Researchers Say Claude for Chrome Flaw Lets Rogue Extensions Trigger Gmail Reads
Claude for Chrome tasks that target your Gmail, your most recent Google Doc and its comments, and your calendar can still be triggered by any other browser extension that can execute a script on claude.ai.
The distinction is scope; both ClaudeBleed and this require a rogue extension that can execute a script on claude.ai. In response to the ClaudeBleed vulnerability, Anthropic limited the arbitrary-prompt path in May, confining external callers to a predetermined set of tasks. However, eight releases later, Manifold Security claims the vulnerability is still present in the current release, v1.0.80.
You are covered if you use Claude for Chrome and any other extension that has access to claude.ai. The forged task still displays an approval box that you must click in the default "ask b...

