The extension has a strong user rating of 4.8/5 from 272 reviews and 20,000 users, which suggests positive user experiences. However, the lack of visible developer information and company details reduces transparency and accountability. The extension appears to be associated with moss.site based on host permissions.
The extension exhibits several high-risk characteristics that justify the critical rating. The combination of identity permission with broad content script injection across all URLs creates significant privacy and security risks. The extension can access your Google identity information while simultaneously injecting scripts into every website you visit, potentially enabling credential theft or unauthorized account access. The tabs permission allows monitoring and manipulation of your browsing activity. The broad host permissions and universal content script injection capability means this extension has extensive access to sensitive data across all websites.
Given the critical risk level, avoid installing this extension unless absolutely necessary. If you must use it, run it in a completely separate Chrome profile isolated from your main browsing activities and sensitive accounts. Never use this profile for banking, email, or other confidential activities. Regularly audit what data the extension might have accessed through your Google account settings. Consider whether the extension's functionality truly requires such extensive permissions, and look for alternative extensions with more limited scope if possible.
| https://clients2.google.com/service/update2/crx | https://react.dev/errors/ | |
| http://www.w3.org/2000/svg | http://www.w3.org/1998/Math/MathML | |
| http://www.w3.org/1999/xlink | http://www.w3.org/XML/1998/namespace | |
| https://ai.moss.site | https://plugin.moss.site/api/tweet | |
| https://openpanel.moss.site/api | https://github.com/pmndrs/jotai/discussions/2044 | |
| http://fb.me/use-check-prop-types | http://www.apache.org/licenses/LICENSE-2.0 | |
| https://x.com/ | https://x.com/intent/like?tweet_id= | |
| https://x.com/intent/tweet?in_reply_to= | https://x.com/intent/follow?screen_name= | |
| https://x.com/hashtag/ | https://x.com/search?q=%24 | |
| https://react-tweet.vercel.app | https://avatar.vercel.sh/ | |
| https://github.com/syntax-tree/hast-util-to-jsx-runtime | https://github.com/remarkjs/react-markdown/blob/main/changelog.md | |
| http://www.w3.org/1999/xhtml | http://www.w3.org/2000/xmlns/ | |
| http://www.ibm.com/data/dtd/v11/ibmxhtml1-transitional.dtd | https://github.com/ecomfe/zrender/blob/master/LICENSE.txt | |
| https://tailwindcss.com | https://lodash.com/ | |
| https://openjsf.org/ | https://lodash.com/license | |
| http://underscorejs.org/LICENSE | https://npms.io/search?q=ponyfill. | |
| https://x.com/MossAI_Official | https://radix-ui.com/primitives/docs/components/ | |
| https://www.binance.com/zh-CN/trade/ | http://adamwdraper.github.com/Numeral-js/ | |
| https://x.com/intent/tweet?text= | https://moss.site//privacy#terms | |
| https://moss.site//privacy#privacy | https://twitter.com/ | |
| https://mainnet.base.org | https://basescan.org/ | |
| https://gateway.ipfs.io/ipfs/ | https://github.com/ethers-io/ethers.js/issues/4537 | |
| https://gasstation.polygon.technology/v2 | https://gasstation-testnet.polygon.technology/v2 | |
| https://image.moss.site/imgae/logo_moss.png | https://x.com/intent/tweet | |
| https://plugin.moss.site/api/tweet/ | https://t.me/mossai_official | |
| https://x.com | https://moss.site | |
| https://api.openpanel.dev | https://chromewebstore.google.com/detail/moss/ajlhmclpjddfebgfpahnlodliljdnbie. | |
| https://chromewebstore.google.com/detail/moss/ajlhmclpjddfebgfpahnlodliljdnbie | https://ui.shadcn.com/schema.json | |
| https://reactbits.dev/r/ | https://vitejs.dev/config/ |
