Is coffeelings safe?

Low risk

coffeelings loads third-party font and image assets when its popup opens.

When you open the popup, coffeelings imports Font Awesome from cdnjs.cloudflare.com, Google Fonts from fonts.googleapis.com, and a Ko-fi image from cdn.ko-fi.com. Those resource requests can expose request metadata such as your IP address to those providers while the journal itself is stored through Chrome storage.

Part of this rating comes from analysis signals we haven't published as detailed findings yet.

cnnmonv4.00Chrome Web Store
20Risk
Who publishes it

cnnmon - no other listings under this identity

What this publisher told the store about itself, and the other listings that told it the same thing.

Publisher
cnnmon

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

What it can do

Permissions this extension asks for, as declared in version 4.00. Asking for a permission is not a finding on its own - it is what the extension can do if it chooses to.

  • Start, monitor and manage your downloads

    downloads

  • Store data in your browser

    storage

Where it sends data

Destinations our analysis observed coffeelings contacting. Sending data somewhere is not a finding on its own - an extension that syncs your settings has to talk to its own server - but it is where your data can go, and who else it goes to.

  • fonts.googleapis.comwidely used

    coffeelings sends data to fonts.googleapis.com. A widely used service: 123 other extensions we have analysed send data here.

  • cdnjs.cloudflare.comwidely used

    coffeelings sends data to cdnjs.cloudflare.com. A widely used service: 50 other extensions we have analysed send data here.

  • cdn.ko-fi.com

    coffeelings sends data to cdn.ko-fi.com. No other extension we have analysed sends data here.

Updated 30 September 2026hcbddpppkcnfjifbcfnhmelpemdoepkk