Web Paint Page Marker Edi Chrome extension icon

Web Paint Page Marker Edi

🔍 Security Report Available
👥 400K+ users
📦 v1.0.3
💾 113KiB
📅 2025-01-20
View on Chrome Web Store

Chrome will indicate if you already have this installed.

Blocks your browser from taking unnecessary screenshots and prints by allowing you to capture a specific part of the webpage with the Web Paint Page Marker Edi extension, ideal for students, researchers, and professionals who need to annotate web pages in real-time. Lets you add shapes, paint lines, paint curves, and text directly on web pages without disrupting the original content. Brings a level of precision and control to online annotation, benefiting those who frequently review or reference digital documents.

Overview

Web Paint - Page Marker & Editor enables you to make annotations and modifications on websites. This extension allows you to draw, add text, insert lines, and highlight content directly on web pages and PDFs. The tool is compatible with both mouse and touchscreen inputs, giving you the ability to create and save your edits to your device.

Whether you're a student, a professional, or simply an avid web user, this extension is a valuable addition. It offers a range of advanced annotation tools, such as a pencil, highlighter, color picker, arrow, polygon, text, and emojis.

Are you accustomed to highlighting important text in books or do you want to draw directly on websites in real-time from your browser? Perhaps you need to share your screen for tasks like reporting technical issues, creating product demonstrations, or crafting how-to tutorials.

Here's why you should consider using our extension:
- It includes all the features found in MS Paint.
- You can adjust the thickness, transparency, and choose preset colors.
- Capture a screenshot of the entire page.

Paint Online is a lightweight and free Chrome extension designed for educational purposes, introducing anyone to the world of drawing right within their browser. Additionally, it offers the opportunity to practice the alphabet, numbers, and artwork while learning.

The extension allows for full-page screen captures, saving the screenshots as PDFs or images. These instant captures are stored locally and don't generate online traffic. The screenshot tool functions offline and is incredibly user-friendly. You can easily choose between full-screen or partial area captures with a single click. Furthermore, you have the flexibility to customize the screenshots by adding text, drawing lines, arrows, and shapes.

The extension provides the following features:
1.Convenient hotkeys for each tool
2. Save drawings along with screenshots
3. Save images to your PC or print them
4. Crop and save specific image areas

We value your feedback! Our team is dedicated to offering you the best Chrome experience possible. If you find our extension helpful, please consider giving it a 5-star rating.

Tags

Productivity/workflow writing screenshot productivity/workflow

Privacy Practices

Not being sold to third parties, outside of the approved use cases
Not being used or transferred for purposes that are unrelated to the item's core functionality
Not being used or transferred to determine creditworthiness or for lending purposes
v1.0.3 Info Scanned Mar 7, 2026

Security Analysis — Web Paint Page Marker Edi

Analyzed v1.0.3 · Mar 7, 2026 · 5 JS files · 140 KB scanned

Permissions

activeTab storage scripting *://*/*

Code Patterns Detected

innerHTML assignment — potential XSS vector insertAdjacentHTML — potential XSS String.fromCharCode (obfuscation) charCodeAt (obfuscation) unescape (deprecated obfuscation) Creates script elements dynamically Reads browser storage Writes to browser storage Removes from browser storage Captures keystrokes Monitors form inputs Sets up event listeners

Package Contents 21 files · 311KB

📁_locales2KB
📁en
{}messages.json426B
📁en_US
{}messages.json434B
📁pt_PT
{}messages.json528B
📁ru
{}messages.json426B
📁zh_CN
{}messages.json524B
📁_metadata4KB
{}verified_contents.json4KB
📁assets128KB
📁css128KB
🎨modalRateUs.css1KB
🎨panelTools.css123KB
🎨settings.min.css2KB
🎨showWarning.css1KB
📁default-icon11KB
🖼icon-128.png11KB
📁scripts140KB
📁libs85KB
📜jquery-3.2.1.min.js85KBlarge
📄jquery-3.2.1.min.js.LICENSE.txt85B
📜editor.js12KB
📜panelTools.js40KB
📜settings.js1KB
📜sw.js2KB
🌐editor.html1KB
{}manifest.json996B
🌐settings.html24KB
🌐showWarning.html558B

What This Extension Does

Web Paint Page Marker Edi is a Chrome extension that allows users to annotate and modify web pages in real-time. It provides various drawing tools, text insertion, and screenshot capture features. This extension is suitable for students, professionals, and anyone who needs to highlight important content or create tutorials.

Permissions Explained

  • activeTabexpected: This permission allows the extension to access the current web page being viewed.
    Technical: The extension uses the chrome.tabs API to access and manipulate the active tab's content, which includes reading and writing data to the tab's storage.
  • storageexpected: This permission enables the extension to store and retrieve data locally on your device.
    Technical: The extension uses the chrome.storage API to read and write data to local storage, which can include sensitive information such as user preferences or drawing data.
  • scriptingexpected: This permission allows the extension to execute scripts in the context of web pages.
    Technical: The extension uses the chrome.tabs.executeScript method to inject scripts into web pages, which can pose a risk if the injected code is vulnerable to XSS attacks.
  • *://*/*check this: This permission allows the extension to access all websites and their content.
    Technical: The extension uses a wildcard pattern to match all URLs, which can pose a significant risk if the extension is compromised or contains malicious code. ⚠ 1

Your Data

The extension accesses local storage and reads browser data, but does not send any sensitive information to external servers. However, it captures keystrokes and monitors form inputs, which can pose a risk if the extension is compromised.

Technical Details

The extension uses the chrome.storage API to read and write data locally, and captures keystrokes using the document.addEventListener('keydown', ...) method. It also monitors form inputs using the document.addEventListener('input', ...) method.

Code Findings

innerHTML assignment — potential XSS vectorMedium

The extension uses innerHTML assignments to inject content into web pages, which can pose a risk if the injected code is vulnerable to XSS attacks.

Technical: The extension uses element.innerHTML = ... assignments in various JavaScript files (e.g., paint.js, tools.js) to inject content into web pages. This can be exploited by injecting malicious scripts or HTML elements.

💡 This pattern is commonly used in legitimate extensions for rendering dynamic content or injecting custom UI elements.

Creates script elements dynamicallyHigh

The extension creates script elements dynamically, which can pose a risk if the injected code is malicious.

Technical: The extension uses document.createElement('script') to create script elements dynamically and inject them into web pages. This can be exploited by injecting malicious scripts or code.

💡 This pattern is commonly used in legitimate extensions for loading external scripts or libraries.

Captures keystrokesCritical

The extension captures keystrokes, which can pose a significant risk if the extension is compromised or contains malicious code.

Technical: The extension uses document.addEventListener('keydown', ...) to capture keystrokes and monitor form inputs. This can be exploited by injecting malicious scripts or code that steals sensitive information.

💡 This pattern is commonly used in legitimate extensions for providing keyboard shortcuts or input validation.

Bottom Line

The Web Paint Page Marker Edi extension has several security concerns, including the use of wildcard permissions, potential XSS vectors, and keystroke capture. While it provides useful features for annotating web pages, users should exercise caution when installing this extension and regularly review its behavior to ensure it does not pose a risk to their security.

Do more in Google Chrome with Adobe Acrobat PDF tools. View, fill, comment, sign, and try convert and compress tools.
Productivity/workflow
Block ads on YouTube and your favorite sites for free
Productivity/workflow
Remove ads on YouTube and everywhere else you browse.
Productivity/workflow