{ "key": "MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtU8pCsISEz6jeAEeKE9Q7TEpmQrmR+Tu+n+HgFTFM1NqBKULbhQrwylKA2vJei+Ucoe4Ov6RVFIHmL66Y4rfDRdytBOYr+Ylp92ARcXoD5eK8mD2NNEVa9jZyWWjdlU9k4G3e/QuCEJBR401leVLFWzdETMzLUOCu5mV2DuDeO9aYEXaYwKGdcOzjAx0HPjRuEunSNKNH9yIcgg16eussz116GdFj7MIDpmi8pH8g3mHAhGVZF6y/C0086b9ewHAVAqsXLl/4Qzmrf53qDjC/XD9NWXocPnHUosBI91F5o65JhDSMaezBvB+mT6fYFY32cKX1nEWecfJR6lScGzX1wIDAQAB", "name": "Moss", "icons": { "16": "src/assets/icons/icon-16.png", "32": "src/assets/icons/icon-32.png", "48": "src/assets/icons/icon-48.png", "128": "src/assets/icons/icon-128.png" }, "action": {}, "version": "0.5.9", "background": { "type": "module", "service_worker": "service-worker-loader.js" }, "update_url": "https://clients2.google.com/service/update2/crx", "permissions": [ "storage", "identity", "tabs" ], "content_scripts": [ { "js": [ "assets/index.tsx-loader-CXrAKshn.js" ], "css": [ "assets/index-BnTQvNeF.css" ], "run_at": "document_end", "matches": [ "<all_urls>" ], "exclude_matches": [ "*://localhost/*" ] } ], "host_permissions": [ "https://*.moss.site/*" ], "manifest_version": 3, "web_accessible_resources": [ { "matches": [ "<all_urls>" ], "resources": [ "*.html", "*.css", "*.js", "*.jsx", "*.ts", "*.tsx", "*.json", "*.png", "*.jpg", "*.jpeg" ], "use_dynamic_url": false }, { "matches": [ "<all_urls>" ], "resources": [ "assets/toast-error-C_UxUk3H.png", "assets/toast-success-BpbfK_1B.png", "assets/toast-warning-DISGbuwo.png", "assets/answer-loading-dark-Dedd2v4C.gif", "assets/answer-loading-J3R29eeE.gif", "assets/summary-nnnAV9lK.png", "assets/tip-Hf_lIqOO.png", "assets/moss-logo-BiIezYUn.png", "assets/mail-load-more-dark-601NKtMK.png", "assets/no-data-CRTTwovx.png", "assets/bearish-Dzi8Cqga.png", "assets/bullish-DZ1qN1Nx.png", "assets/sentiment-tag-no-data-BmmimB5f.png", "assets/no-data-CyYcQKEk.png", "assets/diamond-C-wUqJVS.png", "assets/daily-check-in-gift-logo-CIpQfjeS.png", "assets/earn-more-rewards-dark-DCto8Hr0.png", "assets/earn-more-rewards-Bht1jkP4.png", "assets/moss_logo_dark_v2-BqY1VPi3.svg", "assets/moss_logo_light_v2-74pIWMRV.svg", "assets/moss_logo_dark-Bv7kirA8.svg", "assets/moss_logo_light-O0qZehOo.svg", "assets/logo-D2GfXWz1.png", "assets/like-active-icon-boAnE_W3.png", "assets/like-icon-dark-D3ak8r2B.png", "assets/like-icon-CFYF2hQO.png", "assets/submission-success-Cl-jMaYO.png", "assets/login-banner-DO_YgCDF.png", "assets/active-DtbCJyyc.svg", "assets/copy-success-light-hFaoA0Sw.svg", "assets/no-active-uYGhit1c.svg", "assets/user-dark-copy-CPralxpB.svg", "assets/user-usdc-uxGhlq5D.svg", "assets/logo-n2wLcZ1G.png", "assets/badge-no-claimable-dark-lW4LQVD8.png", "assets/badge-no-claimable-CnwxD9Ps.png", "assets/badge-BvRdBEIf.png", "assets/moss-dark-CwEL9ZQE.png", "assets/moss-W93sqqSt.png", "assets/Frame-6-TSQ7cQji.svg", "assets/Frame-7-1eJgfEre.svg", "assets/Frame-8-CIoEyhN_.svg", "assets/Frame-9-khFHDvHF.svg", "assets/banner-icon-jzaVDqqR.png", "assets/send-err-Cc56eKQA.png", "assets/send-ByetWcK_.png", "assets/banner-icon-J5-nfPvJ.png", "assets/arbitrum-chain-bg-CwZkoupo.png", "assets/copy-dark-DlNP9z7z.png", "assets/copy-hover-dark-CuZZJjt4.png", "assets/copy-hover-light-OCK0mSHB.png", "assets/copy-light-D3Eg1oRL.png", "assets/quote-dark-B6lcqp4E.png", "assets/quote-hover-dark-B4IvVJk2.png", "assets/quote-hover-light-DJB0PbnW.png", "assets/quote-light-7vPdXBC2.png", "assets/resend-dark-Dtm0Axf9.png", "assets/resend-hover-dark-D4DNxqbC.png", "assets/resend-hover-light-CjmqyNKr.png", "assets/resend-light-6VsL4-_K.png", "assets/get-more-BxzkmFMp.png", "assets/history-list-BO0UP5-O.png", "assets/user-more-DbDxCBBm.svg", "assets/banner_bg-Bi-tBTtW.png", "assets/banner-DH6jcCAN.png", "assets/invite-banner-oXvOPIpw.png", "assets/agent-dark-active-By-Kimrj.svg", "assets/agent-dark-no-active-Duwo4FSi.svg", "assets/agent-light-active-Bqwlzy6D.svg", "assets/agent-light-no-active-DraJqHNr.svg", "assets/alert-1-Dk6DyKb5.svg", "assets/alert-2-BnfH79CP.svg", "assets/alert-3-BTMVat8I.svg", "assets/alert-4-BaHYkTh5.svg", "assets/chat-1-Dt0zpMna.svg", "assets/chat-2-DfAE26HP.svg", "assets/chat-3-DK4N4ctX.svg", "assets/chat-4-DfQSN8SC.svg", "assets/clean-x-1-Cg6UOZpx.svg", "assets/clean-x-2-He1qeoOx.svg", "assets/clean-x-3-C5SSxlp1.svg", "assets/clean-x-4-Cfqp6fUJ.svg", "assets/follow-1-C-KqaRvn.svg", "assets/follow-2-CeYEFZDU.svg", "assets/follow-3-hG7V9W3l.svg", "assets/follow-4-CZcCV-Vi.svg", "assets/guess-1-0MBOIDU7.svg", "assets/guess-2-B2trrIwb.svg", "assets/guess-3-CkSk7Fz7.svg", "assets/guess-4-DyuAr7Xf.svg", "assets/code-text-mapping-BFFVSCi9.js", "assets/index.tsx-C4r6QKoK.js" ], "use_dynamic_url": true } ] }
ⓘ CRXaminer has partnered with our friends at Secure Annex to provide additional findings unique to their platform.
Secure Annex also analyzes extensions from other browsers, IDEs, and can continuously monitor.
This extension may not yet be analyzed by Secure Annex.