This extension shows concerning patterns that may indicate risky behavior. Proceed with caution.
This extension shows some risk signals that are common in legitimate extensions but worth reviewing. Check the details below.
Based on 14 permissions including high-risk ones, 346 code findings, 3 dangerous combinations.
Extension intercepts network traffic and sends data externally — potential man-in-the-middle behavior.
Extension reads clipboard and communicates externally — potential credential or crypto address theft.
Extension has access to all sites and captures keyboard input — behavior consistent with a keylogger.
object-src is not set to 'none'. Plugins like Flash can be embedded, which may allow code execution.
JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.
Web-accessible resources use <all_urls> or wildcard patterns, exposing resources to every website.
Extension accepts messages from 2 external pattern(s). Verify these are trusted origins.
112 indicators of compromise found