Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeInTouchApp Phone Contacts & Data Saver
Findings · 3
+4 more findings locked
HIGH FINDINGS · 3
  1. 01Extension injects code into WhatsApp Web's MAIN world to hook into internal webpack modules, enabling deep access to WhatsApp's internal Store (contacts, chats, messages, groups, labels, statuses, presences)
  2. 02Extension scrapes WhatsApp contact data (phone numbers, names, profile pictures) from web.whatsapp.com DOM and WhatsApp internal webpack Store modules, then sends them to api16.intouchapp.com
  3. 03Extension scrapes Gmail sender details (name, email, profile picture) from Gmail DOM and sends them to api16.intouchapp.com
+4 more findings locked
OTHER EXTENSIONS

Is InTouchApp Phone Contacts & Data Saver safe?

High risk

No summary available.

Volare Tech. Pvt. Ltd.v4.54.0Chrome Web Store
75Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+4 more findings not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026fmanjoeogdemcgapfmadpgcmigkefkkc

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact