Removed from Marketplace
Flags items that have been removed or delisted from the marketplace, potentially due to security vulnerabilities, or malicious behavior. Such extensions pose a risk as they are no longer maintained or patched.
Flags items that have been removed or delisted from the marketplace, potentially due to security vulnerabilities, or malicious behavior. Such extensions pose a risk as they are no longer maintained or patched.
Flags items that exhibit deceptive or intentionally misleading behavior, including impersonation of legitimate software, false claims about functionality, or use of fake publisher identities. These items are often designed to trick users into installation, collect sensitive information under false pretenses, or distribute malicious payloads. Fraudulent items pose significant risks to security, privacy, and trust in the ecosystem.
Flags items that declare overly broad host access patterns, enabling interaction with all websites. This level of access can be exploited to inject scripts into trusted sites and increases the risk of sensitive data exposure, cross-site surveillance, and credential harvesting.
AI-powered analysis of the extension's source code for security insights and risk assessment.
The SaveFrom.net Helper extension is designed to add download functionality to popular video and audio sites (YouTube, Facebook, VK, Instagram, TikTok, etc.). Its codebase is large and modular, focusing on extracting direct media links and providing UI elements for downloads.
Purpose and Intention
API Calls and Network Activity
chrome.runtime.sendMessage and chrome.storage.local for extension communication and settings.fetch or XHR to the target sites (e.g., YouTube, Facebook, Instagram, VK, OK.ru, Twitter, SoundCloud, etc.).Filesystem and Process Execution
Obfuscation and Code Structure
Potentially Sensitive Behaviors
Summary
API calls detected through static analysis of the source code. For more accurate insights, explore our sandbox dynamic analysis.
Any encoded/decoded secrets we managed to find in the source code, git repository, or related files
Known vulnerabilities and security issues detected in the extension's dependencies and code.
Any identifiers we detected that may indicate external communication from the item's code
Dependencies and third-party libraries used by the extension, including version information and license details.
Compliance status and certifications for the extension and its publisher