Is "SkinCosmo - Scan Cosmetic Ingredients Online" on Chrome Web Store Safe to Install?

[email protected] · chrome · v1.0.1

Protect yourself from harmful cosmetics with instant ingredient analysis, including toxicity alerts, safety scores, and ingredient breakdowns. SkinCosmo for Chrome offers real-time cosmetic safety analysis; including ingredient toxicity alerts, safety scoring, and detailed breakdowns, to help you make safer beauty choices online, no matter where you're shopping. With comprehensive analysis of ingredients, safety ratings, hormone disruptors, and health impacts, SkinCosmo is more than just an ingredient checker. It's a tool that helps you shop with confidence, avoid harmful chemicals, and protect your health with every purchase. SkinCosmo's instant analysis capabilities allow you to get safety scores, ingredient breakdowns, and safer alternatives wherever you shop for cosmetics online. ➤ Terms and Conditions By installing the extension, you agree to and acknowledge: www.SkinCosmo.com/terms www.SkinCosmo.com/privacy-policy ➤ How it works SkinCosmo analyzes cosmetic products as you browse and displays clear safety scores with color-coded alerts for products that contain harmful ingredients. You can view detailed breakdowns with a single click, or expand the analysis to see specific health risks and safer alternatives. ➤ Go beyond basic ingredient lists SkinCosmo's advanced safety analysis goes far beyond simple ingredient listings. SkinCosmo can detect not only banned substances but also hormone disruptors, carcinogens, and allergens that other tools miss. In addition, it can flag and explain ingredients containing complex chemical interactions like endocrine disruption, skin sensitization, and long-term health risks. But cosmetic safety is about much more than just avoiding obvious toxins. That's why SkinCosmo also helps you identify subtle health risks and understand why certain ingredients are problematic. It helps you maintain your beauty routine while protecting your health, and helps you understand the real impact of what you're putting on your body. For health-conscious shoppers: Available on the extension, our instant safety scoring feature provides comprehensive safety analysis for any cosmetic product in seconds, without you having to research ingredients manually or leave the shopping page. Get clear safety scores and detailed explanations ready to go, no matter what website you’re shopping on. ➤ What's included? SkinCosmo includes essential safety analysis designed to help you avoid the most harmful cosmetic ingredients. • Safety score (1-10 scale) • Toxic ingredient alerts • Basic health risk warnings • Hormone disruptor detection • Quick product scanning • Ingredient safety database ➤ Works where you shop SkinCosmo is designed to work seamlessly in your browser; no copying or pasting required. Use it on Amazon, Sephora, Ulta, Target, and across cosmetic retail sites. SkinCosmo for Chrome works across: • Amazon Beauty • Sephora • Ulta Beauty • Target • CVS • And every other beauty retailer’s website! Protect Your Health, One Product at a Time We believe you deserve to know what you're putting on your body. SkinCosmo gives you the power to make informed decisions about cosmetic safety, backed by scientific research and transparent analysis.

Risk Assessment

Analyzed
61.84
out of 100
MEDIUM

153 security findings detected across all analyzers

Severity Breakdown

0
Critical
37
High
116
Medium
0
Low
0
Info

Finding Categories

37
Malware
26
Network
89
IoC Indicators

YARA Rules Matched

8 rules(37 hits)
postinstall file manipulation postinstall file download postinstall crypto operations postinstall network communication postinstall system command postinstall obfuscation NoUseWeakRandom postinstall persistence mechanism

