Netskope Extension Risk

Detail view · rubric v3.6
← Back to catalog

NoSearchBar

fjjlanpalmagenpageablaphkfcchado
Risk Score
2.83
Risk Level: Low
Recommendation: 🟢 LOW RISK — review
Category Other
Installs 142
Rating 2.3
Last updated 2026-08-03
Manifest version MV3
CSP present ✅ yes
Developer contact@ereinhardt.net
Verified publisher ❌ no
Featured by Google ✅ yes
Privacy policy link
Web Store open ↗

Top Risks

  • Default search engine overridden to ereinhardt.org, which is a domain the developer controls but ereinhardt.net does not resolve.
  • Content scripts injected on <all_urls> give the extension read/modify access to every page visited.
  • Privacy policy admits third-party data sharing but lacks retention details; hosted on GitHub rather than a verified domain.
  • Developer domain (ereinhardt.net) does not resolve, raising accountability concerns.
  • Low rating (2.3) and very low install count (142); is_featured_by_google partially offsets but does not eliminate risk.

Evidence

  • search_provider_override manifest chrome_settings_overrides sets default search to https://ereinhardt.org with keyword '*'.
  • content_scripts_all_urls manifest content_scripts_matches includes <all_urls>; no host_permissions declared separately.
  • developer_domain_not_resolving api threat_intel: ereinhardt.net resolves=false; accountability gap.
  • privacy_policy_third_party_sharing api privacy_policy_classification: scope_extension=true, data_collection=true, third_party_sharing=true, retention=false.
  • is_featured_by_google store Extension carries Google Featured badge, partially mitigating reputation risk.
  • low_rating store Rating 2.3; rating_count unknown; tiny install base (142).
  • no_bad_hosts_no_cves api cve_findings_raw empty; bad_host_hits empty; obfuscation_score 0.0; code_findings_raw empty.
  • recently_updated store months_since_update=0; maintenance pillar score 0.0 (no penalty).

Permissions Breakdown

  • content_scripts: <all_urls> high Script injected into every page; broad read/modify capability on all sites.
  • chrome_settings_overrides: search_provider (is_default=true) medium Overrides default search engine to ereinhardt.org; medium-risk search hijack surface.

Pillar Scores

Permissions4.00
Reputation5.00
Network2.00
Webstore4.00
Maintenance0.00
Privacy2.00
Code Quality0.00
CVE Exposure0.00

Bookkeeping

Rubric v3.6
Scored at 2026-08-31 10:25
Listing SHA 03619e489959…
Force block — not fired
Score recovered no
Elapsed