CRX aminer
Extension icon

Sauce for Strava™

Version 8.9.7 View in Chrome Web Store

Last scanned: about 1 hour ago

Extension Details

Developer: sauce.llc
Rating: 4.7 ★ (111 ratings)
Users: 50,000

Context-Aware Verdict

MEDIUM
Overall Risk
Trust Factors:

The extension has a solid user base of 50,000 users with a high rating of 4.7 stars from 111 reviews, indicating positive user experiences. The developer "sauce.llc" appears to be a legitimate company focused on Strava enhancements. The extension uses Manifest V3, which provides better security controls than older versions. The content scripts are appropriately scoped to only Strava domains, showing good security practices.

Concerns:

The unlimited storage permission is concerning as it allows the extension to store unlimited amounts of data on your device without restrictions. While the storage and contextMenus permissions are reasonable for a Strava enhancement tool, the combination with unlimited storage could potentially be misused. The extension has broad access across all Strava pages, which while necessary for functionality, increases the attack surface if the extension were compromised.

Recommendations:

This extension appears legitimate for Strava users seeking enhanced features. The permissions align with typical functionality for fitness tracking enhancements. Monitor your device storage usage if you install this extension due to the unlimited storage capability. Consider the value of the features against the storage permissions granted. The risk is manageable for most users, but those with strict privacy requirements might want to research the specific data collection practices of sauce.llc before installation.

Findings

MEDIUM
Medium-Risk Permission: contextMenus
This extension has the contextMenus permission. Can add items to the context menu.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.
MEDIUM
Medium-Risk Permission: unlimitedStorage
This extension has the unlimitedStorage permission. Can store unlimited data locally.