Netskope Extension Risk

Detail view · rubric v3.6
← Back to catalog

UltraWide Streaming: custom ratios [QVI]

ofkcbakkpjefjndcmbkokadbmmaimnlp
Risk Score
2.42
Risk Level: Low
Recommendation: 🟢 LOW RISK — review
Category Entertainment
Installs 20,000
Rating 4.2
Last updated 2026-07-16 (1 months ago)
Manifest version MV3
CSP present ❌ no
Developer primepartyapp@gmail.com
Verified publisher ❌ no
Featured by Google ✅ yes
Privacy policy link
Web Store open ↗

Top Risks

  • Free-webmail developer email (primepartyapp@gmail.com); no verified publisher; low accountability.
  • Content scripts injected across 14 major streaming platforms; broad reach if extension is ever compromised.
  • js_external_hosts includes me3x.online — unknown domain with no clear stated purpose.
  • Privacy policy discloses third-party data sharing; extension-scoped but sharing partners not named.
  • No explicit CSP; MV3 defaults apply but external host list warrants ongoing review.

Evidence

  • free_webmail_dev store Developer email primepartyapp@gmail.com is free webmail; no verified publisher badge.
  • is_featured_by_google store Extension carries Google Featured badge, reducing reputation risk.
  • host_permissions_streaming_scoped manifest 14 streaming-platform host permissions align with ultrawide ratio adjustment use case.
  • external_host_me3x_online crx js_external_hosts includes me3x.online — unrecognized domain; other hosts are known reference sites.
  • privacy_policy_third_party_sharing api Privacy policy fetched, scoped to extension, discloses data collection and third-party sharing with retention.
  • no_cve_findings crx cve_findings_raw is empty; no vulnerable bundled libraries detected.
  • no_code_findings crx code_findings_raw empty, obfuscation_score 0.0; 26 JS files scanned with no malicious signals.
  • recently_updated store Last updated July 16, 2026 (1 month ago); active maintenance.

Permissions Breakdown

  • alarms low Schedules periodic tasks; no data access risk on its own.
  • storage low Stores user preferences locally; low sensitivity.
  • host_permissions: *://*.netflix.com/* + 13 others (major streaming domains) medium Content script access to 14 major streaming sites; scoped to stated function (video ratio adjustment).

Pillar Scores

Permissions3.30
Reputation5.50
Network0.00
Webstore1.00
Maintenance0.00
Privacy1.00
Code Quality0.00
CVE Exposure0.00

Bookkeeping

Rubric v3.6
Scored at 2026-08-31 13:29
Listing SHA 693497eeff32…
Force block — not fired
Score recovered no
Elapsed