Is "Heimdall" on Chrome Web Store Safe to Install?
This Chrome extension allow you to access our corp's network, with a secure-by-default settings.
Risk Assessment
Analyzed425 security findings detected across all analyzers
Chrome extension requesting 14 permissions
Severity Breakdown
Finding Categories
YARA Rules Matched
11 rules(57 hits)Requested Permissions
14 permissionsControl the browser's proxy settings
Manage other installed extensions
Access and modify data on every website you visit
Access your identity and sign-in tokens
Intercept, modify, and block all network requests
Read and modify cookies on all sites
Manage, modify, and monitor downloads
About This Extension
Detailed Findings
63 totalYARA Rule Matches
11 rulesIndicators of Compromise
Network indicators, suspicious strings, and potential IoCs extracted during analysis
All Indicators · 332
detected IP: a:: XIOC detected IP: a::
extracted_from_files
detected Domain: e.scope.off XIOC detected Domain: e.scope.off
extracted_from_files
detected Domain: o.style XIOC detected Domain: o.style
extracted_from_files
detected Domain: godebugs.info XIOC detected Domain: godebugs.info
extracted_from_files
detected Domain: time.date XIOC detected Domain: time.date
extracted_from_files
detected Domain: value.call XIOC detected Domain: value.call
extracted_from_files
detected Domain: github.com XIOC detected Domain: github.com
extracted_from_files
detected IP: e:: XIOC detected IP: e::
extracted_from_files
detected IP: :: XIOC detected IP: ::
extracted_from_files
detected Domain: time.now XIOC detected Domain: time.now
extracted_from_files
detected Domain: runtime.run XIOC detected Domain: runtime.run
extracted_from_files
detected Domain: unicode.to XIOC detected Domain: unicode.to
extracted_from_files
detected Domain: sync.map XIOC detected Domain: sync.map
extracted_from_files
detected Domain: errors.new XIOC detected Domain: errors.new
extracted_from_files
detected Domain: reflect.zero XIOC detected Domain: reflect.zero
extracted_from_files
detected Domain: reflect.new XIOC detected Domain: reflect.new
extracted_from_files
detected Domain: sodipodi.sourceforge.net XIOC detected Domain: sodipodi.sourceforge.net
extracted_from_files
detected Domain: www.inkscape.org XIOC detected Domain: www.inkscape.org
extracted_from_files
detected Domain: sha256.new XIOC detected Domain: sha256.new
extracted_from_files
detected Domain: sha1.new XIOC detected Domain: sha1.new
extracted_from_files
detected Domain: md5.new XIOC detected Domain: md5.new
extracted_from_files
detected Domain: sha512.new XIOC detected Domain: sha512.new
extracted_from_files
detected Domain: fmtsort.compare XIOC detected Domain: fmtsort.compare
extracted_from_files
detected Domain: www.google.com XIOC detected Domain: www.google.com
extracted_from_files
detected Domain: vuejs.org XIOC detected Domain: vuejs.org
extracted_from_files
detected Domain: heimdall.susercontent.io XIOC detected Domain: heimdall.susercontent.io
extracted_from_files
detected Domain: httpbin.org XIOC detected Domain: httpbin.org
extracted_from_files
detected Domain: performance.now XIOC detected Domain: performance.now
extracted_from_files
detected Domain: arco-menu-icon-suffix.is XIOC detected Domain: arco-menu-icon-suffix.is
extracted_from_files
detected Domain: www.w3.org XIOC detected Domain: www.w3.org
extracted_from_files
detected Domain: this.run XIOC detected Domain: this.run
extracted_from_files
detected Domain: this.next XIOC detected Domain: this.next
extracted_from_files
detected Domain: e.style XIOC detected Domain: e.style
extracted_from_files
detected Domain: object.is XIOC detected Domain: object.is
extracted_from_files
detected Domain: fu.call XIOC detected Domain: fu.call
extracted_from_files
detected Domain: cd.call XIOC detected Domain: cd.call
extracted_from_files
detected Domain: o4509483989270528.ingest.de.sentry.io XIOC detected Domain: o4509483989270528.ingest.de.sentry.io
extracted_from_files
detected Domain: e.dep.sc XIOC detected Domain: e.dep.sc
extracted_from_files
detected Domain: this.sc XIOC detected Domain: this.sc
extracted_from_files
detected Domain: this.map XIOC detected Domain: this.map
extracted_from_files
detected Domain: n.map XIOC detected Domain: n.map
extracted_from_files
detected Domain: n.sc XIOC detected Domain: n.sc
extracted_from_files
detected Domain: t.next XIOC detected Domain: t.next
extracted_from_files
detected Domain: e.next XIOC detected Domain: e.next
extracted_from_files
detected Domain: c.next XIOC detected Domain: c.next
extracted_from_files
detected Domain: a.call XIOC detected Domain: a.call
extracted_from_files
detected Domain: n.call XIOC detected Domain: n.call
extracted_from_files
detected Domain: r.next XIOC detected Domain: r.next
extracted_from_files
detected Domain: e.map XIOC detected Domain: e.map
extracted_from_files
detected Domain: t.map XIOC detected Domain: t.map
extracted_from_files
detected Domain: r.map XIOC detected Domain: r.map
extracted_from_files
detected Domain: s.ec XIOC detected Domain: s.ec
extracted_from_files
detected Domain: object.prototype.propertyisenumerable.call XIOC detected Domain: object.prototype.propertyisenumerable.call
extracted_from_files
detected Domain: f.run XIOC detected Domain: f.run
extracted_from_files
