Is JSON-handle safe?
Clean risk
JSON viewer/editor extension with a postMessage handler that does not validate message origin, which could allow arbitrary websites to communicate with the extension's iframe.
0Risk
AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.
Publishers can request a review.