CRX aminer
Extension icon

Sendspark Video and Screen Recorder

Version 2.2.7 View in Chrome Web Store

Last scanned: 3 days ago | force re-scan

Extension Details

Developer: sendspark.com
Rating: 4.9 ★ (775 ratings)
Users: 10,000

Context-Aware Verdict

CRITICAL
Overall Risk
Trust Factors:

The extension has a strong user rating of 4.9/5 from 775 reviews and serves 10,000 users, indicating generally positive user experiences. The developer sendspark.com appears to be a legitimate company offering video communication services. The extension's core functionality as a video and screen recorder aligns with its stated purpose.

Concerns:

The extension exhibits several concerning security patterns. The broad host permissions (*://*/*) combined with content script injection capabilities create significant privacy risks, allowing access to all websites and potential data harvesting. The cookies and tabs permissions enable tracking across sites and session hijacking. The unsafe WebAssembly execution policy ('wasm-unsafe-eval') is particularly troubling as it can hide malicious code execution. While the extension targets specific business platforms (Gmail, LinkedIn, HubSpot, etc.), the overly broad permissions exceed what's necessary for screen recording functionality. The file:/// access could potentially read local files.

Recommendations:

Given the critical risk level, run this extension in a separate Chrome profile dedicated to video recording tasks only. Avoid using it while accessing sensitive accounts or personal information. Consider alternative screen recording tools with more restrictive permissions. If you must use this extension, regularly audit your browser data and consider clearing cookies frequently. Monitor for unusual browser behavior or performance issues that might indicate WebAssembly exploitation.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: cookies
This extension has the cookies permission. Can access and modify browser cookies. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
HIGH
Unsafe WebAssembly Execution
This extension's Content Security Policy allows 'wasm-unsafe-eval', which permits potentially dangerous WebAssembly code execution. This could be used to hide malicious code or perform CPU-intensive operations.
MEDIUM
Access to Sensitive Domains
This extension requests access to sensitive domains: https://mail.google.com/. Ensure you trust this extension with access to these sites.
MEDIUM
Medium-Risk Permission: notifications
This extension has the notifications permission. Can show notifications.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.