CRX aminer
Extension icon

X Bookmarks Exporter - Export Twitter Bookmarks

Version 2.3.0 View in Chrome Web Store

Last scanned: about 1 hour ago

Extension Details

Developer: browseragents.co
Rating: 3.3 ★ (14 ratings)
Users: 1,000

Context-Aware Verdict

CRITICAL
Overall Risk
Trust Factors: The extension has concerning trust indicators with only 1,000 users and a below-average rating of 3.3 stars from just 14 reviews. The developer "browseragents.co" lacks established reputation, and the extension's limited adoption suggests it hasn't gained widespread community trust. The specific functionality of exporting Twitter/X bookmarks is legitimate but doesn't justify the extensive permissions requested.
Concerns: The extension requests excessive permissions far beyond what's needed for bookmark export functionality. The webRequest permission is particularly concerning as it allows intercepting and modifying all web traffic, which could enable data theft or malicious modifications. The tabs permission provides unnecessary access to all browser tabs, not just Twitter/X. The downloads permission, while relevant for exporting, combined with other permissions creates a dangerous combination. The broad host permissions and access to extfox.pro (an unknown domain) raise additional red flags about potential data exfiltration.
Recommendations: Do not install this extension due to its critical risk level. The permission set suggests potential malicious intent rather than legitimate bookmark export functionality. If you absolutely need Twitter bookmark export, research well-established alternatives with better ratings and more conservative permissions. If you must use this extension, run it in a completely isolated Chrome profile with no sensitive accounts logged in, and uninstall immediately after use.

Findings

HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: downloads
This extension has the downloads permission. Can download files and access download history. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webRequest
This extension has the webRequest permission. Can intercept and modify web requests. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Access to Sensitive Domains
This extension requests access to sensitive domains: *://*.twitter.com/*. Ensure you trust this extension with access to these sites.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.