Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeCerby Web Extension
Findings · 3
+4 more findings locked
MEDIUM FINDINGS · 3
  1. 01Background reports per-page navigation activity to Cerby's API (PUT https://api.cerby.com/v1/user-activity/page-navigation) tying visited pages to the authenticated Cerby user account.
  2. 02On every page load the background queries Cerby's `/suggest/application_info` and `/suggest/allowed_urls` endpoints with the visited hostname, exposing browsing hostnames to Cerby's `suggest` service.
  3. 03Background ships analytics events (events + APP_DISCOVERY + extension logs) to Segment using two hardcoded write keys; events carry a per-install anonymous id and account/workspace identifiers.
+4 more findings locked
OTHER EXTENSIONS

Is Cerby Web Extension safe?

Medium risk

No summary available.

Cerbyv1.0.514Chrome Web Store
45Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+4 more findings not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026com.cerby.safari.Extension

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact