CRX aminer
Extension icon

Code Coverage Calculator

Version 0.8.9 View in Chrome Web Store

Last scanned: about 4 hours ago

Extension Details

Rating: 4.5 ★ (13 ratings)
Users: 2,000

Context-Aware Verdict

MEDIUM
Overall Risk
Trust Factors:

The extension has a solid 4.5-star rating from 13 reviews and serves 2,000 users, indicating reasonable user satisfaction. However, the lack of visible author and developer information raises transparency concerns. The specific focus on Salesforce platforms suggests legitimate business use, as code coverage calculation is a standard development practice in Salesforce environments.

Concerns:

The extension targets Salesforce domains exclusively, which could access sensitive business data and proprietary code. While the storage permission is necessary for functionality, it allows data persistence that could potentially retain sensitive information. The use of Manifest V2 presents security limitations compared to the more restrictive V3 standard. The missing developer information makes it difficult to verify the extension's legitimacy and accountability.

Recommendations:

Consider running this extension in a separate Chrome profile dedicated to Salesforce development work to isolate potential risks from your main browsing environment. Verify the extension's legitimacy through your organization's IT security team before use, especially given the access to Salesforce environments. Monitor what data the extension stores locally and consider regular cleanup. Look for alternative extensions that use Manifest V3 and provide clearer developer identification. If this extension is critical for your workflow, ensure your Salesforce environment has appropriate access controls and monitoring in place.

Findings

MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.
MEDIUM
Older Manifest Version
This extension uses Manifest Version 2, which has fewer security restrictions than Manifest V3. Consider using extensions that have upgraded to V3.