About This Extension

Protect yourself from harmful cosmetics with instant ingredient analysis, including toxicity alerts, safety scores, and ingredient breakdowns. SkinCosmo for Chrome offers real-time cosmetic safety analysis; including ingredient toxicity alerts, safety scoring, and detailed breakdowns, to help you make safer beauty choices online, no matter where you're shopping. With comprehensive analysis of ingredients, safety ratings, hormone disruptors, and health impacts, SkinCosmo is more than just an ingredient checker. It's a tool that helps you shop with confidence, avoid harmful chemicals, and protect your health with every purchase. SkinCosmo's instant analysis capabilities allow you to get safety scores, ingredient breakdowns, and safer alternatives wherever you shop for cosmetics online. ➤ Terms and Conditions By installing the extension, you agree to and acknowledge: www.SkinCosmo.com/terms www.SkinCosmo.com/privacy-policy ➤ How it works SkinCosmo analyzes cosmetic products as you browse and displays clear safety scores with color-coded alerts for products that contain harmful ingredients. You can view detailed breakdowns with a single click, or expand the analysis to see specific health risks and safer alternatives. ➤ Go beyond basic ingredient lists SkinCosmo's advanced safety analysis goes far beyond simple ingredient listings. SkinCosmo can detect not only banned substances but also hormone disruptors, carcinogens, and allergens that other tools miss. In addition, it can flag and explain ingredients containing complex chemical interactions like endocrine disruption, skin sensitization, and long-term health risks. But cosmetic safety is about much more than just avoiding obvious toxins. That's why SkinCosmo also helps you identify subtle health risks and understand why certain ingredients are problematic. It helps you maintain your beauty routine while protecting your health, and helps you understand the real impact of what you're putting on your body. For health-conscious shoppers: Available on the extension, our instant safety scoring feature provides comprehensive safety analysis for any cosmetic product in seconds, without you having to research ingredients manually or leave the shopping page. Get clear safety scores and detailed explanations ready to go, no matter what website you’re shopping on. ➤ What's included? SkinCosmo includes essential safety analysis designed to help you avoid the most harmful cosmetic ingredients. • Safety score (1-10 scale) • Toxic ingredient alerts • Basic health risk warnings • Hormone disruptor detection • Quick product scanning • Ingredient safety database ➤ Works where you shop SkinCosmo is designed to work seamlessly in your browser; no copying or pasting required. Use it on Amazon, Sephora, Ulta, Target, and across cosmetic retail sites. SkinCosmo for Chrome works across: • Amazon Beauty • Sephora • Ulta Beauty • Target • CVS • And every other beauty retailer’s website! Protect Your Health, One Product at a Time We believe you deserve to know what you're putting on your body. SkinCosmo gives you the power to make informed decisions about cosmetic safety, backed by scientific research and transparent analysis.

Detailed Findings

64 total

YARA Rule Matches

8 rules

Indicators of Compromise

Network indicators, suspicious strings, and potential IoCs extracted during analysis

URLs
17
IP Addresses
5
Domains
67
Strings
89

All Indicators · 89

URL
detected Domain: urlobj.search

XIOC detected Domain: urlobj.search

extracted_from_files

Domain
detected Domain: ingredient.safety

XIOC detected Domain: ingredient.safety

extracted_from_files

IP
detected IP: e::bef

XIOC detected IP: e::bef

extracted_from_files

URL
detected URL: http://www.w3.org/2000/svg',

XIOC detected URL: http://www.w3.org/2000/svg',

extracted_from_files

URL
detected URL: https://api.skincosmo.com/v1/analyze',

XIOC detected URL: https://api.skincosmo.com/v1/analyze',

extracted_from_files

URL
detected URL: https://api.skincosmo.com/v1/ingredients',

XIOC detected URL: https://api.skincosmo.com/v1/ingredients',

extracted_from_files

URL
detected URL: https://api.skincosmo.com/v1/products'

XIOC detected URL: https://api.skincosmo.com/v1/products'

extracted_from_files

URL
detected URL: https://skincosmo.com/*

XIOC detected URL: https://skincosmo.com/*

extracted_from_files

URL
detected URL: https://skincosmo.com

XIOC detected URL: https://skincosmo.com

extracted_from_files

URL
detected URL: https://*.supabase.co

XIOC detected URL: https://*.supabase.co

extracted_from_files

URL
detected URL: https://fonts.googleapis.com

XIOC detected URL: https://fonts.googleapis.com

extracted_from_files

URL
detected URL: https://fonts.gstatic.com

XIOC detected URL: https://fonts.gstatic.com

extracted_from_files

URL
detected URL: https://fonts.googleapis.com/css2?family=Playfair+Display:wght@700&family=Inter:wght@400;600&family=Roboto+Mono:wght@400&display=swap

XIOC detected URL: https://fonts.googleapis.com/css2?family=Playfair+Display:wght@700&family=Inter:wght@400;600&family=Roboto+Mono:wght@400&display=swap

extracted_from_files

URL
detected URL: https://fonts.googleapis.com/css2?family=Playfair+Display:wght@700&family=Inter:wght@400;600&family=Roboto+Mono:wght@400&display=swap');

XIOC detected URL: https://fonts.googleapis.com/css2?family=Playfair+Display:wght@700&family=Inter:wght@400;600&family=Roboto+Mono:wght@400&display=swap');

extracted_from_files

Domain
detected Domain: ingredientinfo.safety

XIOC detected Domain: ingredientinfo.safety

extracted_from_files

Other
detected Email: [email protected]

