Is Netwrix EPP Browser Connector safe?
Netwrix EPP Browser Connector captures page text and document content, relaying it to the local Netwrix Endpoint Protector native app.
The extension injects a content script on all pages. When instructed by the native Netwrix Endpoint Protector application via a native messaging port, it collects the visible text of the current page, fetches file contents from Google Docs, OneDrive, and SharePoint documents as byte arrays, and captures PDF bytes by URL. All collected content is relayed to the local native host 'com.cososys.epp_browser_connector' over a long-lived native messaging port, and page content is also captured on print events.
Who publishes itNetwrix Corporation - no other listings under this identity
Netwrix Corporation - no other listings under this identity
What this publisher told the store about itself, and the other listings that told it the same thing.
AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.
Publishers can request a review.
What it can do
Permissions this extension asks for, as declared in version 1.11. Asking for a permission is not a finding on its own - it is what the extension can do if it chooses to.
Talk to a program installed on your computer, outside the browser's sandbox
nativeMessaging
Act on the current tab, but only after you click the extension
activeTab
See the address and title of every tab you have open
tabs
Detect when you step away from your computer
idle
Where it sends data
Destinations our analysis observed Netwrix EPP Browser Connector contacting. Sending data somewhere is not a finding on its own - an extension that syncs your settings has to talk to its own server - but it is where your data can go, and who else it goes to.
- com.cososys.epp_browser_broker (local native host)
Netwrix EPP Browser Connector sends data to com.cososys.epp_browser_broker (local native host). Named as a recipient in this extension's own analysis.