This extension requests significant permissions. It has 3M+ users, a 3.3 star rating, but review the findings below.
This extension shows some risk signals that are common in legitimate extensions but worth reviewing. Check the details below.
Based on 15 permissions including high-risk ones, 10 code findings, 3 dangerous combinations.
Extension has cookie access and sends data to external servers — potential session token theft.
Extension intercepts network traffic and sends data externally — potential man-in-the-middle behavior.
Extension reads browsing history and sends data externally — potential history exfiltration.
object-src is not set to 'none'. Plugins like Flash can be embedded, which may allow code execution.
Resolved from __MSG_* i18n placeholders:
Name: Free Download Manager
Description: Free Download Manager integration with browser
Extension accepts messages from 1 external pattern(s). Verify these are trusted origins.
Content script runs at document_start in ALL frames on ALL URLs. This gives the extension deep access to every page load, including iframes.
Content script runs at document_start in ALL frames on ALL URLs. This gives the extension deep access to every page load, including iframes.
Content script runs at document_start in ALL frames on ALL URLs. This gives the extension deep access to every page load, including iframes.
Content script runs at document_start in ALL frames on ALL URLs. This gives the extension deep access to every page load, including iframes.
5 indicators of compromise found