Hacker News new | ask | show | jobs
by varenc 89 days ago
It's true, but for large extensions that make use of bundled 3rd party libraries, it's hard to examine the code to determine with very high confidence there's nothing malicious in it. I also tend to watch a new extension's network traffic, but of course it's not foolproof either.
1 comments

I delete the third party libraries and replace them with my own clean checkouts.