clawsmith.com/signal/honey-extension-affiliate-hijack-scam
⚠ IssueWide OpenLive
Honey Browser Extension Exposed: Hijacks Affiliate Links, Steals Influencer Commissions, Copied GPL Code
PayPal's Honey extension (17-20M Chrome users) was exposed in Dec 2024 by YouTuber MegaLag (9.4M views): it replaces creators' affiliate cookies at checkout to steal their commissions, lets merchants suppress better coupons, and its co-founder's new ad-blocker Pie stole GPL code from uBlock Origin. Honey lost 4M Chrome users. Class action filed. Google updated extension affiliate policies. HN threads totaled 2831 combined engagement.
Product Idea from this Signal
A browser extension that monitors installed extensions for ownership transfers, permission scope changes, and suspicious outbound data requests in real time
5.8k ▲browser-extensionsecurityprivacychromesupply-chainai-conversationsextension-monitoring
Competitive1000 leadsView Opportunity →
Score Breakdown
HN
3,178
Social Proof 4 sources
HN1,501HN991HN347HN339
uBlock Origin GPL code being stolen by team behind Honey browser extension
extesy · 12/30/2024
Honey has now lost 4M Chrome users after shady tactics were revealed
3/1/2025
PayPal Honey extension has again 'featured' flag in Chrome web store
2/28/2025
Exposing the Honey Influencer Scam [video]
jadyoyster · 12/22/2024
Gap Assessment
Wide OpenNo dedicated solution exists
No browser extension that audits affiliate link behavior and alerts users when an extension silently modifies checkout cookies
Frequently Asked Questions
Virality Score
3,178
across 0 platforms
Details
Signalissue
Ecosystem—
Sources4
Platforms0
Updated2h ago
Trend→ stable
Top ideas
All ideas →Related signals
All signals →