Clipboard Shield icon

Clipboard Shield

Extension Actions

How to install Open in Chrome Web Store
CRX ID
fhejbelckfffeclgnaoajanoamgpofen
Status
  • Live on Store
Description from extension meta

Take Control of Your Clipboard Security. Malicious campaigns like ClickFix and FakeCaptcha use advanced "Pastejacking" techniques…

Image from store
Clipboard Shield
Description from store

Take Control of Your Clipboard Security.

Malicious campaigns like ClickFix and FakeCaptcha use advanced "Pastejacking" techniques to trick users into executing dangerous code. By injecting malicious commands into your clipboard, these scripts can compromise your system the moment you paste.

Clipboard Shield acts as a powerful firewall for your clipboard, intercepting unauthorized script attempts and ensuring you are always in control of what gets copied.

###Key Features:

Real-Time Interception: Automatically detects and pauses any script-initiated attempt to modify your clipboard.

Threat Defense: Specifically designed to recognize patterns used by ClickFix, FakeCaptcha, and other automated malware delivery systems.

Secure Confirmation: Uses a sandboxed Shadow DOM interface to ask for your permission before a copy event is finalized.

Whitelisting: Save your preferences for trusted sites so your workflow remains uninterrupted on official pages.

Privacy-First Telemetry: Log blocked attacks locally or send them to your private security dashboard for further analysis.

### Why You Need This: Standard browsers allow websites to modify your clipboard with very little oversight. Malware sites exploit this by placing PowerShell scripts or malicious URLs into your clipboard when you click "Fix" or "Verify." Clipboard Shield breaks this chain of attack by requiring human approval for every script-based clipboard action.

### Privacy & Security:

No Background Monitoring: We only activate when a script tries to touch your clipboard.

Local Storage: Your whitelist and history are stored securely on your device.

Transparency: No data is sent to external servers without your explicit "Approve & Send" click.