CRX aminer
Extension icon

Martian Aptos & Sui Wallet Extension

Version 1.7.20 View in Chrome Web Store

Last scanned: about 4 hours ago

Extension Details

Developer: martianwallet.xyz
Rating: 4.9 ★ (14.5K ratings)
Users: 200,000

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors:

The extension has strong user adoption with 200,000 users and an excellent 4.9-star rating from 14,500 reviews, indicating positive user experiences. The developer domain "martianwallet.xyz" suggests this is a legitimate cryptocurrency wallet service. The high rating and substantial user base provide some confidence in the extension's legitimacy and functionality.

Concerns:

The extension requests extremely broad permissions that extend far beyond typical wallet functionality. The <all_urls> host permission combined with tabs access creates significant privacy and security risks, as it can monitor and interact with all websites you visit. Content scripts running on all protocols (file, http, https) and all URLs means the extension can inject code into every webpage. These permissions are excessive for a wallet that should primarily need to interact with specific blockchain-related websites and dApps.

Recommendations:

Given the high-risk permissions but strong user trust indicators, consider running this extension in a dedicated Chrome profile used only for cryptocurrency activities. This isolates potential risks from your main browsing. Regularly review which websites you visit while this extension is active, and consider disabling it when not actively managing crypto assets. Monitor for any unusual browser behavior or unexpected network requests. The legitimate nature suggested by user reviews makes it safer than unknown extensions with similar permissions, but the broad access still warrants caution.

Findings

HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: notifications
This extension has the notifications permission. Can show notifications.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.