detected Domain: i.call XIOC detected Domain: i.call
extracted_from_files
detected Domain: s.call XIOC detected Domain: s.call
extracted_from_files
detected Domain: has.call XIOC detected Domain: has.call
extracted_from_files
detected Domain: r.call XIOC detected Domain: r.call
extracted_from_files
detected Domain: e.props.to XIOC detected Domain: e.props.to
extracted_from_files
detected Domain: t.props.to XIOC detected Domain: t.props.to
extracted_from_files
detected Domain: e.target XIOC detected Domain: e.target
extracted_from_files
detected Domain: t.target XIOC detected Domain: t.target
extracted_from_files
detected Domain: e.to XIOC detected Domain: e.to
extracted_from_files
detected Domain: o.id XIOC detected Domain: o.id
extracted_from_files
detected Domain: e.id XIOC detected Domain: e.id
extracted_from_files
detected Domain: e.exposed XIOC detected Domain: e.exposed
extracted_from_files
detected Domain: e.data XIOC detected Domain: e.data
extracted_from_files
detected Domain: n.name XIOC detected Domain: n.name
extracted_from_files
detected Domain: o.name XIOC detected Domain: o.name
extracted_from_files
detected Domain: x.id XIOC detected Domain: x.id
extracted_from_files
detected Domain: e.name XIOC detected Domain: e.name
extracted_from_files
detected Domain: w.data XIOC detected Domain: w.data
extracted_from_files
detected Domain: te.style XIOC detected Domain: te.style
extracted_from_files
detected Domain: de.is XIOC detected Domain: de.is
extracted_from_files
detected Domain: y.name XIOC detected Domain: y.name
extracted_from_files
detected Domain: s.name XIOC detected Domain: s.name
extracted_from_files
detected Domain: l.app XIOC detected Domain: l.app
extracted_from_files
detected Domain: t.call XIOC detected Domain: t.call
extracted_from_files
detected Domain: e.call XIOC detected Domain: e.call
extracted_from_files
detected Domain: c.call XIOC detected Domain: c.call
extracted_from_files
detected Domain: m.id XIOC detected Domain: m.id
extracted_from_files
detected Domain: g.suspense.next XIOC detected Domain: g.suspense.next
extracted_from_files
detected Domain: g.next XIOC detected Domain: g.next
extracted_from_files
detected Domain: de.id XIOC detected Domain: de.id
extracted_from_files
detected Domain: g.scope.off XIOC detected Domain: g.scope.off
extracted_from_files
detected Domain: ce.style XIOC detected Domain: ce.style
extracted_from_files
detected Domain: date.now XIOC detected Domain: date.now
extracted_from_files
detected Domain: m.target XIOC detected Domain: m.target
extracted_from_files
detected Domain: array.prototype.slice.call XIOC detected Domain: array.prototype.slice.call
extracted_from_files
detected Domain: time.zone XIOC detected Domain: time.zone
extracted_from_files
detected Domain: t.style XIOC detected Domain: t.style
extracted_from_files
detected Domain: t.top XIOC detected Domain: t.top
extracted_from_files
detected Domain: o.top-n.top XIOC detected Domain: o.top-n.top
extracted_from_files
detected Domain: n.app XIOC detected Domain: n.app
extracted_from_files
detected Domain: e.el.style XIOC detected Domain: e.el.style
extracted_from_files
detected Domain: t.top-n.top XIOC detected Domain: t.top-n.top
extracted_from_files
detected Domain: p.target XIOC detected Domain: p.target
extracted_from_files
detected Domain: c.style XIOC detected Domain: c.style
extracted_from_files
detected Domain: m.record.name XIOC detected Domain: m.record.name
extracted_from_files
detected Domain: d.record.name XIOC detected Domain: d.record.name
extracted_from_files
detected Domain: d.name XIOC detected Domain: d.name
extracted_from_files
detected Domain: location.search XIOC detected Domain: location.search
extracted_from_files
detected Domain: n.host XIOC detected Domain: n.host
extracted_from_files
detected Domain: location.host XIOC detected Domain: location.host
extracted_from_files
detected Domain: document.documentelement.style XIOC detected Domain: document.documentelement.style
extracted_from_files
detected Domain: h.to XIOC detected Domain: h.to
extracted_from_files
detected Domain: x.delta XIOC detected Domain: x.delta
extracted_from_files
detected Domain: o.to XIOC detected Domain: o.to
extracted_from_files
detected Domain: o.map XIOC detected Domain: o.map
extracted_from_files
detected Domain: p.name XIOC detected Domain: p.name
extracted_from_files
detected Domain: m.keys.map XIOC detected Domain: m.keys.map
extracted_from_files
detected Domain: m.name XIOC detected Domain: m.name
extracted_from_files
detected Domain: window.top XIOC detected Domain: window.top
extracted_from_files
detected Domain: e.type.name XIOC detected Domain: e.type.name
extracted_from_files
detected Domain: o.call XIOC detected Domain: o.call
extracted_from_files
detected Domain: o.target XIOC detected Domain: o.target
extracted_from_files
detected Domain: this.target XIOC detected Domain: this.target
extracted_from_files
detected Domain: r.top XIOC detected Domain: r.top
extracted_from_files
detected Domain: vn.call XIOC detected Domain: vn.call
extracted_from_files
detected Domain: ke.top XIOC detected Domain: ke.top
extracted_from_files
detected Domain: s.top XIOC detected Domain: s.top
extracted_from_files
detected Domain: di.name XIOC detected Domain: di.name
extracted_from_files
detected Domain: fi.name XIOC detected Domain: fi.name
extracted_from_files
detected Domain: ci.name XIOC detected Domain: ci.name
extracted_from_files
detected Domain: ui.name XIOC detected Domain: ui.name
extracted_from_files
detected Domain: ai.name XIOC detected Domain: ai.name
extracted_from_files
detected Domain: qo.name XIOC detected Domain: qo.name
extracted_from_files
detected Domain: gi.name XIOC detected Domain: gi.name
extracted_from_files
detected Domain: mi.name XIOC detected Domain: mi.name
extracted_from_files
detected Domain: h.data XIOC detected Domain: h.data
extracted_from_files
detected Domain: h.target XIOC detected Domain: h.target
extracted_from_files
detected Domain: b.call XIOC detected Domain: b.call
extracted_from_files
detected Domain: hi.name XIOC detected Domain: hi.name
extracted_from_files
detected Domain: r.top-t.top XIOC detected Domain: r.top-t.top
extracted_from_files
detected Domain: vi.name XIOC detected Domain: vi.name
extracted_from_files
detected Domain: wi.name XIOC detected Domain: wi.name
extracted_from_files
detected Domain: ho.name XIOC detected Domain: ho.name
extracted_from_files
detected Domain: bi.name XIOC detected Domain: bi.name
extracted_from_files
detected Domain: yi.name XIOC detected Domain: yi.name
extracted_from_files
detected Domain: d.call XIOC detected Domain: d.call
extracted_from_files
detected Domain: se.call XIOC detected Domain: se.call
extracted_from_files
detected Domain: k.value.top XIOC detected Domain: k.value.top
extracted_from_files
detected Domain: d.top XIOC detected Domain: d.top
extracted_from_files
detected Domain: o.top XIOC detected Domain: o.top
extracted_from_files
detected Domain: c.top XIOC detected Domain: c.top
extracted_from_files
detected Domain: n.top XIOC detected Domain: n.top
extracted_from_files
detected Domain: r.bottom-t.top XIOC detected Domain: r.bottom-t.top
extracted_from_files
detected Domain: ei.name XIOC detected Domain: ei.name
extracted_from_files
detected Domain: e.dot XIOC detected Domain: e.dot
extracted_from_files
detected Domain: i.name XIOC detected Domain: i.name
extracted_from_files
detected Domain: xi.name XIOC detected Domain: xi.name
extracted_from_files
detected Domain: si.name XIOC detected Domain: si.name
extracted_from_files
detected Domain: be.call XIOC detected Domain: be.call
extracted_from_files
detected Domain: r.target XIOC detected Domain: r.target
extracted_from_files
detected Domain: pi.name XIOC detected Domain: pi.name
extracted_from_files
detected Domain: ti.name XIOC detected Domain: ti.name
extracted_from_files
detected Domain: mo.name XIOC detected Domain: mo.name
extracted_from_files
detected Domain: jo.name XIOC detected Domain: jo.name
extracted_from_files
detected Domain: oi.name XIOC detected Domain: oi.name
extracted_from_files
detected Domain: c.target XIOC detected Domain: c.target
extracted_from_files
detected Domain: li.name XIOC detected Domain: li.name
extracted_from_files
detected Domain: ni.name XIOC detected Domain: ni.name
extracted_from_files
detected Domain: ji.name XIOC detected Domain: ji.name
extracted_from_files
detected Domain: ri.name XIOC detected Domain: ri.name
extracted_from_files
detected Domain: e.mini XIOC detected Domain: e.mini
extracted_from_files
detected Domain: document.body.style XIOC detected Domain: document.body.style
extracted_from_files
detected Domain: ii.name XIOC detected Domain: ii.name
extracted_from_files
detected Domain: zi.name XIOC detected Domain: zi.name
extracted_from_files
detected Domain: w.map XIOC detected Domain: w.map
extracted_from_files
detected Domain: m.call XIOC detected Domain: m.call
extracted_from_files
detected Domain: slice.call XIOC detected Domain: slice.call
extracted_from_files
detected Domain: i.value.map XIOC detected Domain: i.value.map
extracted_from_files
detected Domain: yo.name XIOC detected Domain: yo.name
extracted_from_files
detected Domain: vo.name XIOC detected Domain: vo.name
extracted_from_files
detected Domain: go.name XIOC detected Domain: go.name
extracted_from_files
detected Domain: s.id XIOC detected Domain: s.id
extracted_from_files
detected Domain: l.id XIOC detected Domain: l.id
extracted_from_files
detected Domain: e.messages.map XIOC detected Domain: e.messages.map
extracted_from_files
detected Domain: object.prototype.tostring.call XIOC detected Domain: object.prototype.tostring.call
extracted_from_files
detected Domain: er.name XIOC detected Domain: er.name
extracted_from_files
detected Domain: tr.name XIOC detected Domain: tr.name
extracted_from_files
detected Domain: ki.name XIOC detected Domain: ki.name
extracted_from_files
detected Domain: p.call XIOC detected Domain: p.call
extracted_from_files
detected Domain: a.map XIOC detected Domain: a.map
extracted_from_files
detected Domain: qi.name XIOC detected Domain: qi.name
extracted_from_files
detected Domain: or.name XIOC detected Domain: or.name
extracted_from_files
detected Domain: me.top XIOC detected Domain: me.top
extracted_from_files
detected Domain: e.top XIOC detected Domain: e.top
extracted_from_files
detected Domain: ne.target XIOC detected Domain: ne.target
extracted_from_files
detected Domain: nl.name XIOC detected Domain: nl.name
extracted_from_files
detected Domain: y.call XIOC detected Domain: y.call
extracted_from_files
detected Domain: t.dot XIOC detected Domain: t.dot
extracted_from_files
detected Domain: slots.dot XIOC detected Domain: slots.dot
extracted_from_files
detected Domain: tl.name XIOC detected Domain: tl.name
extracted_from_files
detected Domain: z.call XIOC detected Domain: z.call
extracted_from_files
detected Domain: el.name XIOC detected Domain: el.name
extracted_from_files
detected Domain: sl.name XIOC detected Domain: sl.name
extracted_from_files
detected Domain: ll.name XIOC detected Domain: ll.name
extracted_from_files
detected Domain: ne.call XIOC detected Domain: ne.call
extracted_from_files
detected Domain: qe.style.top XIOC detected Domain: qe.style.top
extracted_from_files
detected Domain: rl.name XIOC detected Domain: rl.name
extracted_from_files
detected Domain: ol.name XIOC detected Domain: ol.name
extracted_from_files
detected Domain: on.name XIOC detected Domain: on.name
extracted_from_files
detected Domain: s.value.channel XIOC detected Domain: s.value.channel
extracted_from_files
detected Domain: st.info XIOC detected Domain: st.info
extracted_from_files
detected Domain: dl.name XIOC detected Domain: dl.name
extracted_from_files
detected Domain: fl.name XIOC detected Domain: fl.name
extracted_from_files
detected Domain: cl.name XIOC detected Domain: cl.name
extracted_from_files
detected Domain: ul.name XIOC detected Domain: ul.name
extracted_from_files
detected Domain: al.name XIOC detected Domain: al.name
extracted_from_files
detected Domain: e.sdk.name XIOC detected Domain: e.sdk.name
extracted_from_files
detected Domain: crbug.com XIOC detected Domain: crbug.com
extracted_from_files
detected Domain: open.seatalk.io XIOC detected Domain: open.seatalk.io
extracted_from_files
detected Domain: accounts.google.com XIOC detected Domain: accounts.google.com
extracted_from_files
detected Domain: docs.sentry.io XIOC detected Domain: docs.sentry.io
extracted_from_files
detected Domain: s.run XIOC detected Domain: s.run
extracted_from_files
detected Domain: n.value.channel XIOC detected Domain: n.value.channel
extracted_from_files
detected Domain: u.host XIOC detected Domain: u.host
extracted_from_files
detected Domain: www.example.com XIOC detected Domain: www.example.com
extracted_from_files
detected Domain: t.sdk.name XIOC detected Domain: t.sdk.name
extracted_from_files
detected Domain: n.data XIOC detected Domain: n.data
extracted_from_files
detected Domain: e.host XIOC detected Domain: e.host
extracted_from_files
detected Domain: d.data XIOC detected Domain: d.data
extracted_from_files
detected Domain: t.name XIOC detected Domain: t.name
extracted_from_files
detected Domain: r.name XIOC detected Domain: r.name
extracted_from_files
detected Domain: u.target XIOC detected Domain: u.target
extracted_from_files
detected Domain: e.open XIOC detected Domain: e.open
extracted_from_files
detected Domain: a.name XIOC detected Domain: a.name
extracted_from_files
detected Domain: t.constructor.name XIOC detected Domain: t.constructor.name
extracted_from_files
detected Domain: object.prototype.hasownproperty.call XIOC detected Domain: object.prototype.hasownproperty.call
extracted_from_files
detected Domain: s.map XIOC detected Domain: s.map
extracted_from_files
detected Domain: e.chrome XIOC detected Domain: e.chrome
extracted_from_files
detected Domain: a.host XIOC detected Domain: a.host
extracted_from_files
detected Domain: i.host XIOC detected Domain: i.host
extracted_from_files
detected Domain: o.host XIOC detected Domain: o.host
extracted_from_files
detected Domain: n.to XIOC detected Domain: n.to
extracted_from_files
detected Domain: r.global XIOC detected Domain: r.global
extracted_from_files
detected Domain: c.data XIOC detected Domain: c.data
extracted_from_files
detected Domain: mn.post XIOC detected Domain: mn.post
extracted_from_files
detected Domain: 678342799015-0egnv2pnn6cmdai800mi8826233gkapb.apps.googleusercontent.com XIOC detected Domain: 678342799015-0egnv2pnn6cmdai800mi8826233gkapb.apps.googleusercontent.com
extracted_from_files
detected Domain: e.run XIOC detected Domain: e.run
extracted_from_files
detected Domain: o.run XIOC detected Domain: o.run
extracted_from_files
detected Domain: self.global XIOC detected Domain: self.global
extracted_from_files
detected Domain: window.global XIOC detected Domain: window.global
extracted_from_files
detected Domain: b.top XIOC detected Domain: b.top
extracted_from_files
detected Domain: n.id XIOC detected Domain: n.id
extracted_from_files
detected Domain: objecttostring.call XIOC detected Domain: objecttostring.call
extracted_from_files
detected Domain: chrome.downloads.search XIOC detected Domain: chrome.downloads.search
extracted_from_files
detected Domain: chromewebstore.google.com XIOC detected Domain: chromewebstore.google.com
extracted_from_files
detected Domain: n.email XIOC detected Domain: n.email
extracted_from_files
detected Domain: t.email XIOC detected Domain: t.email
extracted_from_files
detected Domain: chrome.runtime.id XIOC detected Domain: chrome.runtime.id
extracted_from_files
detected Domain: e.integrations.map XIOC detected Domain: e.integrations.map
extracted_from_files
detected Domain: o.data XIOC detected Domain: o.data
extracted_from_files
detected Domain: t.user.email XIOC detected Domain: t.user.email
extracted_from_files
detected Domain: t.user.id XIOC detected Domain: t.user.id
extracted_from_files
detected Domain: e.now XIOC detected Domain: e.now
extracted_from_files
detected Domain: n.mechanism.data XIOC detected Domain: n.mechanism.data
extracted_from_files
detected Domain: t.data XIOC detected Domain: t.data
extracted_from_files
detected Domain: heimdall.shopee.sg XIOC detected Domain: heimdall.shopee.sg
extracted_from_files
detected Domain: e.spans.map XIOC detected Domain: e.spans.map
extracted_from_files
detected Domain: o.contexts.trace.data XIOC detected Domain: o.contexts.trace.data
extracted_from_files
detected Domain: e.contexts.trace.data XIOC detected Domain: e.contexts.trace.data
extracted_from_files
detected Domain: i.data XIOC detected Domain: i.data
extracted_from_files
detected Domain: e.breadcrumbs.map XIOC detected Domain: e.breadcrumbs.map
extracted_from_files
detected Domain: g.name XIOC detected Domain: g.name
extracted_from_files
detected Domain: c.prototype.int XIOC detected Domain: c.prototype.int
extracted_from_files
detected Domain: this.tail.next XIOC detected Domain: this.tail.next
extracted_from_files
detected MD5 Hash: da360d4fbad10b369c8f9bf2dcdff6c3 XIOC detected MD5 Hash: da360d4fbad10b369c8f9bf2dcdff6c3
extracted_from_files
detected URL: https://clients2.google.com/service/update2/crx XIOC detected URL: https://clients2.google.com/service/update2/crx
extracted_from_files
detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-FIAd8ZXb.js XIOC detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-FIAd8ZXb.js
extracted_from_files
detected Domain: t.read XIOC detected Domain: t.read
extracted_from_files
detected Domain: e.prototype.off XIOC detected Domain: e.prototype.off
extracted_from_files
detected Domain: e.eventemitter.call XIOC detected Domain: e.eventemitter.call
extracted_from_files
detected Domain: h.call XIOC detected Domain: h.call
extracted_from_files
detected Domain: o.read XIOC detected Domain: o.read
extracted_from_files
detected Domain: r.prototype.int XIOC detected Domain: r.prototype.int
extracted_from_files
detected Domain: t.buffer.prototype.set.name XIOC detected Domain: t.buffer.prototype.set.name
extracted_from_files
detected Domain: this.head.next XIOC detected Domain: this.head.next
extracted_from_files
detected Domain: this.states.next XIOC detected Domain: this.states.next
extracted_from_files
detected Domain: e.mobile XIOC detected Domain: e.mobile
extracted_from_files
detected Domain: e.extensions.map XIOC detected Domain: e.extensions.map
extracted_from_files
detected Domain: t.id XIOC detected Domain: t.id
extracted_from_files
detected Domain: e.hostpermissions.map XIOC detected Domain: e.hostpermissions.map
extracted_from_files
detected Domain: e.permissions.map XIOC detected Domain: e.permissions.map
extracted_from_files
detected Domain: i.id XIOC detected Domain: i.id
extracted_from_files
detected Domain: t.build XIOC detected Domain: t.build
extracted_from_files
detected Domain: i.download XIOC detected Domain: i.download
extracted_from_files
detected Domain: i.email XIOC detected Domain: i.email
extracted_from_files
detected Domain: e.download XIOC detected Domain: e.download
extracted_from_files
detected Domain: e.email XIOC detected Domain: e.email
extracted_from_files
detected Domain: n.int XIOC detected Domain: n.int
extracted_from_files
detected Domain: t.mobile XIOC detected Domain: t.mobile
extracted_from_files
detected Domain: i.mobile XIOC detected Domain: i.mobile
extracted_from_files
detected Domain: clients2.google.com XIOC detected Domain: clients2.google.com
extracted_from_files
detected Domain: c.ws XIOC detected Domain: c.ws
extracted_from_files
detected Domain: navigator.useragentdata.mobile XIOC detected Domain: navigator.useragentdata.mobile
extracted_from_files
detected Domain: t.events XIOC detected Domain: t.events
extracted_from_files
detected Domain: e.events.map XIOC detected Domain: e.events.map
extracted_from_files
detected Domain: e.events XIOC detected Domain: e.events
extracted_from_files
detected Domain: t.download XIOC detected Domain: t.download
extracted_from_files
detected URL: http://www.w3.org/2000/svg XIOC detected URL: http://www.w3.org/2000/svg
extracted_from_files
detected URL: http://sodipodi.sourceforge.net/DTD/sodipodi-0.dtd XIOC detected URL: http://sodipodi.sourceforge.net/DTD/sodipodi-0.dtd
extracted_from_files
detected URL: http://www.inkscape.org/namespaces/inkscape XIOC detected URL: http://www.inkscape.org/namespaces/inkscape
extracted_from_files
detected URL: http://www.inkscape.org/) XIOC detected URL: http://www.inkscape.org/)
extracted_from_files
detected URL: https://github.com/espressif/llvm-project XIOC detected URL: https://github.com/espressif/llvm-project
extracted_from_files
detected Domain: identity.email XIOC detected Domain: identity.email
extracted_from_files
detected URL: http://www.w3.org/1999/xlink XIOC detected URL: http://www.w3.org/1999/xlink
extracted_from_files
detected URL: https://vuejs.org/error-reference/#runtime-$ XIOC detected URL: https://vuejs.org/error-reference/#runtime-$
extracted_from_files
detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?assets/sw-DHc8n5Lz.js XIOC detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?assets/sw-DHc8n5Lz.js
extracted_from_files
detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?assets/off_screen-B0HqzvyI.js XIOC detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?assets/off_screen-B0HqzvyI.js
extracted_from_files
detected URL: https://da360d4fbad10b369c8f9bf2dcdff6c3@o4509483989270528.ingest.de.sentry.io/4509484004409424 XIOC detected URL: https://da360d4fbad10b369c8f9bf2dcdff6c3@o4509483989270528.ingest.de.sentry.io/4509484004409424
extracted_from_files
detected URL: https://www.google.com/gen_204 XIOC detected URL: https://www.google.com/gen_204
extracted_from_files
detected URL: http://www.inkscape.org/namespaces/inkscape'%20xmlns:sodipodi='http://sodipodi.sourceforge.net/DTD/sodipodi-0.dtd'%20xmlns='http://www.w3.org/2000/svg'%20xmlns:svg='http://www.w3.org/2000/svg'%3e%3csodipodi:namedview%20id='namedview21'%20pagecolor='%23505050'%20bordercolor='%23eeeeee'%20borderopacity='1'%20inkscape:showpageshadow='0'%20inkscape:pageopacity='0'%20inkscape:pagecheckerboard='0'%20inkscape:deskcolor='%23505050'%20showgrid='false'%20/%3e%3cg%20clip-path='url(%23clip0_710_6227)'%20id='g12'%20transform='translate(-10,-10)'%3e%3cpath%20d='m%2029.6,20.2273%20c%200,-0.7091%20-0.0636,-1.3909%20-0.1818,-2.0455%20H%2020%20V%2022.05%20h%205.3818%20c%20-0.2318,1.25%20-0.9363,2.3091%20-1.9954,3.0182%20v%202.5091%20h%203.2318%20C%2028.5091,25.8364%2029.6,23.2727%2029.6,20.2273%20Z'%20fill='%234285f4'%20id='path4'%20/%3e%3cpath%20d='m%2020,30%20c%202.7,0%204.9636,-0.8955%206.6181,-2.4227%20l%20-3.2318,-2.5091%20c%20-0.8954,0.6%20-2.0409,0.9545%20-3.3863,0.9545%20-2.6046,0%20-4.8091,-1.7591%20-5.5955,-4.1227%20h%20-3.3409%20v%202.5909%20C%2012.7091,27.7591%2016.0909,30%2020,30%20Z'%20fill='%2334a853'%20id='path6'%20/%3e%3cpath%20d='m%2014.4045,21.9%20c%20-0.2,-0.6%20-0.3136,-1.2409%20-0.3136,-1.9%200,-0.6591%200.1136,-1.3%200.3136,-1.9%20V%2015.5091%20H%2011.0636%20C%2010.3864,16.8591%2010,18.3864%2010,20%20c%200,1.6136%200.3864,3.1409%201.0636,4.4909%20z'%20fill='%23fbbc04'%20id='path8'%20/%3e%3cpath%20d='m%2020,13.9773%20c%201.4681,0%202.7863,0.5045%203.8227,1.4954%20l%202.8682,-2.8682%20C%2024.9591,10.9909%2022.6954,10%2020,10%20c%20-3.9091,0%20-7.2909,2.2409%20-8.9364,5.5091%20L%2014.4045,18.1%20C%2015.1909,15.7364%2017.3954,13.9773%2020,13.9773%20Z'%20fill='%23e94235'%20id='path10'%20/%3e%3c/g%3e%3cdefs%20id='defs17'%3e%3cclipPath%20id='clip0_710_6227'%3e%3crect%20width='20'%20height='20'%20fill='%23ffffff'%20transform='translate(10,10)'%20id='rect14'%20x='0'%20y='0'%20/%3e%3c/clipPath%3e%3c/defs%3e%3c/svg%3e XIOC detected URL: http://www.inkscape.org/namespaces/inkscape'%20xmlns:sodipodi='http://sodipodi.sourceforge.net/DTD/sodipodi-0.dtd'%20xmlns='http://www.w3.org/2000/svg'%20xmlns:svg='http://www.w3.org/2000/svg'%3e%3csodipodi:namedview%20id='namedview21'%20pagecolor='%23505050'%20bordercolor='%23eeeeee'%20borderopacity='1'%20inkscape:showpageshadow='0'%20inkscape:pageopacity='0'%20inkscape:pagecheckerboard='0'%20inkscape:deskcolor='%23505050'%20showgrid='false'%20/%3e%3cg%20clip-path='url(%23clip0_710_6227)'%20id='g12'%20transform='translate(-10,-10)'%3e%3cpath%20d='m%2029.6,20.2273%20c%200,-0.7091%20-0.0636,-1.3909%20-0.1818,-2.0455%20H%2020%20V%2022.05%20h%205.3818%20c%20-0.2318,1.25%20-0.9363,2.3091%20-1.9954,3.0182%20v%202.5091%20h%203.2318%20C%2028.5091,25.8364%2029.6,23.2727%2029.6,20.2273%20Z'%20fill='%234285f4'%20id='path4'%20/%3e%3cpath%20d='m%2020,30%20c%202.7,0%204.9636,-0.8955%206.6181,-2.4227%20l%20-3.2318,-2.5091%20c%20-0.8954,0.6%20-2.0409,0.9545%20-3.3863,0.9545%20-2.6046,0%20-4.8091,-1.7591%20-5.5955,-4.1227%20h%20-3.3409%20v%202.5909%20C%2012.7091,27.7591%2016.0909,30%2020,30%20Z'%20fill='%2334a853'%20id='path6'%20/%3e%3cpath%20d='m%2014.4045,21.9%20c%20-0.2,-0.6%20-0.3136,-1.2409%20-0.3136,-1.9%200,-0.6591%200.1136,-1.3%200.3136,-1.9%20V%2015.5091%20H%2011.0636%20C%2010.3864,16.8591%2010,18.3864%2010,20%20c%200,1.6136%200.3864,3.1409%201.0636,4.4909%20z'%20fill='%23fbbc04'%20id='path8'%20/%3e%3cpath%20d='m%2020,13.9773%20c%201.4681,0%202.7863,0.5045%203.8227,1.4954%20l%202.8682,-2.8682%20C%2024.9591,10.9909%2022.6954,10%2020,10%20c%20-3.9091,0%20-7.2909,2.2409%20-8.9364,5.5091%20L%2014.4045,18.1%20C%2015.1909,15.7364%2017.3954,13.9773%2020,13.9773%20Z'%20fill='%23e94235'%20id='path10'%20/%3e%3c/g%3e%3cdefs%20id='defs17'%3e%3cclipPath%20id='clip0_710_6227'%3e%3crect%20width='20'%20height='20'%20fill='%23ffffff'%20transform='translate(10,10)'%20id='rect14'%20x='0'%20y='0'%20/%3e%3c/clipPath%3e%3c/defs%3e%3c/svg%3e
extracted_from_files
detected URL: http://www.w3.org/2000/svg'%20xmlns:xlink='http://www.w3.org/1999/xlink'%3e%3ctitle%3eHeimdall%3c/title%3e%3cg%20id='Page-1'%20stroke='none'%20stroke-width='1'%20fill='none'%20fill-rule='evenodd'%3e%3cg%20id='test'%20fill='%23BE3144'%20fill-rule='nonzero'%3e%3cpath%20d='M480,0%20L480,180%20L0,180%20L0,0%20L480,0%20Z%20M41.8874584,14.6069364%20L24.8962656,14.6069364%20L24.8962656,164.433526%20L41.8874584,164.433526%20L42.094668,119.678046%20C42.094668,114.758686%2042.9580416,110.721603%2044.6847889,107.566796%20C46.4115361,104.411989%2050.0377053,99.8936639%2055.5632965,94.0118206%20L57.2209738,92.2472676%20L57.2209738,164.433526%20L74.4193763,164.433526%20L74.4193763,14.6069364%20L57.2209738,14.6069364%20L57.2209738,57.4374497%20C57.2209738,62.5706948%2056.3921351,66.7414564%2054.7344578,69.9497345%20C53.0767804,73.1580126%2049.4851462,77.7030734%2043.959555,83.5849166%20C43.3052087,84.2603436%2042.8039259,84.7728386%2042.4557065,85.1224017%20L42.2651425,85.3125878%20C42.0642467,85.511661%2041.938352,85.6308975%2041.8874584,85.6702974%20L41.8874584,14.6069364%20Z%20M119.591084,14.6069364%20L87.059166,14.6069364%20L87.059166,164.433526%20L119.591084,164.433526%20L119.591084,150.958758%20L104.257568,150.958758%20L104.257568,96.2576153%20L119.591084,96.2576153%20L119.591084,82.7828471%20L104.257568,82.7828471%20L104.257568,28.0817046%20L119.591084,28.0817046%20L119.591084,14.6069364%20Z%20M149.222066,14.6069364%20L132.023664,14.6069364%20L132.023664,164.433526%20L149.222066,164.433526%20L149.222066,14.6069364%20Z%20M193.979355,14.6069364%20L161.654647,14.6069364%20L161.654647,164.433526%20L178.853049,164.433526%20L177.817001,32.0920523%20L193.979355,164.433526%20L211.177757,164.433526%20L227.340111,32.0920523%20L226.304063,164.433526%20L243.502465,164.433526%20L243.502465,14.6069364%20L211.177757,14.6069364%20L202.474951,108.609486%20L193.979355,14.6069364%20Z%20M282.250673,14.6069364%20L255.935046,14.6069364%20L255.935046,164.433526%20L282.250673,164.433526%20C297.722329,164.433526%20305.458156,158.284326%20305.458156,145.985927%20L305.458156,33.2149497%20C305.458156,20.8096075%20297.722329,14.6069364%20282.250673,14.6069364%20Z%20M356.431735,14.6069364%20L327.215171,14.6069364%20L317.061898,164.433526%20L333.017042,164.433526%20L333.224252,161.385662%20C333.500531,157.642671%20333.914951,154.675013%20334.46751,152.48269%20C335.020069,150.290367%20336.125187,148.017836%20337.782865,145.665099%20C339.440542,143.312362%20342.065198,140.211026%20345.656832,136.361092%20L348.557767,133.152814%20L350.629864,164.433526%20L366.585008,164.433526%20L356.431735,14.6069364%20Z%20M396.215991,14.6069364%20L379.017588,14.6069364%20L379.017588,164.433526%20L411.342297,164.433526%20L411.342297,150.958758%20L396.215991,150.958758%20L396.215991,14.6069364%20Z%20M440.973279,14.6069364%20L423.774877,14.6069364%20L423.774877,164.433526%20L456.099585,164.433526%20L456.099585,150.958758%20L440.973279,150.958758%20L440.973279,14.6069364%20Z%20M280.592996,27.9212907%20C283.493931,27.9212907%20285.496958,28.5362107%20286.602076,29.7660507%20C287.707195,30.9958906%20288.259754,32.6802367%20288.259754,34.8190888%20L288.259754,144.221374%20C288.259754,146.360226%20287.707195,148.044572%20286.602076,149.274412%20C285.496958,150.504252%20283.493931,151.119172%20280.592996,151.119172%20L273.133448,151.119172%20L273.133448,27.9212907%20Z%20M341.719848,34.6586749%20L346.278461,101.070033%20C346.278461,105.989392%20345.656832,109.785855%20344.413574,112.45942%20C343.170316,115.132985%20340.269381,118.982919%20335.710768,124.009221%20L341.719848,34.6586749%20Z'%20id='Combined-Shape'%3e%3c/path%3e%3c/g%3e%3c/g%3e%3c/svg%3e XIOC detected URL: http://www.w3.org/2000/svg'%20xmlns:xlink='http://www.w3.org/1999/xlink'%3e%3ctitle%3eHeimdall%3c/title%3e%3cg%20id='Page-1'%20stroke='none'%20stroke-width='1'%20fill='none'%20fill-rule='evenodd'%3e%3cg%20id='test'%20fill='%23BE3144'%20fill-rule='nonzero'%3e%3cpath%20d='M480,0%20L480,180%20L0,180%20L0,0%20L480,0%20Z%20M41.8874584,14.6069364%20L24.8962656,14.6069364%20L24.8962656,164.433526%20L41.8874584,164.433526%20L42.094668,119.678046%20C42.094668,114.758686%2042.9580416,110.721603%2044.6847889,107.566796%20C46.4115361,104.411989%2050.0377053,99.8936639%2055.5632965,94.0118206%20L57.2209738,92.2472676%20L57.2209738,164.433526%20L74.4193763,164.433526%20L74.4193763,14.6069364%20L57.2209738,14.6069364%20L57.2209738,57.4374497%20C57.2209738,62.5706948%2056.3921351,66.7414564%2054.7344578,69.9497345%20C53.0767804,73.1580126%2049.4851462,77.7030734%2043.959555,83.5849166%20C43.3052087,84.2603436%2042.8039259,84.7728386%2042.4557065,85.1224017%20L42.2651425,85.3125878%20C42.0642467,85.511661%2041.938352,85.6308975%2041.8874584,85.6702974%20L41.8874584,14.6069364%20Z%20M119.591084,14.6069364%20L87.059166,14.6069364%20L87.059166,164.433526%20L119.591084,164.433526%20L119.591084,150.958758%20L104.257568,150.958758%20L104.257568,96.2576153%20L119.591084,96.2576153%20L119.591084,82.7828471%20L104.257568,82.7828471%20L104.257568,28.0817046%20L119.591084,28.0817046%20L119.591084,14.6069364%20Z%20M149.222066,14.6069364%20L132.023664,14.6069364%20L132.023664,164.433526%20L149.222066,164.433526%20L149.222066,14.6069364%20Z%20M193.979355,14.6069364%20L161.654647,14.6069364%20L161.654647,164.433526%20L178.853049,164.433526%20L177.817001,32.0920523%20L193.979355,164.433526%20L211.177757,164.433526%20L227.340111,32.0920523%20L226.304063,164.433526%20L243.502465,164.433526%20L243.502465,14.6069364%20L211.177757,14.6069364%20L202.474951,108.609486%20L193.979355,14.6069364%20Z%20M282.250673,14.6069364%20L255.935046,14.6069364%20L255.935046,164.433526%20L282.250673,164.433526%20C297.722329,164.433526%20305.458156,158.284326%20305.458156,145.985927%20L305.458156,33.2149497%20C305.458156,20.8096075%20297.722329,14.6069364%20282.250673,14.6069364%20Z%20M356.431735,14.6069364%20L327.215171,14.6069364%20L317.061898,164.433526%20L333.017042,164.433526%20L333.224252,161.385662%20C333.500531,157.642671%20333.914951,154.675013%20334.46751,152.48269%20C335.020069,150.290367%20336.125187,148.017836%20337.782865