CRX aminer
Extension icon

Consider

Version 2.5.14 View in Chrome Web Store

Last scanned: 18 days ago | force re-scan

Extension Details

Developer: https://consider.com/
Rating: 5.0 ★ (3 ratings)
Users: 753

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors:

The extension has very limited adoption with only 753 users and just 3 reviews, despite having a perfect 5.0 rating. The developer appears to be associated with consider.com, which suggests some level of legitimacy. However, the small user base and minimal review history make it difficult to establish strong trust indicators. The extension uses Manifest V3, which is positive from a security standpoint.

Concerns:

The extension requests unnecessarily broad permissions for what appears to be a professional networking or career-related tool. The cookies permission is particularly concerning as it allows access to and modification of browser cookies, which could compromise user privacy and security. The broad host permissions create potential for data collection beyond the stated purpose. Access to LinkedIn specifically raises privacy concerns about professional data harvesting. The activeTab permission, while common, adds another layer of access that may not be essential for the extension's core functionality.

Recommendations:

Given the high-risk profile, consider running this extension in a separate Chrome profile to isolate it from your primary browsing activities and sensitive accounts. Before installation, carefully review what specific functionality the extension provides to determine if the extensive permissions are justified. Monitor the extension's behavior after installation and revoke permissions if possible through Chrome's extension settings. Consider alternative extensions with similar functionality but more limited permission requests. Given the low user adoption, you might want to wait for broader community validation before trusting it with sensitive data access.

Findings

HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: cookies
This extension has the cookies permission. Can access and modify browser cookies. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Access to Sensitive Domains
This extension requests access to sensitive domains: https://www.linkedin.com/*. Ensure you trust this extension with access to these sites.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.