CRX aminer

Starting analysis...

Extension icon

Frame By Frame

Version 3.5 View in Chrome Web Store

Last scanned: 8 days ago | force re-scan

Extension Details

Rating: 3.8 ★ (40 ratings)
Users: 10,000

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors: The extension has a moderate user base of 10,000 users and an average rating of 3.8 stars from 40 reviews, suggesting basic functionality but mixed user satisfaction. However, the lack of clear author information and developer details raises transparency concerns. The name "Frame By Frame" suggests video-related functionality, which could justify some web access needs.
Concerns: The extension's permissions are disproportionately broad for what appears to be a video frame analysis tool. The <all_urls> host permissions and content script injection capabilities create significant security risks, allowing the extension to access and modify content on every website you visit. This level of access far exceeds what would typically be necessary for frame-by-frame video analysis. The storage permission, while less concerning, adds to the overall risk profile by enabling data collection and retention.
Recommendations: Given the high risk level, consider running this extension in a separate Chrome profile dedicated to video work if you must use it. Before installation, verify that the functionality truly requires such broad permissions by testing alternatives with more restrictive access. Monitor your browsing activity for any unusual behavior after installation. Consider whether browser-based video analysis tools or desktop applications might provide similar functionality with better security isolation. If keeping the extension, regularly review its behavior and disable it when not actively needed for video work.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.