Surf Security

Surf Security

ID: dpmjncncaehmgjeficalpmlfaenmbeca

Supported Languages

🇺🇸English
🇮🇱Hebrew
🇹🇷Turkish

Extension Info & Metadata

Status
Active
Version
1.4.271
Size
19.60 MB
Rating
5.0/5
Reviews
3
Users
922
Type
Extension
Updated
Jul 11, 2026
Category
Productivity Workflow
Price
Free
Featured
No
Visibility
Unlisted
Mature
No
By Google
No
Trusted
No

Publisher Contextual Analysis

Author
Surf Security PublishView Profile
MX records exist
Yes
Domain exists
Yes
Is disposable
No
Is role-based
No
Mailbox exists
Yes
Total Extensions
3
Active
2
Obsolete
1
Listed
0
Unlisted
3
Total Users
938
Screenshot 1
Screenshot 2

Surf Security is a browser extension that protects you from phishing and malicious websites.

Surf Security is a comprehensive Google Chrome extension designed to ensure a secure online experience. This security tool helps protect you from phishing attacks and prevents malware from infiltrating your computer. To safeguard against phishing attacks, Surf Security scans websites and identifies fraudulent, potentially harmful sites that attempt to capture your sensitive information. While browsing, you receive security alerts through this extension, providing you with a protective shield that warns you before entering risky websites. Surf Security also assists in defending your computer against malware and viruses. Continuously scanning downloaded files and visited web pages, this extension detects potential threats, preventing malicious software from infiltrating your computer and safeguarding your data. Enjoy the peace of mind that comes with Surf Security. Download and install it now to stay safe from online phishing attacks and malware hazards.

Item
Type
Severity
Description
scripting
Permission
Critical
This permission allows injection and execution of JavaScript on any webpage. Rated Critical because it can modify page content, steal sensitive data, and inject malicious code into any site the extension has access to.
declarativeNetRequest
Permission
Critical
This permission allows the extension to define rules to block, redirect, or modify network requests. Rated Critical because it can control all network traffic, potentially blocking security updates or redirecting to malicious sites.
proxy
Permission
Critical
This permission allows the extension to control the browser's proxy settings. Rated Critical because it can route all traffic through potentially malicious proxies, enabling man-in-the-middle attacks and traffic monitoring.
webRequestAuthProvider
Permission
Critical
This permission allows the extension to handle authentication requests and modify authentication headers. Rated Critical because it can intercept login credentials, session tokens, and modify authentication flows to compromise accounts.
webRequest
Permission
Critical
This permission enables the extension to monitor and analyze all web requests made by the browser. Rated Critical because it can observe all network traffic including sensitive data, track browsing behavior, and gather authentication tokens.
<all_urls>
Host
Critical
Broad host access — the extension can read/modify content on every website.
*://*/*
Host
Critical
Broad host access — the extension can read/modify content on every website.
Dangerous Permission Combination: cookies,webRequest,identity
Risk Factor
Critical
Allows extensions to intercept web requests, manage cookies, and access identity or certificate-related functionalities, potentially compromising secure access and authentication processes.
webNavigation
Permission
High
This permission enables monitoring of all browser navigation events and transitions. Rated High because it can track every page visit, navigation method, and browsing pattern, potentially exposing sensitive browsing behavior and user activities.
downloads
Permission
High
This permission controls file downloads and accesses download history. Rated High because it can download malicious files, access sensitive downloaded documents, and track user download patterns.
cookies
Permission
High
This permission provides full access to read and modify browser cookies. Rated High because it can steal session tokens, modify authentication cookies, and compromise accounts across websites.
identity
Permission
High
This permission accesses Chrome identity service and user information. Rated High because it can obtain OAuth tokens, access connected accounts, and impersonate the user in authenticated service.
identity.email
Permission
High
This permission directly accesses the user's email address. Rated High because it reveals personally identifiable information and can be used for tracking or targeting.
nativeMessaging
Permission
High
This permission enables communication with applications installed on your computer. Rated High because it can exchange data with native programs, potentially exposing system-level information and local files.
tabCapture
Permission
High
This permission captures content and audio from browser tabs. Rated High because it can record sensitive web content, capture form input, and monitor user interactions.
offscreen
Permission
High
This permission creates hidden browser documents with full DOM access. Rated High because it can run background operations invisibly, potentially executing malicious code without user awareness.
Dangerous Permission Combination: scripting,cookies,webRequest
Risk Factor
High
Enables extensions to interact with scripts, modify files and downloads, and alter browsing history and bookmarks, potentially affecting data integrity and user control.
Contextual Risk Factors
Risk Factor
High
The following context increases the overall risk:• 25% increase: Unsafe code evaluation capabilities increase attack surface
Broad Host Permissions
Risk Factor
High
This extension has broad host permissions allowing it to access many or all websites.
Broad Content Script Access
Risk Factor
High
This extension can inject scripts into any website.
Unsafe WebAssembly Execution
Risk Factor
High
This extension's CSP allows "wasm-unsafe-eval".
system.cpu
Permission
Medium
This permission provides access to CPU usage and information. Rated Medium because it can monitor system performance, detect other applications, and potentially identify user activities.
storage
Permission
Medium
This permission allows storing data locally in the browser. Rated Medium because it can persist sensitive user data, track user activities over time, and potentially store malicious payloads.
unlimitedStorage
Permission
Medium
This permission removes storage quota restrictions. Rated Medium because it can store large amounts of user data without limits, potentially impacting browser performance and storing extensive tracking data.
activeTab
Permission
Medium
This permission grants temporary access to the current tab. Rated Medium because it can access current page content when invoked, though limited to user-initiated actions.
tabs
Permission
Medium
This permission enables tab management and monitoring. Rated Medium because it can track open tabs, access tab metadata, and monitor user browsing patterns.
management
Permission
Medium
This permission manages other installed extensions. Rated Medium because it can enable/disable other extensions and modify their settings, with changes being visible to users.
alarms
Permission
Low
This permission schedules periodic tasks. Rated Low because it can only trigger events at specified times without access to sensitive data.
idle
Permission
Low
This permission detects system idle state. Rated Low because it only observes user activity state without access to activity details.
notifications
Permission
Low
This permission displays system notifications. Rated Low because it can only show user-visible notifications without accessing system data.
URLs
167
IPv4
14
IPv6
0

URLs

View the external URLs this extension communicates with to understand its network activity and data interactions.

Gain full insight into all external connections.

Upgrade for full visibility.

github.com/hodgef/simple-keyboardhttps://github.com/hodgef/simple-keyboard
github.com/hodgefhttps://github.com/hodgef
fonts.googleapis.com/css2https://fonts.googleapis.com/css2?family=Open+Sans:wght@400;500&family=Roboto:ital,wght@0,100;0,300;0,400;0,500;1,100;1,300;1,400&display=swap
fonts.googleapis.com/css2https://fonts.googleapis.com/css2?family=Open+Sans:wght@400;500&family=Roboto:ital,wght@0,100;0,300;0,400;0,500;0,700;1,100;1,300;1,400&display=swap
fonts.googleapis.com/css2https://fonts.googleapis.com/css2?family=Roboto:ital,wght@0,100;0,300;0,400;0,500;0,700;1,100;1,300;1,400;1,500;1,700&display=swap
mui.com/production-error/https://mui.com/production-error/?code=
reactjs.org/docs/error-decoder.htmlhttps://reactjs.org/docs/error-decoder.html?invariant=
www.w3.org/1999/xlinkhttp://www.w3.org/1999/xlink
www.w3.org/XML/1998/namespacehttp://www.w3.org/XML/1998/namespace
www.w3.org/1999/xhtmlhttp://www.w3.org/1999/xhtml
Showing 1 to 10 of 170 rows
Rows per page:

Gain full insight into all external connections.

Upgrade for full visibility.

3.67.106.190
IPv4
-
35.158.227.133
IPv4
-
0.0.0.0
IPv4
-
255.0.0.0
IPv4
-
255.255.0.0
IPv4
-
255.255.255.0
IPv4
-
255.255.255.255
IPv4
-
127.0.0.1
IPv4
-
1.88.16.69
IPv4
-
22.12.43.25
IPv4
-
1.13.1.4
IPv4
-
12.22.37.29
IPv4
-
24.24.41.48
IPv4
-
0.0.0.1
IPv4
-
Showing 1 to 14 of 20 rows
Rows per page:
Showing 1 to 10 of 50 rows
Rows per page:

Code Diff

Compare extension code between any two versions.

0 changed files (scanned top 25 shared text files)

No comparable text files found between these versions.

Browse and explore files within this extension package

Gain full insight into all external connections.

Upgrade for full visibility.