Netskope Extension Risk

Detail view · rubric v3.6
← Back to catalog

Super VPN — Быстрый прокси

mjaifaojoefepojcljhdhibkpklfnbgo
Risk Score
4.75
Risk Level: Medium
Recommendation: 🟡 MEDIUM RISK — review
Category VPN
Installs 50
Rating 5.0
Last updated 2026-06-15 (3 months ago)
Manifest version MV3
CSP present ❌ no
Developer imawocigi29@gmail.com
Verified publisher ❌ no
Featured by Google ❌ no
Privacy policy link
Web Store open ↗

Top Risks

  • Proxy permission allows full traffic interception/rerouting to unknown servers (app.myxavpn.pro, primeproxy.space).
  • Privacy policy is Google's generic policy — not scoped to this extension; admits data collection and third-party sharing (v3.5 rule D: +10.0).
  • Install hijack opens primeproxy.space on install; external hosts include Russian-domain infrastructure and Telegram.
  • Free-webmail dev (gmail), no developer name, no verified publisher — anonymous operator with HIGH-capability permission.
  • Geo-diversity: JS hosts in NL and RU; Russian-nexus VPN proxy with no accountable operator is a high-trust risk.

Evidence

  • install_url_hijack crx onInstalled opens https://primeproxy.space/ — third-party site opened on install.
  • external_js_hosts crx Extension contacts app.myxavpn.pro, primeproxy.space, t.me — unknown/Telegram endpoints.
  • privacy_policy_generic store Policy URL is Google's own account policy; scope_extension=false, data_collection=true, third_party_sharing=true.
  • anonymous_developer store developer_name empty, free-webmail gmail address, no verified publisher, no business website.
  • proxy_permission manifest proxy declared — can redirect all browser traffic; paired with unknown offshore endpoints.
  • small_install_high_perm api Only 50 installs but HIGH-tier permission (proxy); tail attack surface flagged.
  • host_geo_diversity crx JS hosts span NL and RU (2 countries); RU-nexus infrastructure for a proxy extension.
  • no_csp manifest content_security_policy is null; MV3 provides default but no explicit hardening declared.

Permissions Breakdown

  • proxy high Can reroute all browser traffic through arbitrary servers; high abuse potential for MITM.

Pillar Scores

Permissions2.00
Reputation8.50
Network4.00
Webstore6.00
Maintenance0.00
Privacy10.00
Code Quality0.00
CVE Exposure0.00

Bookkeeping

Rubric v3.6
Scored at 2026-09-02 14:17
Listing SHA 5e8f31027ce3…
Force block — not fired
Score recovered no
Elapsed