Why malicious extensions get deleted "silently" ? how about transparent "Tombstone" pages instead

Hey everyone,

When Firefox or Chrome removes a malicious extension, it usually vanishes into thin air. It gets disabled in browser, and the store link turns into a generic “Oops! We can’t find that page”.

While pulling malware quickly is great, this “silent deletion” is incredibly frustrating.

The Problem

  • Zero Context: You’re left guessing if the extension glitched, failed to sync, or was actually stealing your data.

  • Missed Education: Users lose a chance to learn why an app was dangerous (e.g., data harvesting or ad injection).

  • Zero Transparency: Wiping the page makes it hard for the community to track bad actors.

The Solution: “Tombstone” Pages maybe?

Instead of a generic error page, keep the URL live but block the install button and show a clear warning banner.

:warning: Notice: This extension was removed on [Date] because it violated security policies by injecting unauthorized tracking code.

–_
ps: yeah sorry used a llm to write the post, but the problem is regardless there.

I’ve requested something similar some years ago:

yeah, it seem’s there not much intrest in this matter,

I wanted to change the locale language of some website, after searching arrived to “modheader” then opened their website, clicked on firefox add-on, and then “Oops! We can’t find that page”, after googling the name, found out it was a malware or something… :man_shrugging: