Is Jabra ChromeHost (Chrome Extension) safe?

Low risk

Jabra ChromeHost relays arbitrary web page messages to a native host controlling Jabra device state, without origin validation.

The extension bridges web pages to a locally installed native host (com.jabra.nm) that controls Jabra headset state such as muting and call handling. Any web page can post a specially structured message to the content script, which forwards it verbatim to the native host with no origin check beyond verifying the message came from the same frame. Additionally, responses from the native host — including device enumeration results and headset events — are broadcast to all open tabs rather than only the originating tab.

Part of this rating comes from analysis signals we haven't published as detailed findings yet.

Jabra Developer Zonev2.3.0Chrome Web Store
20Risk
Who publishes it

Gn Hearing A/S - 1 other listing from the same operator, none carrying a finding

What this publisher told the store about itself, and the other listings that told it the same thing.

Publisher
Jabra Developer Zone
Declared legal entity
Gn Hearing A/S
Registered address
Lautrupbjerg 7, Ballerup 2750, DK
Registered contact
Morten Lemvigh

Same store account

1 other listing published from this account, 20k+ users between them, none of them carrying a finding.

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

What it can do

Permissions this extension asks for, as declared in version 2.3.0. Asking for a permission is not a finding on its own - it is what the extension can do if it chooses to.

  • Talk to a program installed on your computer, outside the browser's sandbox

    nativeMessaging

Updated 30 September 2026okpeabepajdgiepelmhkfhkjlhhmofma