefresh for the overlay. HARD REFRESH bypasses caches, never the opt-ins, the USAGE visibility gate, the 15-minute Claude limit or the 10-second Grok floor.
Does it drain my battery? One bun run every 4 s (~0.2 s of CPU warm), no idle animation except the busy-dot pulse — a few percent of one core at most. Raise refreshMs if you want it lower.
The desk is black / empty. You changed QML and the shell didn't reload the service — run omarchy restart shell. (collector.ts changes are picked up live.)
Clicking a card doesn't focus anything. The card says no window — the agent isn't under a Hyprland client (SSH session, systemd service, or started from a launcher that already exited). That's expected.
Can I keep the stock wallpaper behaviour too? Yes: disable nixfred.infomarchy and Omarchy restores omarchy.background. Or keep it enabled and set wallpaperOpacity to taste.
Two monitors? One desk per screen, each sized to its own resolution.
- Per-card show/hide in the plugin settings schema (no QML editing)
- Task board from Claude Code
TaskCreate/ Codex goals, with completed-task history - Memory / vector-store growth sparkline (qdrant, LMF, …)
- Theme gallery in this README — send yours
Issues and PRs welcome. The one rule: nothing machine-specific — if it needs your username, your path or your hostname, it needs to come from an env var or /proc. Adding a provider is a regex in collector.ts plus a colour/label in InfoModel.qml; please include a redacted sample of the data you're reading.
Built on the Omarchy shell by DHH and contributors, Quickshell, and Hyprland. The usage card stands on the shoulders of Omarchy's omarchy.agents widget.
Made by Fred Nix with Larry, Atlanta, 2026.
Set INFOMARCHY_REMOTE_ROSTER in the collector environment to a local JSON file.
There is no default path. Both wallpaper and overlay read it each tick and never
write it. Unset or missing files show no section; unreadable or malformed files
show unavailable. The read-only REMOTE card shows status counts and up to
four attention rows (two on compact desks), with +N for the rest. These agents
do not become local sessions or generate notifications.
{
"v": 1,
"fetchedAt": "2026-09-06T12:00:00Z",
"agents": [
{ "id": "ara", "name": "ARA", "status": "busy", "attention": "waiting", "lastLine": "Review requested" }
]
}v must be 1 and agents must be an array. The file limit is 256 KiB; only the
first 100 entries are considered. IDs are 1–64 ASCII letters, digits, _ or -,
starting with a letter or digit; first occurrence wins. Status is busy, idle
or offline; unknown statuses drop the row. Optional attention is blocked,
waiting or done, ranked in that order, then file order. Unknown attention is
ignored. Names are capped at 64 characters, last lines at 140 with best-effort
credential redaction; both render as plain text.
fetchedAt is RFC3339, at least year 2000 and no more than 60 seconds ahead of
the collector clock; invalid timestamps fall back to file mtime. Older than five
minutes is stale, and counts and rows remain visible. A plausible but old
producer timestamp remains stale even after a fresh copy. Writers needing copy
freshness should stamp receiver time before atomically replacing the file. If
adding the roster would exceed the dashboard snapshot budget, that tick omits it.
Set INFOMARCHY_REMOTE_WORKSPACE to a workspace number (1–99) and the card
becomes a doorway: one click focuses that workspace, where your own view of those
agents lives. Infomarchy neither draws that view nor knows what is on it — it
focuses a workspace and nothing else. Unset, which is the default, the card stays
inert, because a remote agent has no window here to focus.




