This extension shows critical risk indicators. It requests highly sensitive permissions combined with suspicious code patterns. Proceed with extreme caution.
Based on 7 permissions including high-risk ones, 25 code findings, 1 dangerous combination.
Extension intercepts network traffic and sends data externally — potential man-in-the-middle behavior.
This extension does not define a Content Security Policy. A CSP helps prevent XSS and code injection attacks.
Resolved from __MSG_* i18n placeholders:
Description: View the top coupons in online shops and have them automatically applied at checkout to help you save money.
JavaScript files are accessible to ALL websites. Any page can load and interact with these scripts, enabling web→extension attacks.
Web-accessible resources use <all_urls> or wildcard patterns, exposing resources to every website.
Content script matches <all_urls>, executing on every website the user visits.
25 indicators of compromise found