CRX aminer
Extension icon

Netflix Double Subtitles

Version 1.5 View in Chrome Web Store

Last scanned: 1 day ago | force re-scan

Extension Details

Rating: 3.7 ★ (30 ratings)
Users: 531

Context-Aware Verdict

HIGH
Risk Level
Trust Factors:

The extension has a relatively small user base of 531 users and a moderate rating of 3.7 stars from 30 reviews, which suggests limited community validation. The lack of clear developer information raises transparency concerns. However, the specific focus on Netflix subtitle functionality aligns with its stated purpose.

Concerns:

The extension requests overly broad permissions that far exceed what's necessary for Netflix subtitle enhancement. The wildcard host permission (*://*/*) grants access to all websites, not just Netflix, creating significant privacy and security risks. The tabs permission allows manipulation of browser tabs beyond what subtitle functionality requires. Access to Google Translate API suggests translation features, but the broad permissions could enable data harvesting from any website you visit.

The combination of broad host permissions with tabs access creates potential for cross-site data collection, browsing behavior tracking, and unauthorized access to sensitive information on banking, email, and other personal websites.

Recommendations:

Consider running this extension in a separate Chrome profile dedicated to Netflix viewing only. Before installation, verify if Netflix's built-in subtitle features meet your needs. If you proceed, regularly review the extension's behavior and consider alternatives with more restrictive permissions. Monitor your browsing activity for any unusual behavior and remove the extension immediately if you notice suspicious activity across non-Netflix websites.

Security Analysis

HIGH
Overall Risk
Based on 4 total findings, ranked without considering overall context, including 2 high-risk and 2 medium-risk findings.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Access to Sensitive Domains
This extension requests access to sensitive domains: https://translate.googleapis.com/*. Ensure you trust this extension with access to these sites.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.