CRX aminer
Extension icon

Eduphoria LockDown Browser

Version 0.4.60 View in Chrome Web Store

Last scanned: about 7 hours ago

Extension Details

Rating: 1.5 ★ (48 ratings)

Context-Aware Verdict

CRITICAL
Overall Risk
Trust Factors:

The extension has extremely poor user trust indicators with only a 1.5-star rating from 48 reviews, suggesting significant user dissatisfaction. The lack of visible developer information and user count raises additional transparency concerns. However, the name suggests it's designed for educational testing environments, which would legitimately require extensive system control.

Concerns:

The permission set is extraordinarily broad and invasive for most use cases. The extension can read browsing history, access all cookies across all websites, intercept and modify web requests, manage other extensions, and read/write clipboard content. The combination of system.display, wallpaper, and management permissions suggests deep system integration that goes far beyond typical browser functionality. The <all_urls> host permission grants access to every website visited. Most concerning is that these permissions collectively enable comprehensive surveillance and control over the user's entire browsing experience.

Recommendations:

Given the critical risk level, only install this extension if specifically required by an educational institution for secure testing. If required, create a dedicated Chrome profile exclusively for testing purposes, disable all other extensions, and avoid any personal browsing in that profile. After testing, immediately remove the extension or delete the entire profile. Never use this extension for general browsing or on a profile containing personal data.

Findings

HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: clipboardRead
This extension has the clipboardRead permission. Can read clipboard content. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: clipboardWrite
This extension has the clipboardWrite permission. Can modify clipboard content. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: cookies
This extension has the cookies permission. Can access and modify browser cookies. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: history
This extension has the history permission. Can access your browsing history. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: management
This extension has the management permission. Can manage other extensions. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webNavigation
This extension has the webNavigation permission. Can track your web navigation. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webRequest
This extension has the webRequest permission. Can intercept and modify web requests. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.