XIOC detected Email: [email protected]

extracted_from_files

URL
detected URL: https://skincosmo.com/auth/login?source=extension_install',

XIOC detected URL: https://skincosmo.com/auth/login?source=extension_install',

extracted_from_files

URL
detected URL: https://skincosmo.com/api',

XIOC detected URL: https://skincosmo.com/api',

extracted_from_files

URL
detected URL: https://skincosmo.com',

XIOC detected URL: https://skincosmo.com',

extracted_from_files

URL
detected URL: https://wvhrmhtyhhgcqwhhsmly.supabase.co',

XIOC detected URL: https://wvhrmhtyhhgcqwhhsmly.supabase.co',

extracted_from_files

URL
detected URL: https://clients2.google.com/service/update2/crx

XIOC detected URL: https://clients2.google.com/service/update2/crx

extracted_from_files

Domain
detected Domain: window.config.website

XIOC detected Domain: window.config.website

extracted_from_files

Domain
detected Domain: console.info

XIOC detected Domain: console.info

extracted_from_files

Domain
detected Domain: ing.safety

XIOC detected Domain: ing.safety

extracted_from_files

Domain
detected Domain: cacheditem.data

XIOC detected Domain: cacheditem.data

extracted_from_files

Domain
detected Domain: data.map

XIOC detected Domain: data.map

extracted_from_files

Domain
detected Domain: hasharray.map

XIOC detected Domain: hasharray.map

extracted_from_files

Domain
detected Domain: supabaseproduct.safety

XIOC detected Domain: supabaseproduct.safety

extracted_from_files

Domain
detected Domain: supabaseproduct.eu

XIOC detected Domain: supabaseproduct.eu

extracted_from_files

Domain
detected Domain: supabaseproduct.skin

XIOC detected Domain: supabaseproduct.skin

extracted_from_files

Domain
detected Domain: supabaseproduct.page

XIOC detected Domain: supabaseproduct.page

extracted_from_files

Domain
detected Domain: supabaseproduct.star

XIOC detected Domain: supabaseproduct.star

extracted_from_files

Domain
detected Domain: supabaseproduct.review

XIOC detected Domain: supabaseproduct.review

extracted_from_files

Domain
detected Domain: matches.map

XIOC detected Domain: matches.map

extracted_from_files

Domain
detected Domain: style.id

XIOC detected Domain: style.id

extracted_from_files

Domain
detected Domain: ingredient-pill.safe

XIOC detected Domain: ingredient-pill.safe

extracted_from_files

Domain
detected Domain: stepel.id

XIOC detected Domain: stepel.id

extracted_from_files

Domain
detected Domain: step.id

XIOC detected Domain: step.id

extracted_from_files

Domain
detected Domain: score.name

XIOC detected Domain: score.name

extracted_from_files

Domain
detected Domain: warnings.map

XIOC detected Domain: warnings.map

extracted_from_files

Domain
detected Domain: api.skincosmo.com

XIOC detected Domain: api.skincosmo.com

extracted_from_files

Domain
detected Domain: performance.now

XIOC detected Domain: performance.now

extracted_from_files

Domain
detected Domain: ingredients.map

XIOC detected Domain: ingredients.map

extracted_from_files

Domain
detected Domain: ing.name

XIOC detected Domain: ing.name

extracted_from_files

Domain
detected Domain: a.name

XIOC detected Domain: a.name

extracted_from_files

Domain
detected Domain: b.name

XIOC detected Domain: b.name

extracted_from_files

Domain
detected Domain: sortedingredients.map

XIOC detected Domain: sortedingredients.map

extracted_from_files

Domain
detected Domain: allnames.map

XIOC detected Domain: allnames.map

extracted_from_files

Domain
detected Domain: productinfo.skin

XIOC detected Domain: productinfo.skin

extracted_from_files

Domain
detected Domain: productinfo.star

XIOC detected Domain: productinfo.star

extracted_from_files

Domain
detected Domain: productinfo.review

XIOC detected Domain: productinfo.review

extracted_from_files

Domain
detected Domain: mapping.name

XIOC detected Domain: mapping.name

extracted_from_files

Domain
detected Domain: attr.name

XIOC detected Domain: attr.name

extracted_from_files

Domain
detected Domain: item.name

XIOC detected Domain: item.name

extracted_from_files

Domain
detected Domain: www.w3.org

XIOC detected Domain: www.w3.org

extracted_from_files

Domain
detected Domain: dbproduct.safety

XIOC detected Domain: dbproduct.safety