,145.665099%20C339.440542,143.312362%20342.065198,140.211026%20345.656832,136.361092%20L348.557767,133.152814%20L350.629864,164.433526%20L366.585008,164.433526%20L356.431735,14.6069364%20Z%20M396.215991,14.6069364%20L379.017588,14.6069364%20L379.017588,164.433526%20L411.342297,164.433526%20L411.342297,150.958758%20L396.215991,150.958758%20L396.215991,14.6069364%20Z%20M440.973279,14.6069364%20L423.774877,14.6069364%20L423.774877,164.433526%20L456.099585,164.433526%20L456.099585,150.958758%20L440.973279,150.958758%20L440.973279,14.6069364%20Z%20M280.592996,27.9212907%20C283.493931,27.9212907%20285.496958,28.5362107%20286.602076,29.7660507%20C287.707195,30.9958906%20288.259754,32.6802367%20288.259754,34.8190888%20L288.259754,144.221374%20C288.259754,146.360226%20287.707195,148.044572%20286.602076,149.274412%20C285.496958,150.504252%20283.493931,151.119172%20280.592996,151.119172%20L273.133448,151.119172%20L273.133448,27.9212907%20Z%20M341.719848,34.6586749%20L346.278461,101.070033%20C346.278461,105.989392%20345.656832,109.785855%20344.413574,112.45942%20C343.170316,115.132985%20340.269381,118.982919%20335.710768,124.009221%20L341.719848,34.6586749%20Z'%20id='Combined-Shape'%3e%3c/path%3e%3c/g%3e%3c/g%3e%3c/svg%3e
extracted_from_files
detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-BVGcZZwK.js XIOC detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-BVGcZZwK.js
extracted_from_files
detected URL: https://crbug.com/1392461 XIOC detected URL: https://crbug.com/1392461
extracted_from_files
detected URL: https://open.seatalk.io/open_login/ XIOC detected URL: https://open.seatalk.io/open_login/
extracted_from_files
detected URL: https://accounts.google.com/o/oauth2/v2/auth XIOC detected URL: https://accounts.google.com/o/oauth2/v2/auth
extracted_from_files
detected URL: https://docs.sentry.io/platforms/javascript/best-practices/browser-extensions/ XIOC detected URL: https://docs.sentry.io/platforms/javascript/best-practices/browser-extensions/
extracted_from_files
detected URL: http://www.example.com XIOC detected URL: http://www.example.com
extracted_from_files
detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-B-XRugXy.js XIOC detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-B-XRugXy.js
extracted_from_files
detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-Dq_bMNnE.js XIOC detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-Dq_bMNnE.js
extracted_from_files
detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap XIOC detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap
extracted_from_files
detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-CCCC0qBe.js XIOC detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-CCCC0qBe.js
extracted_from_files
detected URL: https://heimdall.shopee.sg:20443 XIOC detected URL: https://heimdall.shopee.sg:20443
extracted_from_files
detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-Bgf9fn1Q.js XIOC detected URL: https://httpbin.org/cookies/set/heimdall/sourcemap?chunk-Bgf9fn1Q.js
extracted_from_files
detected SHA1 Hash: 2bace8a5f5fa7d71f74d32c2922fc16ba9e22c67 XIOC detected SHA1 Hash: 2bace8a5f5fa7d71f74d32c2922fc16ba9e22c67
extracted_from_files
detected Domain: this.name XIOC detected Domain: this.name
extracted_from_files
detected Domain: t.global XIOC detected Domain: t.global
extracted_from_files
detected Domain: it.scope.off XIOC detected Domain: it.scope.off
extracted_from_files
detected Domain: t.zero XIOC detected Domain: t.zero
extracted_from_files
Security Analysis Summary
Security Analysis Overview
Heimdall is a Chrome Web Store extension published by [email protected]. Version 1.8.1 has been analyzed by the Risky Plugins security platform, receiving a risk score of 64.85/100 (MEDIUM risk) based on 425 security findings.
Risk Assessment
This extension presents high security risk. Significant concerns were identified during analysis. It is not recommended for use in sensitive or production environments without thorough review.
Findings Breakdown
- High: 57 finding(s)
- Medium: 368 finding(s)
What Was Analyzed
The security assessment covers multiple analysis categories:
- Malware Detection: YARA rule matching against 2,400+ malware signatures
- Secret Detection: Scanning for exposed API keys, tokens, and credentials
- Static Analysis: Code-level security analysis for common vulnerability patterns
- Network Analysis: Detection of suspicious network communications and endpoints
- Obfuscation Detection: Identification of code obfuscation techniques
Developer Information
Heimdall is published by [email protected] on the Chrome Web Store marketplace. The extension has approximately 20K users.
Recommendation
This extension is not recommended for installation without thorough manual review. Consider alternatives with lower risk scores, or contact the developer to address the identified security concerns.
Source Code Not Available
Source code is not available for this version of the extension.
Frequently Asked Questions
Similar Extensions
Related extensions from the same publisher or marketplace
KPN Password Manager
[email protected]
MAGgie - An AI Assistant
[email protected]
Aintivirus Privacy and Wallet
[email protected]
BugZap — Visual Bug Reporter
[email protected]
FormGenieAI
[email protected]
OmniChat
[email protected]