Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeAI Chatbot+ : Ask Chat Bot
Findings · 3
+2 more findings locked
MEDIUM FINDINGS · 3
  1. 01Content script on *.openai.com fetches the user's authenticated ChatGPT session access token from /api/auth/session and broadcasts it as an extension runtime message; the background has no handler in this version (dead code), but the token is still read and emitted on every visit.
  2. 02AI responses returned by the native handler are rendered into the Google search page DOM via marked.parse on text the AIProxy-routed model returned, then innerHTML-assigned, expanding the trust boundary to whatever the model/proxy emits.
  3. 03User Google search queries are sent via native messaging to the host app, which forwards them to model providers through the third-party proxy api.aiproxy.pro (not disclosed to users).
+2 more findings locked
OTHER EXTENSIONS

Is AI Chatbot+ : Ask Chat Bot safe?

Medium risk

No summary available.

Best App Limitedv2.2.8Chrome Web Store
45Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+2 more findings not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026com.hongdeng.aisearch.Extension

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact