Firefox Add-ons Verified

Jetstream

by Jetstream · 6 users
9da29f60-ab8e-5ac1-82b0-c16aa7bc99a5 | v3.19.0
85/ 100
CRITICAL risk
No change since v3.18.0
Risk verdict
Do not install

Score-based assessment (critical risk, 85/100). No analyst review available.

Analysis record

Analysed
6 days ago
Version
v3.19.0
Artifact
SHA256 2F5…928
Source
Findings (non-IoC)

Evidence ledger

Ranked by severity · findings with a source location link to the code viewer

339 detail rows

YARA Rule Matches

19 rules
SeverityRuleHitsFilesMetadata
LOWServerHostnameNotVerified 1
AppWrapper-ioZpd4xu.js
-
LOWLocalStorageShouldNotBeUsed 6
contentScript.jsutils-DL3wXGRG.jsserviceWorker.js +3 more
-
LOWDebuggerStatementsShouldNotBeUsed 5
assets/js/monaco/vs/wgsl-BhLXMOR0.jsassets/js/monaco/vs/coffee-Bu45yuWE.jsassets/js/monaco/vs/typescript-_2t_511t.js +2 more
-
LOWNoUseEval 1
assets/js/monaco/vs/loader.js
-
LOWNoUseWeakRandom 10
assets/js/monaco/vs/editorWorkerHost-fVE1cjcC.jscontentScript.jsassets/js/monaco/vs/editor-KLE6jdfb.js +7 more
-
LOWpostinstall file download 52
ExtensionThemeApplier.cssassets/js/monaco/vs/cypher-DVThT8BS.jsHeaderWhatsNewPopover-Cs1VRKlq.js +49 more
-
LOWcredential git credentials 1
assets/js/monaco/vs/basic-languages/monaco.contribution.js
-
LOWUntrustedContentShouldNotBeIncluded 1
assets/js/monaco/vs/loader.js
-
LOWSQLInjection 1
assets/js/monaco/vs/editor-KLE6jdfb.js
-
LOWpostinstall file manipulation 48
utils-DL3wXGRG.jsassets/js/monaco/vs/powerquery-Dt-g_2cc.jsassets/js/monaco/vs/csharp-CX28MZyh.js +45 more
-
LOWOriginsNotVerified 2
assets/js/monaco/vs/editorWorkerHost-fVE1cjcC.jsassets/js/monaco/vs/index-CBVt3dzv.js
-
LOWpostinstall crypto operations 28
assets/js/monaco/vs/ecl-30fUercY.jsExtensionThemeApplier-D_2WCKMa.jsassets/js/monaco/vs/freemarker2-FWreY7v7.js +25 more
-
LOWpostinstall network communication 33
serviceWorker.jsassets/js/monaco/vs/powerquery-Dt-g_2cc.jsassets/js/monaco/vs/editor-KLE6jdfb.js +30 more
-
LOWpostinstall environment access 28
assets/js/monaco/vs/julia-BwzEvaQw.jsassets/js/monaco/vs/editorWorkerHost-fVE1cjcC.jsassets/js/monaco/vs/editor-KLE6jdfb.js +25 more
-
LOWpostinstall registry modification 9
contentScript.jsExtensionThemeApplier-D_2WCKMa.jsassets/js/monaco/vs/toggleHighContrast-qGX7E9o7.js +6 more
-
LOWpostinstall obfuscation 43
assets/js/monaco/vs/powerquery-Dt-g_2cc.jsassets/js/monaco/vs/css-CaeNmE3S.jsassets/js/monaco/vs/scss-C1cmLt9V.js +40 more
-
LOWpostinstall system command 39
assets/js/monaco/vs/julia-BwzEvaQw.jsExtensionThemeApplier.cssMETA-INF/manifest.mf +36 more
-
LOWpostinstall persistence mechanism 15
assets/js/monaco/vs/monaco.contribution-BgRy6xDf.jssrc-CK0BF-mO.jsAppWrapper-ioZpd4xu.js +12 more
-
LOWcredential env files 8
serviceWorker.jsapp.jsAppWrapper-ioZpd4xu.js +5 more
-

Network Indicators

Concrete URLs, domains, IPs, emails, and hashes extracted from the analyzed artifact.

485 total
...

Network indicators are queued for lazy loading

Scroll this section into view to load the detailed rows.

Publisher Evidence

Limited evidence

Jetstream

Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.

Firefox does not expose the same publisher verification data as IDE stores, so this score is deliberately conservative.

42
Noisy-finding weight
x1.00
Publisher domain
getjetstream.app
Observed
Store verification signal
Limited signal
Limited
Extension portfolio
2
Portfolio

13 evidence rows available.

Finding Categories

3
Obfuscation
5
Network
485
IoC Indicators

YARA Rules Matched

19 rules(331 hits)
ServerHostnameNotVerified LocalStorageShouldNotBeUsed DebuggerStatementsShouldNotBeUsed NoUseEval NoUseWeakRandom postinstall file download credential git credentials UntrustedContentShouldNotBeIncluded SQLInjection postinstall file manipulation OriginsNotVerified postinstall crypto operations postinstall network communication postinstall environment access postinstall registry modification postinstall obfuscation +3 more

Requested Permissions

10 permissions
cookies

Read and modify cookies on all sites

High
storage
Low
https://*.cloudforce.com/*
Low
https://*.force.com/*
Low
https://*.lightning.force.com/*
Low
https://*.salesforce-setup.com/*
Low
https://*.salesforce.com/*
Low
https://*.visual.force.com/*
Low
https://*.visualforce.com/*
Low
https://getjetstream.app/web-extension/*
Low

Security Analysis Summary

Security Analysis Overview

Jetstream is a Firefox Add-ons extension published by Jetstream. Version 3.19.0 has been analyzed by the Risky Plugins security platform, receiving a risk score of 85/100 (CRITICAL risk) based on 824 security findings.

Risk Assessment

This extension presents critical security risk. Severe issues were detected, potentially including malware indicators, exposed secrets, or dangerous behaviors. Installation is strongly discouraged until these issues are addressed.

Findings Breakdown

  • High: 2 finding(s)
  • Medium: 491 finding(s)
  • Low: 331 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

Jetstream is published by Jetstream on the Firefox Add-ons marketplace. The extension has approximately 6 users.

Recommendation

This extension is not recommended for installation without thorough manual review. Consider alternatives with lower risk scores, or contact the developer to address the identified security concerns.

Firefox version history

Risk trend by version

30 analyzed versions. Each point is the latest successful scan for that version; failed zero-score scans are hidden. Dates are based on first seen by risky plugins.

Selected
85
Change since first
+20
Change from previous
No change
Versions:
First analyzed version
2.14.1
Jan 24, 2026
Risk range
61 to 85
Across analyzed versions
Latest analyzed version
3.19.0
Sep 14, 2026
Selected version
critical
Version
v3.19.0
6 days ago
Risk score
85
Findings
825
Change vs previous
No change

Pick any point on the chart to explore that version's code below.

About This Extension

Jetstream is built for administrators, developers, quality assurance, or power users that want to speed up your management of Salesforce. Jetstream comes with an advanced query builder for viewing records, a powerful data loader for making changes to your record data, and many more features! Use of the Browser Extension requires a professional subscription to Jetstream. If you want to use Jetstream for free, visit https://getjetstream.app.

Frequently Asked Questions