Connect Clawsmith to your coding agent. Ship products like crazy.Unlimited usage during betaGet API Key →
← Back to ideas
clawsmith.com/idea/extension-ownership-watchdog
IdeaCompetitivebrowser securityextension managementprivacyLive

A browser extension that alerts users when installed extensions change ownership, permissions, or code silently

Chrome extensions are routinely acquired after building trust, then repurposed to inject ads, steal credentials, or exfiltrate data. The Web Store shows no ownership-change notice, and users have no way to know a developer they trusted no longer controls the extension. This tool monitors every installed extension's publisher, permissions, and update fingerprint and immediately notifies the user the moment anything changes.

Demand Breakdown

HN
821
GitHub
652

Gap Assessment

CompetitiveMultiple tools exist but differentiation opportunities remain

3 tools exist (Under New Management, LayerX Enterprise Browser Extension, SquareX) but gaps remain: No active maintenance, no permission-diff tracking, no code-hash fingerprinting, no risk scoring, no history log, no team/org features. Proof-of-concept only.; Enterprise-only (requires Chrome for Enterprise and IT admin deployment). No individual or SMB offering. Minimum viable customer is a corporate IT team. No self-serve..

Features7 agent-ready prompts

Real-time ownership and publisher change detection
Permission diff alerts on extension updates
Code fingerprint monitoring for silent code injection
Risk score dashboard for all installed extensions
One-click extension quarantine and disable
Export and share extension audit report
Subscription billing and update channel

Competitive LandscapeFREE

ProductDoesMissing
Under New ManagementOpen-source Chrome extension that detects publisher/developer info changes on installed extensions and alerts the user.No active maintenance, no permission-diff tracking, no code-hash fingerprinting, no risk scoring, no history log, no team/org features. Proof-of-concept only.
LayerX Enterprise Browser ExtensionEnterprise browser security platform that risk-scores Chrome extensions and integrates with Chrome for Enterprise policy management. $45M total funding.Enterprise-only (requires Chrome for Enterprise and IT admin deployment). No individual or SMB offering. Minimum viable customer is a corporate IT team. No self-serve.
SquareXBrowser Detection and Response (BDR) platform that converts any browser into an enterprise-grade secure browser via a managed extension. $20M Series A from SYN Ventures.Enterprise-only, no self-serve plan. Requires organizational deployment. Does not specifically surface ownership-transfer events for individual users.

Leads156BUILDER

@ben_s
@gh:classvsoftware
@kosolam
@mfrisbie
@jaredsohn
@dsp_person
@abhinavk
@re
156 people already want this

Sign in to unlock full access.