CRX aminer
Extension icon

Chessvision.ai Chess Position Scanner

Version 3.8.1 View in Chrome Web Store

Last scanned: about 16 hours ago

Extension Details

Developer: SOFTWARE PAWEŁ KACPRZAK
Rating: 4.6 ★ (734 ratings)
Users: 100,000

Context-Aware Verdict

MEDIUM
Overall Risk
Trust Factors:

The extension has strong trust indicators with 100,000 users and a high 4.6-star rating from 734 reviews, suggesting genuine user satisfaction. The specific chess-focused functionality aligns well with its name and description. The developer appears to be an individual (Paweł Kacprzak) rather than a large company, which is common for specialized tools.

Concerns:

The primary concern is the broad host permissions (*://app.chessvision.ai/*), though this appears to be limited to the developer's own domain rather than all websites. The activeTab permission allows access to whatever page you're viewing when you click the extension, which could potentially access sensitive information on any website. The storage permission, while necessary for the extension's functionality, means it can store data locally on your device.

The security analysis flagged these permissions as potentially risky, but given the chess-specific nature of the extension, these permissions seem reasonably justified for scanning chess positions on various chess websites.

Recommendations:

Consider using this extension in a separate Chrome profile if you frequently visit sensitive websites while playing chess online. Only activate the extension when you specifically need to scan chess positions. Review what data the extension stores locally through Chrome's extension settings. The extension appears legitimate for its intended purpose, but exercise normal caution when granting permissions to any browser extension.

Findings

HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.