Is Spoof Geolocation safe?

Low risk

Spoof Geolocation exposes stored spoof-location settings to scripts running on every HTTP or HTTPS page.

The extension injects scripts on all sites and uses DOM events to pass geolocation and permission settings between the page and the extension. Any script running in the page can trigger those events and read stored latitude, longitude, accuracy, enabled and randomize flags, and bypass domains.

Part of this rating comes from analysis signals we haven't published as detailed findings yet.

joue.quroiv0.3.2Chrome Web Store
20Risk
Who publishes it

joue.quroi - 9 other listings from the same operator, none carrying a finding

What this publisher told the store about itself, and the other listings that told it the same thing.

Shared hosts - 1 hostname

Hostnames hardcoded in this extension that few other listings call. That can mean one operator behind both, and it can equally mean a small shared vendor, so it is context rather than a conclusion. Hosts that many listings call are left out: they are services, not connections.

permission.site
Also called by 2 other listings, including Spoof Geolocation

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

What it can do

Permissions this extension asks for, as declared in version 0.3.1. Asking for a permission is not a finding on its own - it is what the extension can do if it chooses to. The current listed version is 0.3.2, which we have not unpacked yet.

  • Read and change your data on every site you visit

    *://*/*

  • Store data in your browser

    storage

  • Add items to the right-click menu

    contextMenus

  • Run its own code inside the pages you visit

    scripting

Updated 30 September 2026ihdobppgelceaoeojmhpmbnaljhhmhlc