CRX aminer
Extension icon

CIBN Connect

Version 1.0.0.27 View in Chrome Web Store

Last scanned: about 2 hours ago

Extension Details

Rating: 5.0 ★ (4 ratings)
Users: 320

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors:

The extension has very limited trust indicators with only 320 users and 4 ratings, making it difficult to assess community trust. The perfect 5.0 rating could indicate either genuine satisfaction or insufficient sample size. The lack of clear developer information and company details raises transparency concerns. The extension appears to target professional networking and video conferencing platforms, suggesting a business-focused use case.

Concerns:

The extension requests excessive permissions that seem disproportionate to typical networking tools. The downloads permission is particularly concerning as it allows file downloads and access to download history without clear justification. Cookie access across multiple domains creates significant privacy risks, especially on professional platforms like LinkedIn. The broad host permissions spanning numerous video conferencing and networking sites (LinkedIn, Zoom, Google Meet, Remo) suggest extensive data collection capabilities. The scripting permission combined with content script injection across all these platforms could enable comprehensive user activity monitoring.

Recommendations:

Given the high-risk profile, consider running this extension in a separate Chrome profile dedicated to professional activities only. Before installation, verify the extension's legitimacy through official channels or your organization's IT department. Monitor your account activities on LinkedIn and other platforms for any unusual behavior after installation. Consider whether the extension's functionality justifies the extensive permissions requested. If possible, seek alternative tools with more limited permission requirements for your networking needs.

Findings

HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: cookies
This extension has the cookies permission. Can access and modify browser cookies. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: downloads
This extension has the downloads permission. Can download files and access download history. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Access to Sensitive Domains
This extension requests access to sensitive domains: *://*.linkedin.com/*, *://meet.google.com/*. Ensure you trust this extension with access to these sites.
MEDIUM
Medium-Risk Permission: notifications
This extension has the notifications permission. Can show notifications.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.