PixShift

PixShift

ID: lndlcpiafdcjmnbiginpgbipbkmkibea

Extension Info & Metadata

Status
Active
Version
1.1.0
Size
1.75 MB
Rating
5.0/5
Reviews
1
Users
4
Type
Extension
Updated
Mar 30, 2026
Category
Tools
Price
Free
Featured
No
Visibility
Listed
Mature
No
By Google
No
Trusted
No

Publisher Contextual Analysis

Author
viraj.parmaj89View Profile
MX records exist
Yes
Domain exists
Yes
Is disposable
No
Is role-based
No
Mailbox exists
Yes
Total Extensions
1
Active
1
Obsolete
0
Listed
1
Unlisted
0
Total Users
4
Screenshot 1

Auto-converts HEIC downloads from Google Photos to PNG or JPEG

PixShift makes Google Photos downloads easier to use. If a photo downloads as HEIC, PixShift automatically turns it into PNG or JPEG so it is easier to open, share, upload, and edit. You can choose the format you prefer, and your files stay on your device.

Item
Type
Severity
Description
downloads
Permission
High
This permission controls file downloads and accesses download history. Rated High because it can download malicious files, access sensitive downloaded documents, and track user download patterns.
offscreen
Permission
High
This permission creates hidden browser documents with full DOM access. Rated High because it can run background operations invisibly, potentially executing malicious code without user awareness.
Contextual Risk Factors
Risk Factor
High
The following context increases the overall risk:• 20% increase: Access to sensitive domains increases potential impact• 25% increase: Unsafe code evaluation capabilities increase attack surface
Unsafe WebAssembly Execution
Risk Factor
High
This extension's CSP allows "wasm-unsafe-eval".
storage
Permission
Medium
This permission allows storing data locally in the browser. Rated Medium because it can persist sensitive user data, track user activities over time, and potentially store malicious payloads.
https://*.googleusercontent.com/*
Host
Medium
Host permission — access limited to this URL pattern.
https://*.usercontent.google.com/*
Host
Medium
Host permission — access limited to this URL pattern.
Access to Sensitive Domains
Risk Factor
Medium
This extension requests access to sensitive domains: https://*.googleusercontent.com/*, https://*.usercontent.google.com/*
URLs
6
IPv4
0
IPv6
0

URLs

View the external URLs this extension communicates with to understand its network activity and data interactions.

Gain full insight into all external connections.

Upgrade for full visibility.

pixshift-payload.invalid/$%7Bt%7D/$%7Bn%7D%60;https://pixshift-payload.invalid/${t}/${n}`;
pixshift-payload.invalid/$%7Bj%7D/$%7B$%7D%60;https://pixshift-payload.invalid/${j}/${$}`;
stuartk.com/jsziphttp://stuartk.com/jszip
raw.github.com/Stuk/jszip/main/LICENSE.markdown.https://raw.github.com/Stuk/jszip/main/LICENSE.markdown.
github.com/nodeca/pako/blob/main/LICENSEhttps://github.com/nodeca/pako/blob/main/LICENSE
stuk.github.io/jszip/documentation/howto/read_zip.htmlhttps://stuk.github.io/jszip/documentation/howto/read_zip.html

Gain full insight into all external connections.

Upgrade for full visibility.

No IP addresses found
Version
Size
Is Malicious
Findings
Permhash
1.1.0
Latest
1.75 MB
Benign
Showing 1 to 1 of 10 rows
Rows per page:

Browse and explore files within this extension package

Gain full insight into all external connections.

Upgrade for full visibility.