That’s unfortunate that you are not informed. The best part is, that even DHH himself agrees that Omarchy has lot of bad security issues. His argument is that these get reported and fixed, so it will be secure someday (so his argument, but ignoring that vibe coding is never secure). Here is a part of the interview with Brodie in YouTube (about 10 minutes): https://youtu.be/M8gVXNlZFFg
- https://blog.happyfellow.dev/merchants-of-insecurity/
- https://youtu.be/DYu9391lVP0 another video from Brodie, this time talking about an issue where the default configuration was set to allow any remote control of Kitty without asking the user.
- https://lemmy.ml/post/52085916 Omarchy: Any User Process Can Escalate to Root (with default Docker password, that is no password)
- https://github.com/omacom/omarchy/pull/8129 [Security] Stop USB device names from being executed as Hyprland Lua
- https://github.com/omacom/omarchy/pull/7884 Stop an installed theme from running code - #7884
- https://github.com/omacom/omarchy/pull/7847 [Security] Stop a video title from becoming the Download Video play command
And the list goes on and on. These are not just security issues… these are dumb issues that should not have been there. Its incompetence and negligence. Every software has issues and bugs and security issues. But why don’t the other distributions have this many dumb issues like these? And it won’t get better, because its heavily vibe coded.
So I hope you are informed now.











I’m talking about the purpose of the post.