Highflame Browser Security

Highflame Browser Security

ID: ilfhefflmhpdbnfhmmbbmfehbddbaobl

Supported Languages

🇺🇸US English

Extension Info & Metadata

Status
Active
Version
2.1.2
Size
0.20 MB
Rating
5.0/5
Reviews
4
Users
12
Type
Extension
Updated
Jun 5, 2026
Category
Make_chrome_yours Privacy
Price
Free
Featured
No
Visibility
Listed
Mature
No
By Google
No
Trusted
No

Publisher Contextual Analysis

Author
HighflameView Profile
Country
US
MX records exist
Yes
Domain exists
Yes
Is disposable
No
Is role-based
No
Mailbox exists
Yes
Address
554 Morecroft Road Lafayette, CA 94549 US
Website
Visit
Total Extensions
1
Active
1
Obsolete
0
Listed
1
Unlisted
0
Total Users
12

Enterprise data-leak prevention for AI tools. Scans prompts, pastes, and uploads before they leave the browser.

AI guardrails for ChatGPT, Copilot, Gemini & more. Protects against prompt injection, trust & safety, and sensitive data risks.

Item
Type
Severity
Description
Contextual Risk Factors
Risk Factor
High
The following context increases the overall risk:• 20% increase: Access to sensitive domains increases potential impact• 10% increase: Early script execution enables pre-emptive content manipulation
storage
Permission
Medium
This permission allows storing data locally in the browser. Rated Medium because it can persist sensitive user data, track user activities over time, and potentially store malicious payloads.
https://chatgpt.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://chat.openai.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://claude.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://anthropic.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://gemini.google.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://perplexity.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://www.perplexity.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://copilot.microsoft.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://meta.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://www.meta.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://lovable.dev/*
Host
Medium
Host permission — access limited to this URL pattern.
https://cursor.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://github.com/copilot/*
Host
Medium
Host permission — access limited to this URL pattern.
https://chat.deepseek.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://grok.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://chat.mistral.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://poe.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://openrouter.ai/chat/*
Host
Medium
Host permission — access limited to this URL pattern.
https://bolt.new/*
Host
Medium
Host permission — access limited to this URL pattern.
https://v0.dev/*
Host
Medium
Host permission — access limited to this URL pattern.
https://v0.app/*
Host
Medium
Host permission — access limited to this URL pattern.
https://replit.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://sourcegraph.com/cody/*
Host
Medium
Host permission — access limited to this URL pattern.
https://windsurf.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://chat.qwen.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://doubao.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://kimi.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://yuanbao.tencent.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://chatglm.cn/*
Host
Medium
Host permission — access limited to this URL pattern.
https://yiyan.baidu.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://notebooklm.google.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://huggingface.co/chat/*
Host
Medium
Host permission — access limited to this URL pattern.
https://lmarena.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://app.grammarly.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://notion.so/*
Host
Medium
Host permission — access limited to this URL pattern.
https://app.jasper.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://manus.im/*
Host
Medium
Host permission — access limited to this URL pattern.
https://app.devin.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://midjourney.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://runwayml.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://api.highflame.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
https://studio.highflame.ai/*
Host
Medium
Host permission — access limited to this URL pattern.
Access to Sensitive Domains
Risk Factor
Medium
This extension requests access to sensitive domains: https://gemini.google.com/*, https://github.com/copilot/*, https://notebooklm.google.com/*, https://huggingface.co/chat/*
Early Content Script Execution
Risk Factor
Medium
This extension runs content scripts at document_start.
alarms
Permission
Low
This permission schedules periodic tasks. Rated Low because it can only trigger events at specified times without access to sensitive data.
URLs
10
IPv4
0
IPv6
0

URLs

View the external URLs this extension communicates with to understand its network activity and data interactions.

Gain full insight into all external connections.

Upgrade for full visibility.

api.highflame.ai-https://api.highflame.ai
studio.highflame.ai/api/cli-auth/tokenhttps://studio.highflame.ai/api/cli-auth/token
stuk.github.io/jszip/documentation/howto/read_zip.htmlhttps://stuk.github.io/jszip/documentation/howto/read_zip.html
${r}/*%60https://${r}/*`
${t}/*%60https://${t}/*`
control.highflame.ai/v1/auth/oauth2/tokenhttps://control.highflame.ai/v1/auth/oauth2/token
shield.api.highflame.ai-https://shield.api.highflame.ai
shield.api.highflame.ai-https://shield.api.highflame.ai/
www.w3.org/2000/svghttp://www.w3.org/2000/svg
${n}/*%60https://${n}/*`

Gain full insight into all external connections.

Upgrade for full visibility.

No IP addresses found
Showing 1 to 10 of 10 rows
Rows per page:

Code Diff

Compare extension code between any two versions.

0 changed files (scanned top 25 shared text files)

No comparable text files found between these versions.

Browse and explore files within this extension package

Gain full insight into all external connections.

Upgrade for full visibility.