Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeTeleparty - Watch TV Together
Findings · 3
+2 more findings locked
MEDIUM FINDINGS · 3
  1. 01Injects a full Google Tag Manager runtime and hardcoded Facebook Pixel into streaming-service pages (Netflix, Disney+, HBO Max, Hulu, Crunchyroll, Sling, Paramount+, etc.) when the user starts a Teleparty session, enabling third-party adtech tracking inside those sites' origins.
  2. 02Displays a Teleparty-branded affiliate banner overlay on six streaming-service signup/billing pages (Discovery+, Disney+, Paramount+, Peacock, Sling, Fubo) that redirects user clicks through api.teleparty.com/get-sleek-url to a Sovrn (sleek-url) affiliate link, with no in-extension disclosure of the affiliate relationship.
  3. 03PostHog and metis.teleparty.com event telemetry sent during watch parties includes the active tab's full URL (`current_tab_url`) and page title (`current_tab_title`) alongside firebase_id, email, perm_id and uuid, attaching the user's currently-watched stream URL (which often contains video/episode IDs and viewing-progress query params) to a per-user identifier.
+2 more findings locked
OTHER EXTENSIONS

Is Teleparty - Watch TV Together safe?

Medium risk

No summary available.

WP Interactive Media, Inc.v5.6.4Chrome Web Store
45Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+2 more findings not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026com.teleparty.Teleparty-For-Safari.extension

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact