CRX aminer

Starting analysis...

Extension icon

Supademo: AI interactive demos in seconds

Version 5.4.7 View in Chrome Web Store

Last scanned: 13 days ago | force re-scan

Extension Details

Developer: supademo.com
Rating: 4.8 ★ (41 ratings)
Size: 1.19MiB
Last Updated: March 7, 2025
Users: 10,000
Developer Info: Supademo, Inc.13331 Hauser Street Overland Park, KS 66213 US

Context-Aware Verdict

HIGH
Risk Level
Trust Factors:
- The extension has a relatively high number of users (10,000) and a good rating (4.8/5), which suggests some level of trust from the user community.
- The developer is a registered company (Supademo, Inc.), which adds some credibility.
Concerns:
- The extension requests several high-risk permissions, including tabs, webNavigation, and broad host/content script permissions, which could potentially be abused for malicious purposes like tracking browsing activity, compromising security, or stealing sensitive data.
- The broad permissions seem unnecessary for an extension that claims to provide "AI interactive demos," raising questions about the extension's true purpose.
Recommendations:
- Exercise caution when installing this extension, as the requested permissions are excessive for its stated functionality.
- Consider running the extension in a separate browser profile or a sandboxed environment to isolate it from your main browsing activity.
- Closely monitor the extension's behavior and network activity for any suspicious activities.
- Regularly review the extension's permissions and revoke any unnecessary ones.
- If possible, seek alternative extensions with similar functionality but fewer permissions or from more reputable developers.

Security Analysis

CRITICAL
Overall Risk
Based on 6 total findings, ranked without considering overall context, including 4 high-risk and 2 medium-risk findings.
HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webNavigation
This extension has the webNavigation permission. Can track your web navigation. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.