CRX aminer
Extension icon

Gmail Theme Sync & Control

Version 1.1.1 View in Chrome Web Store

Last scanned: 2 days ago | force re-scan

Extension Details

Rating: 5.0 ★ (1 rating)
Size: 22.03KiB
Last Updated: May 14, 2025
Users: 3

Context-Aware Verdict

HIGH
Risk Level
Trust Factors:
- The extension has a low number of users (3), which raises concerns about its trustworthiness and popularity.
- The lack of developer information and a detailed description makes it difficult to assess the extension's legitimacy and purpose.
Concerns:
- The extension requests broad host permissions, allowing it to access many or all websites, which could potentially be used to steal sensitive data or track browsing activity.
- The extension has access to the sensitive domain mail.google.com, which handles personal email communications, raising privacy concerns.
- The "activeTab" permission allows the extension to access the active tab when clicked, which could be exploited for malicious purposes.
- The "storage" permission enables the extension to store data locally, which could be misused to store sensitive information without the user's knowledge.
Recommendations:
- Exercise caution when installing this extension due to the high-risk level and lack of transparency regarding its purpose and developer.
- Consider running the extension in a separate Chrome profile or a sandboxed environment to isolate potential risks.
- Regularly review the extension's permissions and activity to ensure it is not engaging in any unauthorized or suspicious behavior.
- If possible, seek alternative extensions from reputable developers with a clear purpose and a large user base for added security.

Security Analysis

MEDIUM
Overall Risk
Based on 4 total findings, ranked without considering overall context, including 1 high-risk and 3 medium-risk findings.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
MEDIUM
Access to Sensitive Domains
This extension requests access to sensitive domains: https://mail.google.com/*. Ensure you trust this extension with access to these sites.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.