Am I Being Pwned? logoAm I Being Pwned?
Book a demo
Homedaily.dev | Developer News Done Right, in Every New Tab
Findings · 3
+4 more findings locked
MEDIUM FINDINGS · 3
  1. 01v3.43 adds a feature that strips security response headers (X-Frame-Options, Frame-Options, Content-Security-Policy, Cross-Origin-Opener-Policy) from https sub-frame requests of a daily.dev tab via declarativeNetRequest session rules, letting the daily.dev web UI iframe arbitrary third-party sites that otherwise forbid embedding
  2. 02New bookmarks permission enables upload of browser bookmark URLs and titles to api.daily.dev via UpdateUserSettings mutation
  3. 03Companion reads third-party ad-tracking cookies (_ga, _fbp, _fbc, gbuuid) from each visited page and includes them in analytics events sent to api.daily.dev
+4 more findings locked
OTHER EXTENSIONS

Is daily.dev | Developer News Done Right, in Every New Tab safe?

Medium risk

No summary available.

Daily Dev Ltd.v3.42.8Chrome Web Store
45Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+4 more findings not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026jlmpjdjjbgclbocgajdjefcidcncaied

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact