Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeORGanizer for Salesforce
Findings · 3
+1 more finding locked
MEDIUM FINDINGS · 3
  1. 01License validation request transmits user's email address and a persistent unique client identifier (UUID) to api.organizer.solutions
  2. 02Salesforce session ID (sid cookie) is read on every tab navigation within Salesforce domains and sent to all Salesforce content scripts via chrome.tabs.sendMessage
  3. 03Content script intercepts Salesforce login form credentials (username + plaintext password) and stores them locally, encrypted or obfuscated with chrome.runtime.id
+1 more finding locked
OTHER EXTENSIONS

Is ORGanizer for Salesforce safe?

Clean risk

No summary available.

Enrico Murruv10000.0.10.1Chrome Web Store
0Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+1 more finding not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026lojdmgdchjcfnmkmodggbaafecagllnh

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact