Description
Extension Auditor – Audit, Assess, and Manage Your Browser Security Posture
Overview
Extension Auditor is a powerful all-in-one Chrome extension designed to help users manage, monitor, and secure their browser environment. It brings together three key features: Secure Extension Manager, Extension Activity Logs, and Privacy Settings Manager — all packaged into a single privacy-focused tool.
⸻
Extension Auditor App
Perform comprehensive offline, on-device security analysis of installed browser extensions.
• Permission Analysis: Understand the security implications of each permission requested.
• Host Access Review: Detect extensions with overly broad host permissions, such as access to all websites (<all_urls>) or sensitive domains like banking portals or internal tools.
• Content Script Inspection: Identify extensions injecting scripts into web pages, potentially impacting privacy and security.
• Manifest Analysis: Review extension manifest configurations to assess compliance with best practices.
• Dangerous Combinations Detection: Detect extensions that pose risks through combinations of permissions, host access, and content scripts.
• Risk Dashboard: View a summary of all high-risk extensions and take action accordingly.
• CRX/ZIP Archival: Automatically saves available CRX/ZIP packages for installed extensions.
• Ideal for IT administrators, security professionals, and privacy-conscious users.
⸻
Extension Activity Logs App
Gain full lifecycle visibility into browser extensions through real-time logging.
• Tracks important events:
• Installation and uninstallation
• Enable and disable events
• Version upgrades and downgrades
• Permission changes during version updates
• Sort logs by extension name, state, ID, and event type.
• Export logs for auditing, incident response, or backup purposes.
• Presented in a clean, tabular format optimized for quick analysis.
⸻
Privacy Settings Manager App
Improve your browser security posture using a risk-based privacy score and configurable toggles.
• Privacy Score: A snapshot of how secure your current browser settings are.
• Quick Toggles: Control the most important browser privacy and tracking settings.
• Manage the following privacy areas:
• Block JavaScript, third-party cookies, and notification prompts
• Disable referer headers, client hints, and predictive network behavior
• Turn off autofill, omnibox suggestions, and spelling services
• Block access to camera, microphone, and location
• Disable images, custom fonts, and ad tracking
• Strip tracking parameters from URLs
• Auto-delete cookies on exit
• Block pings, beacons, and CSP reports
• Set Accept-Language header to en-US to minimize fingerprinting
Optional permissions are requested only for the Privacy Settings Manager. Core functionality like Secure Extension Manager and Activity Logs work without additional permissions.
⸻
Privacy Commitment
Your privacy is our priority. Review our transparent and regularly updated privacy policy here:
https://www.extensionauditor.com/privacy
⸻
Latest Version: 6.3.3 - Key Updates
Privacy Manager Enhancements
• Granular controls for WebRTC, Safe Browsing, and other browser features
• Three privacy profiles: Essential, Recommended, and Paranoia
• Unified permission prompt system
• Optional permissions integrated into cards with translucent state until granted
• Reset option to revoke optional permissions and restore defaults
• Improved privacy dashboard layout
• Localization support across multiple languages
Extension Auditor Improvements
• Improved multi-factor permission risk scoring
• Detection of dangerous permission combinations
• Analysis for <all_urls> and broad host access
• Aggregated host permissions into single-view rows
• Achieved security audit score of 82/100 with fixes for XSS and DoS vulnerabilities
• Resolved header count discrepancies
• Added rules to block DoubleClick, Google Tag Manager, and Google Analytics
• Enhanced tracking parameter removal via DNR
• DNR rules for client hints and accept-language headers
• Added ExportLogsAsCsvButton for better log export
• Improved Sentry support in background scripts
• Added strict Content Security Policy and sandboxing
Table View Enhancements
• Numbered rows for easy reference
• Sortable by risk level and extension count
• Permission totals shown in footer
• Color-coded permission risks
• Enhanced hover popovers
• Extension count column added
• Resizable columns and structured headers
• Clickable links to Chrome extension documentation
Navigation Updates
• Avatar dropdown replaces logout button (Dashboard, Settings, Logout)
• Added quick links to “Extension Logs” and “Privacy Manager” in extension popup
Bug Fixes
• Resolved memory leaks and added timeout cleanup
• Null checks for Chrome APIs
• Implemented rate limiting to prevent DoS
• Sanitized output in charts to prevent XSS
• Improved error handling and messaging
Performance Optimizations
• Implemented 5-minute TTL caching for extension list
• Per-page code splitting for faster load times
• Memoization of expensive operations in React
• Added deduplication and startup event filtering
⸻
Previous Versions
Version 6.1.1
• Introduced Extension Activity Logs with full lifecycle tracking
• Added CRX/ZIP archival on install
• Introduced browser Privacy Score with detailed toggles
• Improved default settings for theme, view, and popup behavior
• Enhanced popup screen with tabs for Logs and Privacy
• One-click export of extensions and activity logs
• Minor performance and cosmetic improvements
Version 5.3.3
• Multi-language support added
• Bug fixes for popup rendering
• Performance improvements for faster load
• Temporarily removed legacy activity log page (redesign in progress)
⸻