This extension shows critical risk indicators. It requests highly sensitive permissions combined with suspicious code patterns. Proceed with extreme caution.
Based on 8 permissions including high-risk ones, 68 code findings, 2 dangerous combinations.
Extension tracks open tabs and communicates with external servers — potential browsing surveillance.
Extension has access to all sites and captures keyboard input — behavior consistent with a keylogger.
2 libraries detected, 2 with known vulnerabilities
object-src is not set to 'none'. Plugins like Flash can be embedded, which may allow code execution.
Resolved from __MSG_* i18n placeholders:
Name: ColorPick Eyedropper
Description: A zoomed eyedropper & color chooser tool that allows you to select color values from webpages and more.
Web-accessible resources use <all_urls> or wildcard patterns, exposing resources to every website.
Content script matches <all_urls>, executing on every website the user visits.
Content script matches <all_urls>, executing on every website the user visits.
12 indicators of compromise found