extracted_from_files

Domain
detected Domain: dbproduct.eu

XIOC detected Domain: dbproduct.eu

extracted_from_files

Domain
detected Domain: dbproduct.star

XIOC detected Domain: dbproduct.star

extracted_from_files

Domain
detected Domain: dbproduct.review

XIOC detected Domain: dbproduct.review

extracted_from_files

Domain
detected Domain: amazon.com

XIOC detected Domain: amazon.com

extracted_from_files

Domain
detected Domain: existingproduct.ai

XIOC detected Domain: existingproduct.ai

extracted_from_files

Domain
detected Domain: result.safety

XIOC detected Domain: result.safety

extracted_from_files

Domain
detected Domain: fonts.googleapis.com

XIOC detected Domain: fonts.googleapis.com

extracted_from_files

Domain
detected Domain: fonts.gstatic.com

XIOC detected Domain: fonts.gstatic.com

extracted_from_files

Domain
detected Domain: expand-button.info

XIOC detected Domain: expand-button.info

extracted_from_files

Domain
detected Domain: website.com

XIOC detected Domain: website.com

extracted_from_files

Domain
detected Domain: ingredient.name

XIOC detected Domain: ingredient.name

extracted_from_files

Domain
detected Domain: dbproduct.ai

XIOC detected Domain: dbproduct.ai

extracted_from_files

Domain
detected Domain: sender.tab.id

XIOC detected Domain: sender.tab.id

extracted_from_files

Domain
detected Domain: wvhrmhtyhhgcqwhhsmly.supabase.co

XIOC detected Domain: wvhrmhtyhhgcqwhhsmly.supabase.co

extracted_from_files

Domain
detected Domain: user.id

XIOC detected Domain: user.id

extracted_from_files

Domain
detected Domain: clients2.google.com

XIOC detected Domain: clients2.google.com

extracted_from_files

Domain
detected Domain: supabase.co

XIOC detected Domain: supabase.co

extracted_from_files

Domain
detected Domain: currentuser.id

XIOC detected Domain: currentuser.id

extracted_from_files

Domain
detected Domain: window.open

XIOC detected Domain: window.open

extracted_from_files

Domain
detected Domain: this.user.id

XIOC detected Domain: this.user.id

extracted_from_files

Domain
detected Domain: data.user.id

XIOC detected Domain: data.user.id

extracted_from_files

Domain
detected Domain: data.user.email

XIOC detected Domain: data.user.email

extracted_from_files

Domain
detected Domain: skincosmo.com

XIOC detected Domain: skincosmo.com

extracted_from_files

Domain
detected Domain: tab.id

XIOC detected Domain: tab.id

extracted_from_files

Domain
detected Domain: chrome.sidepanel.open

XIOC detected Domain: chrome.sidepanel.open

extracted_from_files

Domain
detected Domain: sender.tab

XIOC detected Domain: sender.tab

extracted_from_files

IP
detected IP: e::af

XIOC detected IP: e::af

extracted_from_files

IP
detected IP: ::bef

XIOC detected IP: ::bef

extracted_from_files

IP
detected IP: ::af

XIOC detected IP: ::af

extracted_from_files

IP
detected IP: d::bef

XIOC detected IP: d::bef

extracted_from_files

Domain
detected Domain: user.email

XIOC detected Domain: user.email

extracted_from_files

Domain
detected Domain: date.now

XIOC detected Domain: date.now

extracted_from_files

Domain
detected Domain: info.safety

XIOC detected Domain: info.safety

extracted_from_files

Security Analysis Summary

Security Analysis Overview

SkinCosmo - Scan Cosmetic Ingredients Online is a Chrome Web Store extension published by [email protected]. Version 1.0.1 has been analyzed by the Risky Plugins security platform, receiving a risk score of 61.84/100 (MEDIUM risk) based on 153 security findings.

Risk Assessment

This extension presents high security risk. Significant concerns were identified during analysis. It is not recommended for use in sensitive or production environments without thorough review.

Findings Breakdown

  • High: 37 finding(s)
  • Medium: 116 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

SkinCosmo - Scan Cosmetic Ingredients Online is published by [email protected] on the Chrome Web Store marketplace. The extension has approximately 9 users.

Recommendation

This extension is not recommended for installation without thorough manual review. Consider alternatives with lower risk scores, or contact the developer to address the identified security concerns.

Frequently Asked Questions