CRX aminer
Extension icon

SalesHood

Version 1.2.18 View in Chrome Web Store

Last scanned: about 3 hours ago

Extension Details

Rating: 4.2 ★ (4 ratings)
Users: 4,000

Context-Aware Verdict

HIGH
Overall Risk
Trust Factors:

The extension has a relatively small user base of 4,000 users and only 4 ratings, which limits confidence in its widespread adoption and community vetting. The 4.2-star rating is positive but based on very few reviews. The lack of clear developer information and company details raises transparency concerns. SalesHood appears to be a sales training/enablement platform, which would legitimately need some web access for its functionality.

Concerns:

The extension requests extremely broad permissions that far exceed what would typically be necessary for a sales training tool. The universal host permissions (*://*/*) allow access to every website you visit, creating significant privacy risks. The tabs permission enables monitoring and manipulation of all browser tabs. The broad content script injection capability means this extension can read and modify content on any website, potentially capturing sensitive information like login credentials, financial data, or personal information. The combination of these permissions creates a powerful surveillance and data collection capability.

Recommendations:

Given the high-risk profile, consider running this extension in a separate Chrome profile dedicated solely to sales-related activities. Before installation, contact SalesHood directly to understand why such broad permissions are necessary for their service. Monitor your browsing behavior and be cautious about visiting sensitive websites while this extension is active. Consider whether the sales training benefits justify the significant privacy trade-offs, and explore alternative solutions with more limited permission requirements.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.