# SecurityShrimp APEX

> APEX — the SecurityShrimp Anti-Phishing EXtension. Spot phishing before you fall for it.

Canonical page: [https://chrome-stats.com/d/securityshrimp-apex](https://chrome-stats.com/d/securityshrimp-apex)

## Overview

- **ID:** `securityshrimp-apex`
- **Platform:** Firefox
- **Type:** Firefox add-on
- **Status:** Available
- **Publisher:** SecurityShrimp LTD
- **Category:** privacy-security
- **Daily users:** 1
- **Version:** 2.1.1
- **Last updated:** 2026-06-01
- **First published:** 2026-05-29
- **Size:** 262 KB
- **Data as of:** 2026-09-05
- **Store listing:** [Firefox Add-ons Store](https://addons.mozilla.org/firefox/addon/securityshrimp-apex/)
- **Website:** [https://github.com/SecurityShrimp-LTD/APEX/issues](https://github.com/SecurityShrimp-LTD/APEX/issues)

## Description

SecurityShrimp APEX (Anti-Phishing EXtension) augments every page you visit
  with context-aware warnings that help you spot phishing attempts
  before you hand over a password.

It runs entirely in your browser. Nothing is sent to any server. No
  telemetry. No accounts. No data collection of any kind.

WHAT IT CHECKS

• Look-alike domains. <a href="https://prod.outgoing.prod.webservices.mozgcp.net/v1/59e3980f1936787bbd8217e716a4bc3c2b0caa83dd06677ecc1849dc5dc1c4e7/http%3A//paypa1.com" rel="nofollow">paypa1.com</a>, <a href="https://prod.outgoing.prod.webservices.mozgcp.net/v1/87137f8d8989d49b814d4be99023cff190180ff74e15bb21f5c54f72c4e13b18/http%3A//goog1e.com" rel="nofollow">goog1e.com</a>, <a href="https://prod.outgoing.prod.webservices.mozgcp.net/v1/1ffedde47dfa133fbe85ff1d56588900e1ba042762547119ed3c8e95ec3c616d/http%3A//arnazon.com" rel="nofollow">arnazon.com</a>, <a href="https://prod.outgoing.prod.webservices.mozgcp.net/v1/effdc2e485e506d183a0a9edc9c82784ad2ede6c040458ad8df8f6f6b1b357d2/http%3A//tvvitter.com" rel="nofollow">tvvitter.com</a>
    — homoglyph tricks that fool a quick glance get flagged against the
    top 20,000 sites on the web.

• Unicode / IDN domains. Punycode-encoded URLs (xn--...) are decoded
    and shown so you can see what the address bar is actually rendering.

• Misleading link text. When a link reads "<a href="https://prod.outgoing.prod.webservices.mozgcp.net/v1/801f2dc114a6b7dae60d8c61bc404cb04b87bbe07d86568fcbf599196404332a/http%3A//paypal.com" rel="nofollow">paypal.com</a>" but actually
    points at evil.example, a warning appears on hover.

• Insecure connections. HTTP-only sites get a warning before you type
    anything sensitive.

• First-time visits. Sites you've never been to before are flagged so
    you can pause and verify the address bar before entering credentials.

HOW IT HELPS YOU RECOGNIZE FAMILIAR SITES

Every domain you visit is shown alongside a unique color and emoji
  fingerprint, derived locally from the domain name. Your bank, your
  email, your work tools — each gets a stable visual signature you'll
  start to recognize. If you ever land on a look-alike, the colors and
  the emoji will be different, even if the name looks right.

CONFIGURABLE TO HOW YOU WORK

• Show tooltips on every input, only on password fields, or never.
  • Whitelist specific sites or wildcards (<a href="https://prod.outgoing.prod.webservices.mozgcp.net/v1/801f2dc114a6b7dae60d8c61bc404cb04b87bbe07d86568fcbf599196404332a/http%3A//paypal.com" rel="nofollow">paypal.com</a>, *.google.com).
  • Toggle the misleading-link warnings independently.

PRIVACY

Everything happens on your machine. The extension uses your browser
  history (locally) to detect first-time visits, and downloads a public
  list of the top 20,000 domains once a week from Majestic to power the
  look-alike check. That list arrives bundled so the extension is
  useful from the first second after install.

OPEN SOURCE

Source code: <a href="https://prod.outgoing.prod.webservices.mozgcp.net/v1/f9bce693b0c0556db77e6b21c785b264a8786936b7190d80726d2b165714e48e/https%3A//github.com/SecurityShrimp-LTD/anti-phishing-extension" rel="nofollow">https://github.com/SecurityShrimp-LTD/anti-phishing-extension</a>
  Licensed GPLv3. Forked from the original ZecOps Anti-Phishing
  Extension (unmaintained since 2022) and modernized for Manifest V3.
  Found a bug or want to suggest a check? File an issue.

## Rankings

- #117,995 — Overall
- #171 — security

## Permissions and access

### Permissions

- `storage`
- `history`
- `tabs`
- `alarms`

### Host permissions

- `https://downloads.majestic.com/*`

### Content script matches

- `*`
- ``

## Safety

- **Risk impact:** High risk impact
- **Risk likelihood:** High risk likelihood

### Analysis details

- Grants access to browser tabs, which can be used to track user browsing habits and history, presenting a privacy concern.
- This extension has low user count. Unpopular extensions may not be stable or safe.

> Some risk analysis details are omitted from this free response. [Upgrade to view the full analysis](https://chrome-stats.com/pricing).

## Similar extensions and apps

- [PhishEye - Anti Phishing](https://chrome-stats.com/d/phisheye-anti-phishing) — 4 users
- [AntiPhish - Phishing Detector](https://chrome-stats.com/d/antiphish-phishing-detector) — 2 users
- [AntiPhish - Phishing Site Checker](https://chrome-stats.com/d/antiphish-phishing-site-check) — 5 users
- [ZecOps Anti-Phishing Extension](https://chrome-stats.com/d/zecops-anti-phishing-extension) — 3 users
- [PhishGuard](https://chrome-stats.com/d/phishguard432) — 1 users
- [Scam Spotter](https://chrome-stats.com/d/scam-spotter) — 4 users
- [Phishy.pro - Phishing | Malware Scanner](https://chrome-stats.com/d/phishy-phishing-malware-scan) — 94 users, 2.00 / 5
- [Anti-Phishing](https://chrome-stats.com/d/anti-phishing-extension) — 3 users
- [Phishing EZ](https://chrome-stats.com/d/phishing-ez)
- [Extension Against Phishing](https://chrome-stats.com/d/extension-against-phishing) — 7 users
- [APIVoid Phishing Reminder](https://chrome-stats.com/d/apivoid-phishing-reminder)
- [Phishjail](https://chrome-stats.com/d/phishjail) — 4,668 users, 1.00 / 5

---

Source: [Chrome-Stats](https://chrome-stats.com/d/securityshrimp-apex)
