Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeSave to Pinterest
Findings · 3
+2 more findings locked
LOW FINDINGS · 3
  1. 01Background reads Pinterest auth cookies (_auth, _pinterest_sess) from .pinterest.com via chrome.cookies.getAll for vendor API authentication.
  2. 02Content script registers DOM hover handlers on every site (*://*/*) to detect images and inject a Pinterest 'Save' button overlay (primary disclosed function).
  3. 03Save-button click on any host POSTs the page URL and domain to https://trk.pinterest.com/v3/callback/event/ as analytics aux data.
+2 more findings locked
OTHER EXTENSIONS

Is Save to Pinterest safe?

Low risk

No summary available.

Pinterestv6.13.1Chrome Web Store
20Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+2 more findings not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026pinterest.SaveToPinterest.SaveBrowserExtension

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact