This extension requests significant permissions. It has 70K+ users, a 5.0 star rating, but review the findings below.
This extension shows some risk signals that are common in legitimate extensions but worth reviewing. Check the details below.
Based on 7 permissions including high-risk ones, 37 code findings, 3 dangerous combinations.
Extension uses tab tracking APIs (onUpdated/query) and communicates with external servers — potential browsing surveillance.
Extension reads clipboard and communicates externally — potential credential or crypto address theft.
Extension has access to all sites and captures keyboard input — behavior consistent with a keylogger.
1 library detected
This extension does not define a Content Security Policy. A CSP helps prevent XSS and code injection attacks.
Content script runs at document_start in ALL frames on ALL URLs. This gives the extension deep access to every page load, including iframes.
8 indicators of compromise found