Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeID Side for Safari
Findings · 3
+1 more finding locked
MEDIUM FINDINGS · 3
  1. 01User email transmitted in URL query string to vendor backend on every popup open and on demand from any tab; profile JSON cached in localStorage and replayed via native messaging on every page navigation.
  2. 02Hardcoded API bearer token and proprietary User-Agent header embedded in extension JavaScript, used for all backend API calls (rule fetch, user_choice lookup).
  3. 03Content script on `<all_urls>` (all_frames, match_about_blank, document_start) reads page-controlled `localStorage['idside-user-choice']` / `idside-user-token` and forwards them to background and native host without validating origin.
+1 more finding locked
OTHER EXTENSIONS

Is ID Side for Safari safe?

Low risk

No summary available.

ID Sidev2.1.5Chrome Web Store
20Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+1 more finding not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026idside.idside.extension

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact