I have a chrome extension, with content script 1 which programmatically creates an iframe (not same domain iframe) on the current page. I want to run a content script 2 of my chrome extension inside this new iframe (e.g. when a user clicks on somethi...
I have a script that I want to be injected into the document BEFORE load. I.E; it should function as if  <script..>MYSCRIPT HERE</script>  <html> . .   I have made a script in chrome that executes correctly (I can alert(0) etc) but,...
I'm trying to include gmail.js from here. But the object gmsrc is invalid, the function get.user_email() fails. I'm trying to develop a Chrome extention, the chrome developer tools (F12) tells me     Uncaught TypeError: Cannot read property &...
I am making a content script that does something with the google results webpage.   The line below in the manifest.json is not valid.      "matches": [ "https://www.google.*/*" ]   The error due to above line in manifest.json is:...
$x("//a[contains(@href,'.jpg')]");   works as expected from the developer tools command prompt. But, when in an extension's content-script I get a '$x is not defined'.  Why is this not available in a content-script or is t...
When creating the manifest file for a Chrome extension there is an option all_frames that allows the content scripts to be injected in the top frame/iframe, or in all.  I want this behavior to stop at some specific level (e.g.,2 ). Is there a way to...
I'm writing a chrome extension, and want to execute a content script from my background script. The background script executes, but the content doesn't. Here are the relevant chunks of code:  manifest.json:  "background": {     "s...
I'm building a chrome extension that adds a content script to a site (let's call it the host). the content script creates an iframe in the host which leads to my domain (cross domain).   I'm able to send messages from the iframe to the ho...
In my Google Chrome Extension I need to be able to inject my content script into all IFRAMEs on the page. To do this my original manifest.json was declared as such:  "content_scripts": [     {         "run_at": "document_end",...
This is a security question, I want to avoid the injection of code via chrome content-scripts, how to detect if that is the case?  assumptions:   content-script is malicious code, so it will probably avoid message passing responses....

Tags

Recent Questions

Top Questions

Home Tags Terms of Service Privacy Policy DMCA Contact Us

©2020 All rights reserved.