Netskope Extension Risk

Detail view · rubric v3.6
← Back to catalog

NoteGPT: YouTube Summary, Chat with AI Assistant, ChatGPT DeepSeek Claude

baecjmoceaobpnffgnlkloccenkoibbb
Risk Score
2.82
Risk Level: Low
Recommendation: 🟢 LOW RISK — review
Category AI
Installs 400,000
Rating 4.9
Last updated 2026-07-16
Manifest version MV3
CSP present ✅ yes
Developer support@notegpt.io
Verified publisher ✅ yes
Featured by Google ✅ yes
Privacy policy link
Web Store open ↗

Top Risks

  • Brand impersonation: title references ChatGPT, DeepSeek, Claude — developer not confirmed owner of those brands.
  • Privacy policy discloses data collection and third-party sharing but omits data retention period.
  • webRequest permission on YouTube can observe all requests on that domain including auth tokens.
  • Uninstall and install URL hijack flags set — destination targets null but signal warrants review.
  • AI extension processes YouTube page content and sends to external AI APIs; data-exfil surface exists.

Evidence

  • brand_impersonation store Title mentions ChatGPT, DeepSeek, Claude; confirmed_owner=false, is_impersonation=true per brand_mention.
  • verified_publisher_featured store Extension has verified_publisher=true and is_featured_by_google=true; strong trust signals.
  • privacy_policy_third_party_sharing api Policy scope_extension=true, data_collection=true, third_party_sharing=true, retention=false.
  • uninstall_install_url_hijack crx uninstall_url_hijack=true, install_url_hijack=true; targets null — cannot confirm benign destination.
  • webRequest_high_permission manifest webRequest declared; scoped to youtube.com and openai.com host_permissions only.
  • ai_extension_page_content store AI extension with content_scripts on youtube.com; page content processed and sent to AI APIs.
  • no_code_findings_no_cves crx code_findings_raw empty, obfuscation_score=0.0, cve_findings_raw empty; clean scan.
  • no_bad_host_monetization api threat_intel bad_host_hits, monetization_hits, affiliate_hits all empty; domain resolves, not throwaway.

Permissions Breakdown

  • storage low Stores user notes/preferences locally; expected for AI note-taking app.
  • webRequest high Can observe all network requests on declared hosts; elevated risk even with narrow host scope.
  • identity low OAuth token access; low risk without broad scopes declared.
  • https://*.youtube.com/* medium Host access to YouTube; matches stated function of summarizing YouTube videos.
  • https://*.openai.com/* medium Host access to OpenAI API; required for AI chat feature.
  • https://notegpt.io/* low Access to own backend; expected for sync/auth.

Pillar Scores

Permissions3.20
Reputation3.00
Network2.00
Webstore5.00
Maintenance0.00
Privacy2.00
Code Quality0.00
CVE Exposure0.00

Bookkeeping

Rubric v3.6
Scored at 2026-07-16 14:56
Listing SHA 82f4a1c78bbf…
Force block — not fired
Score recovered no
Elapsed