extension ExtPose

Extension Auditor Pro - Assess Risk & Improve Browser Security Posture

CRX id

blemhmgimpnomjfkjoinlclbmgoljddm-

Description from extension meta

Assess, and monitor browser extensions for security and privacy risks. Improve your Browser Security Posture and Stay Safe Oonline.

Image from store Extension Auditor Pro - Assess Risk & Improve Browser Security Posture
Description from store Extension Auditor – Audit, Assess, and Manage Your Browser Security Posture Overview Extension Auditor is a powerful all-in-one Chrome extension designed to help users manage, monitor, and secure their browser environment. It brings together three key features: Secure Extension Manager, Extension Activity Logs, and Privacy Settings Manager — all packaged into a single privacy-focused tool. ⸻ Extension Auditor App Perform comprehensive offline, on-device security analysis of installed browser extensions. • Permission Analysis: Understand the security implications of each permission requested. • Host Access Review: Detect extensions with overly broad host permissions, such as access to all websites (<all_urls>) or sensitive domains like banking portals or internal tools. • Content Script Inspection: Identify extensions injecting scripts into web pages, potentially impacting privacy and security. • Manifest Analysis: Review extension manifest configurations to assess compliance with best practices. • Dangerous Combinations Detection: Detect extensions that pose risks through combinations of permissions, host access, and content scripts. • Risk Dashboard: View a summary of all high-risk extensions and take action accordingly. • CRX/ZIP Archival: Automatically saves available CRX/ZIP packages for installed extensions. • Ideal for IT administrators, security professionals, and privacy-conscious users. ⸻ Extension Activity Logs App Gain full lifecycle visibility into browser extensions through real-time logging. • Tracks important events: • Installation and uninstallation • Enable and disable events • Version upgrades and downgrades • Permission changes during version updates • Sort logs by extension name, state, ID, and event type. • Export logs for auditing, incident response, or backup purposes. • Presented in a clean, tabular format optimized for quick analysis. ⸻ Privacy Settings Manager App Improve your browser security posture using a risk-based privacy score and configurable toggles. • Privacy Score: A snapshot of how secure your current browser settings are. • Quick Toggles: Control the most important browser privacy and tracking settings. • Manage the following privacy areas: • Block JavaScript, third-party cookies, and notification prompts • Disable referer headers, client hints, and predictive network behavior • Turn off autofill, omnibox suggestions, and spelling services • Block access to camera, microphone, and location • Disable images, custom fonts, and ad tracking • Strip tracking parameters from URLs • Auto-delete cookies on exit • Block pings, beacons, and CSP reports • Set Accept-Language header to en-US to minimize fingerprinting Optional permissions are requested only for the Privacy Settings Manager. Core functionality like Secure Extension Manager and Activity Logs work without additional permissions. ⸻ Privacy Commitment Your privacy is our priority. Review our transparent and regularly updated privacy policy here: https://www.extensionauditor.com/privacy ⸻ Latest Version: 6.3.3 - Key Updates Privacy Manager Enhancements • Granular controls for WebRTC, Safe Browsing, and other browser features • Three privacy profiles: Essential, Recommended, and Paranoia • Unified permission prompt system • Optional permissions integrated into cards with translucent state until granted • Reset option to revoke optional permissions and restore defaults • Improved privacy dashboard layout • Localization support across multiple languages Extension Auditor Improvements • Improved multi-factor permission risk scoring • Detection of dangerous permission combinations • Analysis for <all_urls> and broad host access • Aggregated host permissions into single-view rows • Achieved security audit score of 82/100 with fixes for XSS and DoS vulnerabilities • Resolved header count discrepancies • Added rules to block DoubleClick, Google Tag Manager, and Google Analytics • Enhanced tracking parameter removal via DNR • DNR rules for client hints and accept-language headers • Added ExportLogsAsCsvButton for better log export • Improved Sentry support in background scripts • Added strict Content Security Policy and sandboxing Table View Enhancements • Numbered rows for easy reference • Sortable by risk level and extension count • Permission totals shown in footer • Color-coded permission risks • Enhanced hover popovers • Extension count column added • Resizable columns and structured headers • Clickable links to Chrome extension documentation Navigation Updates • Avatar dropdown replaces logout button (Dashboard, Settings, Logout) • Added quick links to “Extension Logs” and “Privacy Manager” in extension popup Bug Fixes • Resolved memory leaks and added timeout cleanup • Null checks for Chrome APIs • Implemented rate limiting to prevent DoS • Sanitized output in charts to prevent XSS • Improved error handling and messaging Performance Optimizations • Implemented 5-minute TTL caching for extension list • Per-page code splitting for faster load times • Memoization of expensive operations in React • Added deduplication and startup event filtering ⸻ Previous Versions Version 6.1.1 • Introduced Extension Activity Logs with full lifecycle tracking • Added CRX/ZIP archival on install • Introduced browser Privacy Score with detailed toggles • Improved default settings for theme, view, and popup behavior • Enhanced popup screen with tabs for Logs and Privacy • One-click export of extensions and activity logs • Minor performance and cosmetic improvements Version 5.3.3 • Multi-language support added • Bug fixes for popup rendering • Performance improvements for faster load • Temporarily removed legacy activity log page (redesign in progress) ⸻

Latest reviews

  • (2025-01-19) Extra Virgi: Security of extensions does unfortunately not get enough attention. It is no easy task to determine whether an extension is safe or malicious. 5-star reviews are too often fake since Google does not verify them. Even fully functional extensions may quietly transmit user data without consent. Extension Auditor provides a detailed overview of the permissions requested by each extension, prioritizing them based on their level of invasiveness. It allows me to focus on the most invasive extensions first and helps me answer the question "Is the potential risk posed by this extension worth its functionality?" P.S. I love the update that it now also shows the permissions per extension as a table in addition to the grid overview + CSV download. When you have more than 100 extensions it makes it so much easier on the eyes. Feature requests: 1. Filter between manifest 2 and manifest 3 extensions 2. Include a table showing all recently updated extensions, along with an indicator of whether their required permissions have changed Keep up the great work!
  • (2025-01-09) Ruchika Batra: Very useful plugin, I am able to see all my extensions and their permissions. Helps me make informed decision! Thank you

Statistics

Installs
349 history
Category
Rating
5.0 (3 votes)
Last update / version
2025-06-19 / 6.3.12
Listing languages

Links