CRX aminer
Extension icon

Selenium Proxy Extension

Version 2.2.8 View in Chrome Web Store

Last scanned: about 8 hours ago

Extension Details

Rating: 5.0 ★ (1 rating)
Users: 63

Context-Aware Verdict

CRITICAL
Overall Risk
Trust Factors:

The extension has extremely limited trust indicators with only 63 users and a single 5-star rating, which is insufficient to establish credibility. The lack of developer information, company details, and recent update history raises significant red flags. The name "Selenium Proxy Extension" suggests automation testing purposes, but the minimal user base indicates it's not widely adopted or vetted by the community.

Concerns:

The extension possesses an exceptionally dangerous combination of permissions that create multiple attack vectors. The proxy permission combined with webRequest capabilities allows complete interception and modification of all web traffic. The broad host permissions and content script injection across all websites enable comprehensive data harvesting and credential theft. The unlimitedStorage permission could facilitate large-scale data collection operations. These permissions collectively grant the extension unprecedented control over browsing activity and network communications.

Recommendations:

Do not install this extension unless absolutely necessary for legitimate Selenium testing. If required, create a completely isolated Chrome profile with no saved passwords, personal data, or access to sensitive websites. Use this profile exclusively for testing purposes and never for regular browsing. Consider using established, well-reviewed proxy extensions from reputable developers instead. Monitor network traffic carefully when the extension is active and remove it immediately after testing completion.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: proxy
This extension has the proxy permission. Can control proxy settings. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webRequest
This extension has the webRequest permission. Can intercept and modify web requests. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.
MEDIUM
Medium-Risk Permission: unlimitedStorage
This extension has the unlimitedStorage permission. Can store unlimited data locally.