(G)I-DLE (아이들) Wallpaper
kaopjlkcgndoefgnnljiindkfkefflje
Risk Score
5.54
Risk Level:
Medium
Recommendation:
🟡 MEDIUM RISK — review
Top Risks
- Uninstall URL hijack to owhit.com and install URL hijack — classic monetization shell pattern (+3.0+2.0 Webstore).
- NewTab override replaces every new tab; combined with 'search' permission enables search-monetization.
- Privacy policy is Google's own generic policy — not scoped to this extension; admits data collection and third-party sharing (+10.0 Privacy).
- Free-webmail dev (gmail) with no verified publisher, no business website, no ratings — unaccountable operator.
- JS contacts owhit.com, social media, and chatgpt.com externally despite being a wallpaper extension — unexplained reach.
Evidence
- uninstall_url_hijack crx chrome.runtime.setUninstallURL → https://owhit.com/uninstall; 3rd-party redirect on uninstall.
- install_url_hijack crx onInstalled opens https://owhit.com/g-i-dle-wallpaper; 3rd-party URL on install.
- newtab_override manifest chrome_url_overrides.newtab = index.html; every new tab served by extension.
- generic_privacy_policy store Policy URL is myaccount.google.com/privacypolicy — Google's own policy, not scoped to this extension.
- free_webmail_dev store Developer email evrenturhane3@gmail.com; no verified publisher, no business domain.
- js_external_hosts crx Extension JS references owhit.com, chatgpt.com, instagram.com, x.com, youtube.com — unexplained for wallpaper.
- csp_absent manifest content_security_policy is null (MV3 default applies, no explicit CSP hardening).
- new_tab_monetization_shape store NewTab + search override + install/uninstall hijack to owhit.com = textbook monetization shell pattern.
Permissions Breakdown
- search medium Allows search provider interaction; paired with newtab override raises monetization risk.
- chrome_url_overrides.newtab high Replaces every new tab — high-reach surface for ad injection and search redirect.
Pillar Scores
Permissions4.00
Reputation7.50
Network4.00
Webstore9.00
Maintenance0.00
Privacy10.00
Code Quality0.00
CVE Exposure0.00
Bookkeeping
Rubric v3.6
Scored at 2026-08-31 15:37
Listing SHA
2ffeee208ab0…
Force block
— not fired
Score recovered
no
Elapsed
—