Is Video Download safe?
Medium risk
Video Download injects a hidden iframe to div.show on every page, plus a time-delayed variant that activates 8+ hours after install.
The extension's content script runs on all websites and contacts div.show/init by embedding a hidden 1×1 iframe. A second, nearly identical injection block fires only after 8 hours have passed since installation, a pattern consistent with evasion of sandboxed review systems. Both injections transmit the user's IP address and the current page URL to the remote host.
Part of this rating comes from analysis signals we haven't published as detailed findings yet.
45Risk
AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.
Publishers can request a review.
Data recipients
div.show