Is Download Blocker safe?
Download Blocker intercepts browser downloads and blocks HTML smuggling attacks based on enterprise-configurable file inspection rules.
The extension monitors every download across all pages and uses configurable policies to block files that match defined criteria, such as those containing macros or matching specific MIME types. It injects a script into every page to capture file metadata (URL, referrer, SHA-256 hash) before a download completes, relaying that data to the background service worker for policy evaluation. No data is sent to external servers; all inspection and blocking decisions are made locally.
Part of this rating comes from analysis signals we haven't published as detailed findings yet.
Who publishes itSecurityJosh - no other listings under this identity, 1 shared hostname
SecurityJosh - no other listings under this identity, 1 shared hostname
What this publisher told the store about itself, and the other listings that told it the same thing.
Shared hosts - 1 hostname
Hostnames hardcoded in this extension that few other listings call. That can mean one operator behind both, and it can equally mean a small shared vendor, so it is context rather than a conclusion. Hosts that many listings call are left out: they are services, not connections.
AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.
Publishers can request a review.
What it can do
Permissions this extension asks for, as declared in version 1.1.1. Asking for a permission is not a finding on its own - it is what the extension can do if it chooses to.
Read and change your data on every site you visit
file://*/* and 1 more
Read and change your data on every secure site you visit
https://*/*
Start, monitor and manage your downloads
downloads
Show you desktop notifications
notifications
See the address and title of every tab you have open
tabs
Store data in your browser
storage
Run its own code inside the pages you visit
scripting
Talk to a program installed on your computer, outside the browser's sandbox
nativeMessaging