CRX aminer
Extension icon

ZAP by Checkmarx Browser Extension

Version 0.0.10 View in Chrome Web Store

Last scanned: 12 days ago | force re-scan

Extension Details

Developer: zaproxy.org
Rating: 4.6 ★
Size: 502KiB
Last Updated: December 23, 2024
Users: 115

Context-Aware Verdict

HIGH
Risk Level
Trust Factors:
- The extension is developed by zaproxy.org, which is a well-known and reputable organization in the cybersecurity community, dedicated to providing security tools and resources.
- The extension has a relatively high rating of 4.6 stars, indicating positive user feedback.
- However, the extension has a relatively low number of users (115), which could be a concern.
Concerns:
- The extension has broad host permissions, allowing it to access all websites, which could potentially be exploited for data theft or tracking browsing activity.
- The extension has high-risk permissions such as tabs and cookies, which could be misused to compromise security or privacy.
- The extension has the storage permission, which could potentially store sensitive data locally.
Recommendations:
- Given the high-risk permissions and broad host permissions, it is recommended to run this extension in a separate Chrome profile or a sandboxed environment to isolate it from your main browsing activity.
- Regularly review the extension's permissions and update it to the latest version to ensure that any security vulnerabilities are patched.
- Monitor the extension's behavior and disable or remove it if you notice any suspicious activity or privacy concerns.
- Consider using alternative security tools or extensions from trusted sources if you have concerns about the potential risks associated with this extension.

Security Analysis

HIGH
Overall Risk
Based on 4 total findings, ranked without considering overall context, including 3 high-risk and 1 medium-risk findings.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: cookies
This extension has the cookies permission. Can access and modify browser cookies. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.