this post was submitted on 02 Sep 2023
48 points (84.3% liked)
Firefox
17840 readers
554 users here now
A place to discuss the news and latest developments on the open-source browser Firefox
founded 4 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Is it possible to decompile or analyze an extension to see if new code has been added?
I only have 4 extensions, all of them are recommended by Firefox, and come with a tag that says "Firefox only recommends extensions that meet our standards for security and performance". Now I'm wondering what those standards are; and whether plugins that have already 'met' them, are re-assessed when updated or altered.
You can see the code of extensions, but it may be minimized, so it hard to known what the code do.
Extensions with label "Recommended" are pass the manual review of Firefox moderators, so you can trust them more than addons with no this label. However you still should keep in mind that any extension developer may be victim of complex scam attack.
The most probable reason usually is a not enough funding the developers
To minimize the possibility of hijacking addons by scammers, we have to: