Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeAdobe Acrobat: PDF edit, convert, sign tools
Findings · 3
+3 more findings locked
LOW FINDINGS · 3
  1. 01New content script upload-button-analytics.js, injected on all https:// pages, scans for file input elements and reports the page hostname to Adobe analytics when an upload form accepting PDF/image files is found
  2. 02Transmits visited page hostname and PDF-link presence to Adobe analytics on each navigation, when a remote feature flag is active
  3. 03A new injected page script monkeypatches XMLHttpRequest.prototype.send on gemini.google.com and reads raw API responses from Gemini's batchexecute endpoint to extract chat IDs and token presence, used to gate the Convert-to-PDF feature
+3 more findings locked
OTHER EXTENSIONS

Is Adobe Acrobat: PDF edit, convert, sign tools safe?

Low risk

No summary available.

Adobe Inc.v26.2.2.0Chrome Web Store
20Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+3 more findings not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026efaidnbmnnnibpcajpcglclefindmkaj

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact