This extension shows critical risk indicators. It requests highly sensitive permissions combined with suspicious code patterns. Proceed with extreme caution.
Based on 8 permissions including high-risk ones, 17 code findings, 1 dangerous combination.
Extension has cookie access and sends data to external servers — potential session token theft.
1 library detected, 1 with known vulnerabilities
This extension does not define a Content Security Policy. A CSP helps prevent XSS and code injection attacks.
Resolved from __MSG_* i18n placeholders:
Name: Lightshot (screenshot tool)
Description: Simple and convenient screenshot tool. Select an area, edit your screenshot and upload it to the server.
No manifest-level concerns found.
45 indicators of compromise found