CRX aminer
Extension icon

DPlus Party - Disney Plus Watch Party

Version 1.4.4 View in Chrome Web Store

Last scanned: about 15 hours ago

Extension Details

Rating: 3.9 ★ (66 ratings)
Users: 10,000

Context-Aware Verdict

MEDIUM
Risk Level
Trust Factors:
- The extension has a decent number of users (10,000), which suggests some level of trust and popularity.
- The rating of 3.9 out of 5 stars from 66 reviews is relatively positive, indicating general user satisfaction.
Concerns:
- The extension requests the "activeTab" permission, which allows it to access the currently active tab's content. While this permission is often necessary for extensions that interact with web pages, it can potentially be misused to access sensitive information.
- The "storage" permission allows the extension to store data locally, which could be a privacy concern if the extension collects and stores user data without proper consent or disclosure.
- The extension is using the older Manifest Version 2, which has fewer security restrictions compared to the newer Manifest Version 3. This could potentially expose users to security risks or vulnerabilities that have been addressed in the newer version.
Recommendations:
- Review the extension's privacy policy and terms of service to understand how it handles user data and what information it collects or stores.
- Consider running the extension in a separate Chrome profile or incognito mode to isolate it from your main browsing session and minimize potential risks.
- Monitor the extension's behavior and check for any suspicious activities or unexpected data access.
- Keep an eye on updates from the developer, as they may release a version compatible with Manifest Version 3, which could address some security concerns.
- If you have concerns about the extension's permissions or behavior, consider uninstalling it and finding an alternative with better security practices or from a more reputable developer.

Security Analysis

MEDIUM
Overall Risk
Based on 3 total findings, ranked without considering overall context, including 0 high-risk and 3 medium-risk findings.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.
MEDIUM
Older Manifest Version
This extension uses Manifest Version 2, which has fewer security restrictions than Manifest V3. Consider using extensions that have upgraded to V3.