CRX aminer

Starting analysis...

Extension icon

Redirect Path

Version 3.0 View in Chrome Web Store

Last scanned: 10 days ago | force re-scan

Extension Details

Developer: Ayima UK Ltd
Rating: 4.4 ★ (195 ratings)
Users: 300,000

Context-Aware Verdict

CRITICAL
Overall Risk
Trust Factors:

The extension comes from Ayima UK Ltd, a legitimate SEO and digital marketing company, which adds credibility. With 300,000 users and a solid 4.4-star rating from 195 reviews, it appears to have genuine user adoption. The extension's purpose is to analyze redirect paths for SEO professionals, which explains some of the broad permissions needed for its functionality.

Concerns:

The combination of webRequest and webNavigation permissions with broad host access creates significant privacy risks, as the extension can monitor and potentially modify all web traffic. The clipboardWrite permission is particularly concerning as it could be exploited to inject malicious content. The ability to inject content scripts into all websites means sensitive data like passwords, personal information, or financial details could theoretically be accessed. While these permissions may be necessary for redirect analysis, they create a powerful surveillance capability.

Recommendations:

Given the critical risk level, consider running this extension in a dedicated Chrome profile used only for SEO work, isolated from personal browsing. Only enable it when actively performing redirect analysis tasks. Regularly review what data the extension might be collecting and ensure you trust Ayima's data handling practices. Consider alternative tools with more limited permissions if this extension's full feature set isn't essential for your work. Monitor for any unusual network activity when the extension is active.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: clipboardWrite
This extension has the clipboardWrite permission. Can modify clipboard content. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webNavigation
This extension has the webNavigation permission. Can track your web navigation. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webRequest
This extension has the webRequest permission. Can intercept and modify web requests. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.