CRX aminer
Extension icon

YouTube to NotebookLM

Version 1.0.25 View in Chrome Web Store

Last scanned: about 3 hours ago

Extension Details

Rating: 4.9 ★ (372 ratings)
Users: 100,000

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors:

The extension has strong user adoption with 100,000 users and an excellent 4.9-star rating from 372 reviews, suggesting legitimate functionality and user satisfaction. The specific focus on YouTube to NotebookLM integration indicates a clear, defined purpose that users find valuable.

Concerns:

The extension requests extremely broad permissions that far exceed what's necessary for YouTube-to-NotebookLM functionality. The <all_urls> host permission and universal content script injection (*://*/*) allow access to every website you visit, not just YouTube. This creates significant privacy and security risks, as the extension can read sensitive data from banking sites, email, social media, and any other web content. The tabs permission enables monitoring of your browsing activity across all websites. While storage permissions are reasonable for saving content, the unlimited storage capability could be excessive.

Recommendations:

Despite the high user rating, the overly broad permissions present substantial privacy risks. Consider running this extension in a separate Chrome profile dedicated only to YouTube and NotebookLM activities to limit exposure. Alternatively, look for similar extensions with more restrictive permissions that only access YouTube domains. If you must use this extension in your main profile, regularly review what data it might be collecting and consider the trade-off between convenience and privacy protection.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: contextMenus
This extension has the contextMenus permission. Can add items to the context menu.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.
MEDIUM
Medium-Risk Permission: unlimitedStorage
This extension has the unlimitedStorage permission. Can store unlimited data locally.