Netskope Extension Risk

Detail view · rubric v3.6
← Back to catalog

AI Sidebar - Chat with Claude, Deepseek, Gemini, Grok

kgenlgjkglpmbiocphbgnmknalmfacei
Risk Score
4.25
Risk Level: Medium
Recommendation: 🟡 MEDIUM RISK — review
Category AI
Installs 10,000
Rating 4.7
Last updated 2026-06-10 (2 months ago)
Manifest version MV3
CSP present ✅ yes
Developer support@gptsidebar.com
Verified publisher ❌ no
Featured by Google ❌ no
Privacy policy link
Web Store open ↗

Top Risks

  • Brand impersonation: extension names Claude, Deepseek, Gemini but developer is unverified gptsidebar.com.
  • Content scripts injected on <all_urls> + mail.google.com — reads all page content including emails.
  • Uninstall and install URL hijacks redirect users to third-party pages.
  • Privacy policy discloses third-party data sharing with no retention period specified.
  • CSP allows connect-src to cdn.jsdelivr.net and lumerexa.com (unknown third party).

Evidence

  • brand_impersonation store Title references Claude, Deepseek, Gemini — developer not verified as any of these orgs.
  • uninstall_url_hijack crx chrome.runtime.setUninstallURL() set; install_url_hijack to https://gptsidebar.com/welcome.
  • content_scripts_broad manifest Content scripts match <all_urls> + mail.google.com — reads all page content.
  • no_developer_name store developer_name field is empty; reduces accountability.
  • third_party_data_sharing api Privacy policy: third_party_sharing=true, retention=false — inadequate data governance.
  • external_host_lumerexa crx lumerexa.com in js_external_hosts and CSP connect-src; unrecognized third party.
  • geo_diversity crx JS hosts span 4 countries (AU, CA, TR, US) — elevated exfil surface for AI extension.
  • function_constructor crx new Function() in tesseract/worker.min.js — code-quality concern for dynamic execution.

Permissions Breakdown

  • sidePanel low UI panel only; low standalone risk.
  • <all_urls> (host_permissions) high Grants content-script and fetch access to every site the user visits.
  • content_scripts <all_urls> high JS injected into every page — reads/modifies all page content including credentials.

Pillar Scores

Permissions6.50
Reputation7.00
Network4.50
Webstore7.50
Maintenance0.00
Privacy2.00
Code Quality4.00
CVE Exposure0.00

Bookkeeping

Rubric v3.6
Scored at 2026-08-28 14:52
Listing SHA ad8253aee327…
Force block — not fired
Score recovered no
Elapsed