CRX aminer
Extension icon

Extension for Netsso Telecryptor

Version 1.8 View in Chrome Web Store

Last scanned: about 6 hours ago

Extension Details

Context-Aware Verdict

MEDIUM
Overall Risk
Trust Factors:

The extension appears to be associated with Netsso Telecryptor, which suggests a legitimate security/encryption purpose. However, several trust indicators are missing or concerning - there's no information about download count, user ratings, author details, or developer information. The lack of these basic trust signals makes it difficult to verify the extension's legitimacy and reputation.

Concerns:

The primary concern is the nativeMessaging permission, which allows the extension to communicate with native applications installed on your computer. While this permission aligns with the telecryptor functionality, it represents a significant security capability that could potentially be misused to interact with system-level applications. The use of Manifest V2 is also problematic as it has weaker security controls compared to the newer V3 standard. The absence of user metrics, ratings, and developer information raises additional red flags about transparency and accountability.

Recommendations:

Consider running this extension in a separate Chrome profile to isolate its native messaging capabilities from your main browsing environment. Verify the extension's authenticity through official Netsso channels before installation. Monitor system activity when the extension is active to ensure it's only communicating with intended applications. If possible, look for an updated version that uses Manifest V3 for better security controls.

Findings

MEDIUM
Older Manifest Version
This extension uses Manifest Version 2, which has fewer security restrictions than Manifest V3. Consider using extensions that have upgraded to V3.