CRX aminer
Extension icon

Markdown Linker

Version 0.3.1 View in Chrome Web Store

Last scanned: about 16 hours ago

Extension Details

Rating: 2.7 ★ (7 ratings)
Users: 317

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors: The extension has very limited adoption with only 317 users and a concerning low rating of 2.7 out of 5 stars from just 7 reviews, suggesting user dissatisfaction or potential issues. The lack of developer information and company details raises transparency concerns. The extension appears to be designed for creating markdown links, which is a legitimate use case.
Concerns: The extension requests clipboardWrite permission which allows it to modify clipboard content - this could be exploited to inject malicious content that users might unknowingly paste elsewhere. The broad content script injection across all URLs means the extension can access and potentially modify any website you visit, including sensitive sites like banking or email platforms. This level of access is excessive for a simple markdown linking tool. The activeTab permission, while common, combined with the other permissions creates a concerning permission profile.
Recommendations: Given the high risk level, consider running this extension in a separate Chrome profile isolated from your main browsing activities. Before installing, verify the extension actually provides the markdown linking functionality as described. Monitor your clipboard content after using the extension to ensure no unexpected modifications occur. Consider alternative markdown tools that don't require such broad permissions, or use manual methods for creating markdown links until a more trustworthy solution is available.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
High-Risk Permission: clipboardWrite
This extension has the clipboardWrite permission. Can modify clipboard content. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: contextMenus
This extension has the contextMenus permission. Can add items to the context menu.