CRX aminer
Extension icon

Link Grabber

Version 1.0.0 View in Chrome Web Store

Last scanned: about 3 hours ago

Extension Details

Rating: 5.0 ★ (15 ratings)
Users: 2,000

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors: The extension has concerning trust indicators with only 2,000 users and just 15 ratings, suggesting limited adoption and verification. While the 5.0 rating appears positive, the small sample size makes this less reliable. The lack of developer information and missing last updated date raises additional transparency concerns. The extension's name "Link Grabber" aligns with its likely functionality, but the broad permissions suggest capabilities beyond simple link extraction.
Concerns: The extension requests excessive permissions for what should be a straightforward link extraction tool. The clipboardWrite permission allows modification of clipboard content, which could be exploited to inject malicious data. The downloads permission enables file downloads and access to download history, creating potential privacy risks. Most concerning are the broad host permissions (https://*/*, http://*/*) that grant access to all websites, far exceeding what's necessary for link grabbing functionality. The combination of clipboard access, download capabilities, and universal website access creates significant potential for data exfiltration or malicious activity.
Recommendations: Consider running this extension in a separate Chrome profile to isolate potential risks. Look for alternative link grabbing extensions with more restrictive permissions and better developer transparency. If you must use this extension, monitor your clipboard content and download activity closely. Regularly review the extension's behavior and remove it if you notice any suspicious activity. Consider whether the functionality truly requires such broad permissions or if a simpler bookmarklet solution might suffice.

Findings

HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: clipboardWrite
This extension has the clipboardWrite permission. Can modify clipboard content. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: downloads
This extension has the downloads permission. Can download files and access download history. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: contextMenus
This extension has the contextMenus permission. Can add items to the context menu.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.