CRX aminer
Extension icon

Unfollow All Followers - U.A.F

Version 3.0.0.1 View in Chrome Web Store

Last scanned: about 7 hours ago

Extension Details

Developer: getcreativesoftware.dev
Rating: 3.1 ★ (19 ratings)
Users: 1,000

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors:

The extension has very limited adoption with only 1,000 users and a concerning 3.1-star rating from just 19 reviews, suggesting user dissatisfaction. The developer "getcreativesoftware.dev" lacks established reputation or verifiable company information. The extension's purpose is to unfollow Twitter followers, which is a legitimate but niche functionality.

Concerns:

The tabs permission is excessive for an extension that should only need to interact with Twitter pages. This permission allows monitoring and manipulation of all browser tabs, creating privacy risks. The broad host permissions pattern (*://*.twitter.com/*) grants access to all Twitter subdomains, which may be more than necessary. The storage permission, while reasonable for saving user preferences, could potentially store sensitive data. The combination of these permissions creates a concerning attack surface that exceeds what's needed for basic unfollowing functionality.

Recommendations:

Given the high risk level, consider running this extension in a separate Chrome profile to isolate it from your main browsing activity. Before installation, verify the extension actually works as advertised by checking recent user reviews. Consider alternative methods for mass unfollowing, such as Twitter's native tools or more established extensions with better ratings and larger user bases. If you must use this extension, regularly review what data it might be storing and monitor your Twitter account for any unexpected activity.

Findings

HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Access to Sensitive Domains
This extension requests access to sensitive domains: *://*.twitter.com/*. Ensure you trust this extension with access to these sites.
MEDIUM
Medium-Risk Permission: contextMenus
This extension has the contextMenus permission. Can add items to the context menu.
MEDIUM
Medium-Risk Permission: notifications
This extension has the notifications permission. Can show notifications.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.