Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeGlean for Safari
Findings · 3
+1 more finding locked
HIGH FINDINGS · 3
  1. 01Periodic chrome.history.search exfiltration of browser visit chains, titles, and referrers (filtered against tenant-configured datasource URL regexes) POSTed to the tenant's Glean backend at /api/v1/activity
  2. 02Conditional capture of full document.body.innerHTML on visited workplace pages (controlled by per-datasource collectBodyInActivity flag from server config), uploaded as bodyContent inside the /activity payload
  3. 03Search-engine query interception via webNavigation.onBeforeNavigate + declarativeNetRequest + (where granted) webRequestBlocking on Google/Bing/Yahoo/Ask/AOL/DuckDuckGo, parsing q/p parameters and forwarding queries to the Glean backend
+1 more finding locked
OTHER EXTENSIONS

Is Glean for Safari safe?

Medium risk

No summary available.

Glean Workv1.0.51Chrome Web Store
45Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+1 more finding not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026com.glean.Glean-for-Safari.Extension

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact