CRX aminer
Extension icon

Platstack: The Save button for the internet

Version 4.5.7 View in Chrome Web Store

Last scanned: about 7 hours ago

Extension Details

Developer: Platstack, LLC
Rating: 5.0 ★ (14 ratings)
Users: 2,000

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors:

The extension has a perfect 5.0 rating but with only 14 reviews, which is a very small sample size. With just 2,000 users, this is a relatively unknown extension. The developer is listed as "Platstack, LLC" which suggests a business entity, though no additional developer information is provided. The extension appears to be a bookmarking/saving tool based on its name and description.

Concerns:

The extension requests extremely broad permissions that seem excessive for a simple "save button" functionality. The combination of tabs permission, universal host permissions, and content script injection across all websites creates a powerful surveillance capability. These permissions would allow the extension to monitor all browsing activity, access sensitive data on banking sites, read private communications, and potentially steal credentials from any website visited. For a bookmarking tool, such extensive access is unnecessary and concerning.

Recommendations:

Given the high-risk permissions and limited user base, consider running this extension in a separate Chrome profile if you must use it. This isolates it from your main browsing data and other extensions. Alternatively, look for established bookmarking alternatives like Pocket, Raindrop.io, or built-in browser bookmarking features that don't require such invasive permissions. Before installing, carefully evaluate whether the functionality truly requires access to all websites, as legitimate bookmarking tools typically only need permission when explicitly saving content.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: contextMenus
This extension has the contextMenus permission. Can add items to the context menu.