Is BestStore Printer Launcher safe?
BestStore Printer Launcher exposes an unvalidated HTTP proxy via its external messaging API, reachable by any localhost page.
The extension acts as a printing bridge for Autel BestStore point-of-sale software, relaying print jobs between the browser and a local printer via native messaging. Its service worker also accepts external messages from localhost origins and passes caller-supplied URL, method, headers, and body directly to fetch() with no URL validation. Because the extension holds <all_urls> host permissions, any local web page can use this channel to send requests to any host on the internet.
Part of this rating comes from analysis signals we haven't published as detailed findings yet.
Who publishes itAUTEL SRL - no other listings under this identity
AUTEL SRL - no other listings under this identity
What this publisher told the store about itself, and the other listings that told it the same thing.
AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.
Publishers can request a review.
What it can do
Permissions this extension asks for, as declared in version 2.0.11. Asking for a permission is not a finding on its own - it is what the extension can do if it chooses to.
Read and change your data on every site you visit
<all_urls>
Talk to a program installed on your computer, outside the browser's sandbox
nativeMessaging
Run hidden pages in the background
offscreen