this post was submitted on 15 Nov 2023
7 points (100.0% liked)

Privacy

31628 readers
583 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 4 years ago
MODERATORS
 

I think we all draw a line between privacy and convenience and I think I found mine and settled into a comfort zone of sorts. I use Fedora 38. My browser is Mozilla Firefox with it's "strict" setting. uBlock origin and uMatrix. When I need/want to use a site that doesn't work due to blocked connections I relax the restrictions in uMatrix or temporarily disable it entirely if I get frustrated or I'm in a hurry. I watch videos on YouTube. Don't use social media, but I do use Facebook messenger (although I prefer to use Signal with the handful of people I can). I use a Xiaomi phone with custom ad blocking DNS (I'd like to get a Pixel with GrapheneOS someday). I look for an app on F-Droid first, but install it through Google Play if I can't find what I need there. I use Qwant and DuckDuckGo. I use ReVanced. I do not use a VPN. I think that's all the relevant information. My question is: how easy do you think it still is for big tech to track me? Are there any suggestions you would have for a person like me that wouldn't sacrifice too much convenience?

all 23 comments
sorted by: hot top controversial new old
[–] DerisionConsulting@lemmy.ca 7 points 11 months ago (2 children)

Don’t use social media

If you wrote this post, you do use social media.

[–] ultratiem@lemmy.ca 1 points 11 months ago

They used social media to destroy social media

[–] Lemongrab@lemmy.one 1 points 11 months ago (1 children)

Easy, but I wouldnt suggest you make things too inconvenient (I personally am fine with unbreaking things).

Some thoughts/suggestions:

  • uMatrix is dead fyi.
  • Librewolf is arkenfox but with less fiddling if you want to give it a try.
  • Set your browser to us a DNS over HTTPS (like mullvad).
  • You can use NewPipe as a youtube app alternative, FreeTube on desktop, and Invidious or Piped in browser.
  • ProtonVPN is free and trusted.
[–] possiblylinux127@lemmy.zip -2 points 11 months ago (3 children)

ProtonVPN is full of lies and will get you no where. You can't just pay to make yourself invisible

[–] Lemongrab@lemmy.one 4 points 11 months ago

Willing to expand on that? They are well audited, and changing your ip helps to disassociate from your approx location (also allows for multiple browsers to come from a common ip).

Also of course a vpn isnt going to make you invisible. Fingerprinting can allow you to uniquely identify browsers through using a handful of metrics.

[–] jherazob@kbin.social 1 points 11 months ago

VPNs were never intended to make you anonymous, if you expected a VPN to make you anonymous you were very mistaken

[–] Aspaldiko@feddit.de 1 points 11 months ago (1 children)

I think that's a good setup. If you must have Facebook Messenger, my advice would be to maybe use a work profile for apps that track you. Compartmentalization is the key word here. Apps like Shelter make it really easy. I have to use WhatsApp and that is an app that is in the "unsafe" profile, aka work profile.

[–] schmurian@lsmu.schmurian.xyz 0 points 11 months ago (1 children)

I have a question about the work profile: would it make sense to isolate the PlayStore too, as it‘s google? Because this is the main painpoint for me, as I cannot move to a custom rom with my phone currently

[–] Aspaldiko@feddit.de 2 points 11 months ago

If you dont root that will Not be possible. Playstore is a key Feature of most Android Roms that ship with the phones. I run grapheneos. There i have Google Services disabled im my core Profile and have a separate Profile with Gplay. I know, that due to imei and other factors Google could easily track me possible but that's Not my worry

[–] Pantherina@feddit.de 1 points 11 months ago* (last edited 11 months ago)

Firefoxes strict settings are okay but not perfect, have a look at librewolf for an easy solution, or my Arkenfox softening tool to modify arkenfox to be easy to use.

Did you debloat your xiaomi phone already? May help with some things, but of course not much, but

  • do you have google play services enabled?
  • what keyboard do you use
  • what mobile browser

Facebook messenger is cancer as its unencrypted afaik, so they read everything. Poor you.

An adblocking dns is good, do you have android tracking blocklists, to make xiaomi phones usable? But to be fair, samsung is way worse

Try shelter and isolate all these bad apps and disable them when not needed

[–] Illecors@lemmy.cafe 0 points 11 months ago (1 children)

This is a very simple question to answer:

[–] Aspaldiko@feddit.de 0 points 11 months ago (1 children)

Hey, i used a fresh version of Tor, Mullvad and on moblie the browser Vanadium. Every time it says I am unique. How do you become "not unique"?

[–] Rez@sh.itjust.works 0 points 11 months ago (2 children)

As far as I understand, if you wanted to not be unique you would have to not use any special privacy tools. Use default Chrome installation and Windows 10/11. There will be millions of people using the exact same setup as you.

[–] Aspaldiko@feddit.de 2 points 11 months ago (1 children)

Ok so that will defeat my goal of Not getting ads.

[–] Rez@sh.itjust.works 1 points 11 months ago

Yes, it would.

[–] Illecors@lemmy.cafe 1 points 11 months ago

@Aspaldiko@feddit.de This is what I would've said. Hiding in plain sight is the solution. It gets tricky when you want to send a message and not leave a trail at all, but in essence - privacy != anonymity.

[–] toastal@lemmy.ml -1 points 11 months ago* (last edited 11 months ago)

prefer Signal

Signal will force you into using an Android or iOS mobile device—no alternatives—and you couldn’t have 2 Android devices (like a tablet, e-reader). You are forced to have a SIM card which gives away part of your identity. Servers are centralized & closed-source (closed for 2 years, rewritten history)—so did the NSA force in a backdoor? …We may never know. On Android, by default notifications are sent thru Google Service’s Firebase (fork Molly supports UnifiedPush now tho). The ToS is questionable with “don’t break the law” language.


Your ideal chat would be free software, P2P or federated+self-hostable servers, E2EE, & the only required personal info you share is your account ID (no phone or email).

You’d think Matrix fits the bill, but its high system requirements (especially storage) & majority Matrix.org mean defacto centralization around an org that controls the spec, the largest server, reference server, & most popular client.

What you are looking for is good ol’ XMPP with OMEMO or PGP set to required in all clients. Its server options run on a toaster, has years of smart engineering & open governance guiding the project, & being extensible by nature, means it’s not purely limited to chat/conferencing. XMPP appears to be the common chat option on the dark web for a reason. You can use gateways to puppet accounts on these untrustworthy networks too (such as messlidger to puppet Facebook Messenger is needed, but also Signal, Telegram, etc.).

Alternatively, Briar & its ilk are gotos, but P2P has some downsides (brains your battery hard on Android).