← Back to glossary

Add-on code with elevated browser permissions.

Definition

Browser extensions run with specific permissions that can access page content, network requests, and storage; malicious or over-privileged extensions can exfiltrate data.

In plain English Add-on code with elevated browser permissions.

Why this matters

Why it matters: Extension permissions and update channels are a significant privacy and security risk surface.

Example

Example: An extension injecting content scripts across all sites.