CRX aminer
Extension icon

Smokeball-Staging

Version 2.0.3 View in Chrome Web Store

Last scanned: about 18 hours ago

Extension Details

Rating: 4.2 ★
Users: 2,000

Context-Aware Verdict

CRITICAL
Overall Risk
Trust Factors:

The extension has a modest user base of 2,000 users and a decent rating of 4.2, which provides some community validation. However, the "Staging" designation in the name suggests this may be a development or testing version rather than a production release, which raises concerns about stability and security practices. The lack of clear developer information and missing details about the company behind it significantly undermines trust.

Concerns:

The extension requests extremely broad permissions that are disproportionate for most legitimate use cases. The combination of universal host permissions (*://*/*) with content script injection across all URLs creates a dangerous attack surface. The webRequest permission allows complete interception and modification of web traffic, while downloads permission could facilitate malware distribution. The nativeMessaging permission enables communication with local applications, potentially bypassing browser security boundaries. These permissions collectively grant the extension unprecedented access to user data, browsing activity, and system resources.

Recommendations:

Given the critical risk level, avoid installing this extension unless absolutely necessary for business purposes. If required, run it in a completely isolated Chrome profile with no access to personal accounts or sensitive data. Regularly audit what data the extension might be accessing and consider network monitoring to detect unusual traffic patterns. Contact the developer for clarification on why such broad permissions are necessary and request a detailed privacy policy explaining data handling practices.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: downloads
This extension has the downloads permission. Can download files and access download history. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webRequest
This extension has the webRequest permission. Can intercept and modify web requests. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.