Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeEdCast Web Extension
Findings · 3
+3 more findings locked
HIGH FINDINGS · 3
  1. 01Hardcoded EdCast JWT bearer token shipped in content script bundle (HS256, user_id=646563, is_org_admin=true, organization_url=qa.edcast.com).
  2. 02Bugsnag error-reporting SDK initialised inside content script that injects on <all_urls>; uncaught errors include host-page URL/breadcrumbs and are sent to notify.bugsnag.com.
  3. 03LaunchDarkly client-side feature-flag SDK active in content script on <all_urls>; identifies user/device to clientstream.launchdarkly.com.
+3 more findings locked
OTHER EXTENSIONS

Is EdCast Web Extension safe?

High risk

No summary available.

EdCastv1.0.4Chrome Web Store
75Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+3 more findings not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026com.edcast.edcastWebExtension.Live

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact