Chrome Web Store
28Versions
1Code reviewed

No malware found

In code review (v2.2.2)

Our reviewer read version 2.2.2 — the most recent version we have reviewed — and found no malicious behaviour. The version shown here has not been individually reviewed yet.

What our analysis found

ChatGPT Ctrl+Enter Sender, used by 70,000 people, showed no malicious code in Extension Auditor's review. Our code review reported 1 finding (1 high), led by other. Its permissions mean it can inject scripts into pages.

Key findings

  • high· other —The permissions declared in the bundled manifest do not match the publicly listed manifest on the Chrome Web Store. This could indicate an update that was not yet published, or a discrepancy that may warrant investigation.

The extension only remaps keyboard events ( +Enter) on supported AI chat sites; it makes no network requests, collects no data, and stores settings locally. All permissions are necessary for the declared functionality. The ML model and risk-engine flagged broad host_permissions and early content script execution, but those are inherent to this utility. No malicious code patterns found. Manifest mismatch with public listing suggests update lag, not malice.

ChatGPT Ctrl+Enter Sender

ChatGPT Ctrl+Enter Sender Chrome extension security report

ID: gbncgdhklmnckojlibfhdadpfbcdbnch

Supported Languages

🇨🇳Chinese (Simplified)
🇺🇸English
🇯🇵Japanese

Extension Info & Metadata

Status
Active
Version
2.5.8
Size
0.03 MB
Rating
4.3/5
Reviews
105
Users
70,000
Type
Extension
Updated
Sep 29, 2026
Category
Accessibility
Price
Free
Featured
Yes
Visibility
Listed
Mature
No
By Google
No
Trusted
No
This publisherTrack record
5extensions
All still listed
Scanned by Extension Auditor — Low RiskDevelopers: embed this badge to link to this report.

Publisher Contextual Analysis

Author
Masachika Kamada
MX records exist
Yes
Domain exists
Yes
Is disposable
No
Is role-based
No
Mailbox exists
Yes
Website
Visit
Extensions
5
Active
5
Obsolete
0
Listed
4
Unlisted
1
Users
71,054

Screenshots & videos

Screenshot 1
Screenshot 2
Screenshot 3
Screenshot 4
Screenshot 5

Install growth

Item
Type
Severity
Description
scripting
Permission
Critical
This permission allows injection and execution of JavaScript on any webpage. Rated Critical because it can modify page content, steal sensitive data, and inject malicious code into any site the extension has access to.
Contextual Risk Factors
Risk Factor
High
The following context increases the overall risk: • 19% increase: Access to sensitive domains increases potential impact • 10% increase: Early script execution enables pre-emptive content manipulation
storage
Permission
Medium
This permission allows storing data locally in the browser. Rated Medium because it can persist sensitive user data, track user activities over time, and potentially store malicious payloads.
activeTab
Permission
Medium
This permission grants temporary access to the current tab. Rated Medium because it can access current page content when invoked, though limited to user-initiated actions.
declarativeContent
Permission
Medium
This permission controls extension activation based on page content. Rated Medium because it can monitor page content matches and selectively activate extension features.
https://chatgpt.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://poe.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://chat.mistral.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://www.perplexity.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://claude.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://gemini.google.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://v0.app/*
Host
Medium
Host permission — access limited to this URL pattern.
https://chat.deepseek.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://github.com/copilot*
Host
Medium
Host permission — access limited to this URL pattern.
https://github.com/spark*
Host
Medium
Host permission — access limited to this URL pattern.
https://grok.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://copilot.microsoft.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://m365.cloud.microsoft/*
Host
Medium
Host permission — access limited to this URL pattern.
Access to Sensitive Domains
Risk Factor
Medium
This extension requests access to sensitive domains: https://gemini.google.com/*, https://github.com/copilot*, https://github.com/spark*
Early Content Script Execution
Risk Factor
Medium
This extension runs content scripts at document_start.

Gain full insight into all external connections.

Upgrade for full visibility.

About this extension

Use 'Ctrl+Enter' for sending messages in AI chat services like ChatGPT. Prevents accidental sends and allows line breaks with Enter.

Read the publisher’s full description

The ChatGPT Ctrl+Enter Sender is an extension that allows you to send messages on sites like ChatGPT using "Ctrl+Enter". You can now use the Enter key, which was originally used to send messages, to create a new line, so there will be no more accidental sending of messages by pressing the Enter key. By clicking the icon, you can easily toggle the extension on/off with a switch button. You can use this extension on the following pages: ChatGPT perplexity (https://www.perplexity.ai) Mistral AI (https://chat.mistral.ai) Supported from v1.3.0 Claude (https://claude.ai) Supported from v1.4.0 Microsoft Copilot (https://copilot.microsoft.com) Supported from v1.6.0 ...and more. For a full list of supported sites, please refer to the images attached to this description or visit our GitHub repository. ※ If you encounter any bugs or have any concerns, please open an issue on the following GitHub repository and we will address it. https://github.com/masachika-kamada/ChatGPT-Ctrl-Enter-Sender

User reviews

Extension files

Browse and explore files within this extension package

Gain full insight into all external connections.

Upgrade for full visibility.

No network indicators were extracted from this version.

Version
Size
Verdict
Findings
Permhash
2.5.8
Latest
0.03 MBNot scanned—
81abd91196659a0d0745ed68828d6cfb91f13f0e120d764053151b056a17243c
2.5.7
0.03 MBNot scanned—
81abd91196659a0d0745ed68828d6cfb91f13f0e120d764053151b056a17243c
2.5.4
0.03 MBNot scanned—
81abd91196659a0d0745ed68828d6cfb91f13f0e120d764053151b056a17243c
2.5.3
0.03 MBNot scanned—
81abd91196659a0d0745ed68828d6cfb91f13f0e120d764053151b056a17243c
2.5.0
0.03 MBNot scanned—
81abd91196659a0d0745ed68828d6cfb91f13f0e120d764053151b056a17243c
2.3.1
0.03 MBNot scanned—
81abd91196659a0d0745ed68828d6cfb91f13f0e120d764053151b056a17243c
2.3.0
0.03 MBNot scanned—
81abd91196659a0d0745ed68828d6cfb91f13f0e120d764053151b056a17243c
2.2.2
0.02 MBNo malware found0
49a25f9feefaffecad0fcd30c50dc9331cff8b55ece53def6285c09e17e6f5d7
2.2.1
0.02 MBNot scanned—
49a25f9feefaffecad0fcd30c50dc9331cff8b55ece53def6285c09e17e6f5d7
2.2.0
0.02 MBNot scanned—
49a25f9feefaffecad0fcd30c50dc9331cff8b55ece53def6285c09e17e6f5d7
Showing 1 to 10 of 30 rows
Rows per page:

Code Diff

Compare extension code between any two versions.

0 changed files detected

No comparable text files found between these versions.

Gain full insight into all external connections.

Upgrade for full visibility.

Popular in Accessibility