• 0 Posts
  • 44 Comments
Joined 2Y ago
cake
Cake day: Jun 21, 2023

help-circle
rss

Domain registration information is public and accessible via whois. If your domain registrar has privacy services use them. They usually mean that instead of your name etc it will display the info of the privacy proxy.


The annoyance is no notifications

Not true. I have GrapheneOS with no Google blobs in a profile where I have Signal from play store (via Aurora) and notifications work perfectly. Signal itself will turn on the no google mode for notifications if not available.


Arbitration typically tends not to be as neutral as a court. A court will always look how laws apply in a particular case. Arbitration may not do that. Arbitration takes power away from the consumer. Arbitration is not a court of law. It’s a dispute between an individual and a company. Don’t know how things are in Switzerland in this regard but I fear that it’s not as neutral as a court of law would be. Especially as the arbitrator is pre selected by the company.

Also in their TOS “No Class Arbitrations, Class Actions or Representative Actions.” i.e. if the company would screw over dozens of people they can only complain one by one even if they are all the same case. If a class action or class arbitration could occur the company screwing over dozens of people it could be viewed as a whole hence it might be determined that what they are doing is systematic, and if it would be in court it could be seen as illegal.

Disclaimer: I’m not a lawyer or any kind of legal expert.


In their TOS: “XVII. Dispute resolution by arbitration”

“Binding Arbitration. – you – waive your and NYM’s respective rights to have any and all Disputes arising from or related to these T&Cs resolved in a court.”

A big red flag.


Tumbleweed. Stable rolling release distro.


Was more talking about using any of them personally. They are quite unavoidable unfortunately when you have to do business with someone.

Worse (?), another doctor of mine is using Gmail for all her email with her patients, email that is used to send and receive test results, share intimate informations,…

This is quite the data breach. I’d take it up with the data protection officer of the company where the doctor work if applicable or with the national data protection agency. As a non-lawyer I’d say this is a breach of the GDPR and other laws. This doctor hands over highly confidential data to third parties.


American companies (big international player at least) don’t really care what regulation we have in the EU. They can just ignore it and if they get caught those fines are just a “cost of doing business”. The only way is not to use any of them.




desktop application created using Electron

🤢 . That’s not an application. It’s just a bloated way a displaying a webpage. If you truly want to make a desktop application use something like QT.

Some random scripts off the web is a big 🚩.


If your email client doesn’t block remote images by default, like gmail and outlook, then they probably know if you’ve opened their emails at some point due to tracking pixels.



GrapheneOS is the way to go with a Pixel phone. Wifi calling works just fine on my Pixel 8. As does VoLTE.


Mobile radio communication is encrypted between you and the tower. Newer protocols have better encryption then older. That’s why Stingray tracker is bad since it can force phones to use older vulnerable protocols.


Coming up with a decent domain name has been the challenge for me. You can’t really put on to your cv or so something like me@thebestmfofalltime.com. You can but that doesn’t sound very professional.


Choosing a decent service is usually the easy part (at least with the help of this community). The hard part is to change your email address everywhere.


As they use imap, caldav and carddav for email, calendar and contacts you can use any app you want e.g. thunderbird.

Edit: They even have a moving service so you can move your existing emails from gmail to them.


I’m using filen.io. E2ee and zero knowledge service from Germany. Their desktop client just works.


Haven’t actually tried but I have bad experiences with Linux and dual graphics laptops.


I game on Tumbleweed but on some rare occasions I use windows e.g. my gaming laptop doesn’t have Linux.


I only use LibreWolf on my pc’s and IronFox or Vanadium on my phone. All except Vanadium have uBlock Origin with all social media blocked. I also use Mullvad vpn with social media blocking at dns level. In addition where vpn is not configured I use Mullvad’s dns with all content blocking enabled. Of course no Meta or another social media apps on my Graphene OS phone (except Mastodon and Lemmy). As a cherry on top I use a Linux based OS (OpenSuse Tumbleweed) on my computers primarily (some Windows usage for some gaming).


MicroG is somewhat hacky solution that emulates play services. When you have proper play services you do have all the functionality available. Since it’s sandboxed play services don’t have any privileged access to the system thus can only access data which is available to any normal app.


If you have apps that require play services you can install them to another profile in GOS. Profiles stay active if you like and you can get notifications from other profiles as well. That way you can limit data exposure for play services and apps using them. I do this on my GOS and it works very nice. Though you should use Aurora store to get play store apps (you can get it from f-droid). Many apps from play store work well with out play services.


The same in the EU. All it needs is signal to any available mobile network.


Ran into this as well when I was testing it out (using Mullvad). It seems plausible. Or for some reason Mullvad’s ip addresses end up in some black list regularly that sites like Kagi use to block bots/spammer etc.



Mullvad has content and tracking blocking at dns level builtin (enabled in settings). Having it always on you don’t need to use private dns. If you use other profiles then set the private dns to one of mullvads. On my grapheneos install I use google play services only on another profiles then owner and have apps that require it only in those profiles.


The internet is what you get via your ISP. You’re talking about www which is part of the internet but not the internet itself. There are plenty of things to do on the internet that aren’t www e.g. email works over the internet and I’m not talking about something like gmail but the communication between email servers and between your email provider and you when you use imap or pop3.


Curious choice to write a c++ program for this instead of doing the same thing in a powershell script.

One feature it should have: delete itself after running to leave no traces of such a tool.


It depends on your threat model. Using tor via a know vpn endpoint does make you stand out and can be used to profile your traffic. One of the main points of tor is that all users look exactly the same.

If you have e.g. one user out of a 100 using a vpn endpoint instead of some residential ip address that user immediately becomes a much more interesting target. There is information floating around in the web that state actors have control over several entry and exit nodes.


You got most things right about UDP and TCP. They both work in the transport layer of the OSI model. They are also completely different protocols, related yes but independent.

UDP is “simpler” as it basically throws data packages in to the network and hope they reach their destination. TCP on the other hand has checks in place that verifies that a data package has actually reached its destination.


Doesn’t have a significant impact. Using Telegram (though third party OSS client called Forkgram) and Signal without Play services on pixel as well.


Enabling DoH with max protection probably solves that.


Use MS Edge

Use Chrome. Edge is a minority browser (has a market share of ~10 %). Using chrome though gives all your data to google ( so not recommended).



It does as well as setting your locale to en-us, timezone to utc and giving random output from canvas every time.

Edit: You can also enable a fixed size for you window. More precisely the area which is visible to content (and also to javascript). https://librewolf.net/docs/faq/#what-are-the-most-common-downsides-of-rfp-resist-fingerprinting



No google on device no tracking, and I don’t use google services anyhow (with first party clients anyhow). I do have google play services installed but no google account so they don’t have an identity to connect the data they might be able to collect from the phone. Only google service I use is youtube but that’s with third party clients only (FreeTube & NewPipe) over vpn of course.



Can’t they be both? Potato potahto.

It will destroy the Universe if we do that. /s