Is "Memoraid - AI自动化发文到小红书、公众号、知乎、头条等自媒体平台" on Chrome Web Store Safe to Install?
🎯 为什么选择 Memoraid? • 📱 多平台发布:头条号、知乎专栏、微信公众号一站式发布 • 🎨 智能配图:自动搜索热点图片并插入到文章中 • 🔒 隐私保护:所有数据处理都在本地完成,API Key 仅存储在您的浏览器中 • 💾 云端同步:支持 Google/GitHub 登录,加密同步设置和历史记录 🚀 核心功能: 📖 智能内容提取 • 自动提取 ChatGPT、Gemini、DeepSeek 等 AI 平台的对话内容 • 支持任意网页(博客、新闻、论坛、微博、知乎等)的智能内容识别 • 自动展开折叠内容、加载更多评论 • 自动获取页面内链接的相关内容 • AI 图片文字识别(OCR)功能 🤖 AI 驱动总结 • 将网页/对话内容转化为结构化的技术知识文档 • 一键生成适合头条、知乎、微信公众号风格的自媒体文章 • 支持 GPT-4、Claude、DeepSeek、通义千问等多种 AI 模型 ✍️ 文章风格定制 • 6 维度风格调节滑动条 • 可调整:立场倾向、情感色彩、评价态度、表达方式、语言风格、趣味程度 • 让 AI 按照您想要的风格写作 📤 一键多平台发布 • 支持头条号、知乎专栏、微信公众号 • 标题、正文自动填入创作平台 • 智能配图:自动从热点图库搜索并插入配图 • 自动设置文章封面 💾 数据管理 • 历史记录自动保存 • 支持 Google/GitHub 登录云端同步 • 一键推送到 GitHub 仓库 📝 导出功能 • Markdown 实时预览 • 自动渲染 Mermaid 流程图 • 支持复制和下载 .md 文件 🔒 隐私保护 • API Key 仅存储在本地浏览器 • 云端同步数据端到端加密 • 不收集任何用户数据 适用场景: • 技术人员整理学习笔记 • 自媒体作者快速创作内容 • 研究人员总结文献资料 • 任何需要高效处理网页内容的用户 立即安装,让 AI 成为您的内容创作助手!
Risk Assessment
Analyzed12 security findings detected across all analyzers
Chrome extension requesting 9 permissions
Severity Breakdown
Finding Categories
Requested Permissions
9 permissionsAccess and modify data on every website you visit
Read and modify cookies on all sites
Access your identity and sign-in tokens
About This Extension
Detailed Findings
12 totalAI Security Report
AI Security Review
Risky Plugins reviewed this extension with an AI-assisted security workflow on 2026-04-28. The review verdict is likely false positive with 75% confidence.
Recommended action: suppress false positive.
Risk context: MEDIUM risk, score 62/100.
Evidence context: threat category none; evidence quality moderate.
Memoraid is an AI content processing extension that summarizes web pages and publishes to Chinese social media platforms (Xiaohongshu, WeChat Official Account, Zhihu, Toutiao). The evidence bundle shows 12 total findings, all medium severity, with zero malware signatures, zero malware findings, and zero suspicious IoCs.
The manifest finding MANIFEST-SENSITIVE-PERM-TABS in manifest.json requests the tabs permission, which is legitimate and necessary for an extension that summarizes web content. The 10 network findings are all fetch and socket_io calls located in bundled asset files: assets/index.ts-DICNo82W.js, assets/storage-BmqP6ncI.js, assets/debug-DwBj1fZa.js, assets/cytoscape.esm-CyJtwmzi.js, and assets/remoteDebug-1FVYx-A3.js. These files follow webpack/esbuild naming conventions (hash-suffixed filenames like CyJtwmzi.js, DICNo82W.js), indicating they are bundled dependencies rather than custom malicious code. No specific suspicious domains are extracted from these network calls.
The single obfuscation finding OBFUSCATION-FUNCTION_INDIRECT in assets/remoteDebug-1FVYx-A3.js is located in a file named "remoteDebug," which suggests debugging or development tooling rather than malicious payload delivery. Function indirect calls are common in minified/bundled JavaScript and do not constitute strong evidence of obfuscation intended to hide malicious behavior.
The strongest counterargument to this verdict is the anonymous developer identity ([email protected]) combined with the obfuscation finding. A skeptic could argue that an unverified developer using obfuscation patterns warrants a higher risk classification. However, the obfuscation finding is isolated to a debug file and represents a single function_indirect pattern, not comprehensive code obfuscation. More importantly, the findings_summary explicitly shows 0 malware signatures and 0 suspicious IoCs. Without malware signatures co-located with obfuscation, or without suspicious domains like query., search., or unknown third-party servers, there is no evidence of intentional harm. The extension's declared purpose (AI content summarization and publishing) aligns with its permissions and network behavior.
The developer anonymity is a minor concern but does not constitute evidence of malicious intent. The low user count (155) indicates this is a niche extension, not a mass-deployment attack vector. Given the absence of malware signatures, suspicious domains, or credential theft patterns, the findings are consistent with bundled dependencies triggering false positive detections.
Key Reasons
- Zero malware signatures and zero suspicious IoCs in findings summary
- Network findings located in bundled asset files with webpack naming conventions
- Tabs permission is legitimate for web content summarization functionality
- Single obfuscation pattern in debug file, not comprehensive obfuscation
- Extension purpose aligns with declared permissions and network behavior
False Positive Considerations
- Bundled dependencies in assets/ directory triggering network findings
- Webpack/esbuild minified code patterns in hash-suffixed filenames
- Function indirect calls in debug files
- No suspicious domains extracted from network calls
Source Code Not Available
Source code is not available for this version of the extension.
Frequently Asked Questions
Similar Extensions
Related extensions from the same publisher or marketplace
Ship Xanh copy sản phẩm, nhân bản shop, hiển thị % phí sàn, lượt bán tháng
[email protected]
SVG to AVIF Converter [ShiftShift]
[email protected]
ChromeCompare
[email protected]
CAI Tools
[email protected]
Auto Gmail - ChatGPT AI for email inbox
[email protected]
EC Seller Tools
[email protected]