Is RingCentral Contact Center Voice safe?

Clean risk

RingCentral Contact Center Voice embeds a hardcoded OAuth client secret used to authenticate token requests to the RingCentral platform API.

The extension bundles a plaintext RingCentral OAuth client ID and client secret directly in its JavaScript. These credentials are used to construct a Base64-encoded Basic Authorization header sent with OAuth token requests to platform.ringcentral.com. Any party with access to the extension package can extract and reuse these credentials to authenticate against the RingCentral API.

RingCentralv2.2.3Chrome Web Store
0Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Data recipients

platform.ringcentral.com
Updated 17 September 2026melamlloomehapkpdgnbbepdiomabacm