If you’re in the US, now’s a great time to contact your Senators. You can either call the Congressional switchboard at (202) 224-3121 or use the Senate directory to look up your legislators’ contact info.

“Stop the FBI from expanding warrantless surveillance of innocent Americans. The House reauthorization contains the largest expansion of FISA Section 702 since it was created in 2008. Please oppose it -- and please oppose any attempt to reauthorize FISA Section 702 that doesn’t include warrant requirements, both for Section 702 data and for our sensitive, personal information sold to the government by data brokers.”

Today I was contacted by someone at work. She graduated school with me and our 20 year reunion was coming up. Why did she contact me at work? It was the only way they were able to track me down. I was included in promotional material by name. She told me I "was the hardest to track down"and I had to smile.

This is just a small anecdote about privacy practices and their real life impact (and how your employer can undo all of it, I guess)

NSA ’just days from taking over the internet’ warns Edward Snowden

Google warns users of these apps that their experience may deteriorate soon. They may "experience buffering issues" or see errors such as "the following content is not available on this app" when trying to watch videos.

Similar to Google Search, ads have become insufferable for many users of the service. There are too many of them, they may break the viewing experience, and they may show inappropriate content.

YouTube Premium is expensive. What weights more for some users is that its functionality is severely limited when compared to third-party apps.

The cat and mouse game continues.

For those looking to avoid ads or improve privacy, here are some options for free, open source, privacy-friendly frontends to YouTube without advertisements:


I've never been super-impressed by Rob Braxman. I mean he's never truly wrong in what he was saying in his Youtube videos, but his explanations are over-simplistic, a bit of a shortcut (but fair enough to reach a wide audience I guess), and mostly designed to sell his meh deGoogled cellphones and equally meh privacy services. But all in all, he's somewhat watchable and sometimes informative after I'm done watching all the new videos from the other, more interesting channels I follow.

But lately, his videos seem to have shifted markedly toward unhinged rants and sensationalist conspiracy theory. His latest video for instance is utter nonsense:

Skynet 2024: The Infrastructure is Complete!

I mean yeah, okay, technically he's talking about a real thing. But Skynet? And doomsday Terminator imagery from 1984? Really?

I'm pretty sure the man doesn't have all his fries in the cone anymore. This can't possibly be a conscious strategy to win more Youtube subscribers: this sort of video is going to lose him the part of his audience that has a genuine and technically-informed interest in privacy, and I doubt he's ever going to become a favorite of the sort of crowd who likes conspiracy theories.

Either that or Youtube is a lot stupider than I thought and he noticed an uptick in subscribers when he makes videos like that. At any rate, I really hesitate to click on any of his new videos now.

Internet-scraping outfit Spy.pet claims to have harvested more than four billion public messages made by nearly 620 million users on more than 14,000 Discord chat servers – and is selling access to this trove.

The website presents the data it's collected in several ways. Each known user has a profile, which contains all known aliases, pronouns, connected accounts to other platforms such as Steam and GitHub, Discord servers joined, and public messages. If you wanted to quite literally spy on a Discord user or users, Spy.pet lets you do that, for a fee.

I'm taking a long biking trip soon and want to share my live location with my boyfriend in case something happens. Any recommendations for privacy-focused apps that can accomplish this? I'm on Android, he's on iOS.

Has anyone tried this?

  • I make websites
  • If someone is banned twice (two accounts) I want it to take them more than 5min and a VPN to make a 3rd account
  • I'm okay with extreme solutions, like requiring everyone to have a Yubikey-or-similar physical key
  • I really hate the trend of relying on a phone number or Google capcha as a not-a-bot detection. Both have tons of problems
  • but spam (automated account creation) is a real problem

What kind of auth should I use for my websites?

Is it fairly easy? Seems useful for a public site like Lemmy and the fediverse



Summary: Simplex Chat uses a bit of battery and doesn't have a way to visibly see a contact has changed.

Context: my gf mentioned getting a vpn for privacy, and I tried to explain that it "does" help, but it's more like type of windows on a house. It certainly can be part of the package, but it's no where near the foundation.

So i tried to explain the best that i could That if she was worried about online privacy the first step wasn't to mask traffic, but to not submit personal data to anything online like FB, not use Google services that package everything on you together to sell to advertisers, and to limit phone apps to essentials.

But I'm curious on what other steps you guys would consider the "foundation" of online privacy that should be prioritized before a vpn. Any thoughts? Or am I way off base?

Note: this is in context of vpn for privacy. Using vpn to avoid Geo blocking and censorship I see as incredibly valid for those that need it.

Should I be worried about this development?

So far, I've tried Stract and 4get, and I'm not impressed with how limited they are - they're not accurate, and no image and video search is what turns me away from them.

Metasearch engines like SearXNG aren't that impressive, their results have too many filler results. My experience with manually tweaking their search also did not go well. Any alternatives with good defaults?

I'm thinking of the things listed on the Privacy Guides real-time communication section


Is it even possible on android? Is there a FOSS dialer to optionally encrypt some phone calls (non voip) using a pre-shared key with other party?

Most people still haven't heard of Manifest V3, so if you are one of those not using Firefox, this is for you.

If you’ve been on YouTube or Reddit August last year, you might’ve seen this screen yourself, or a screenshot of someone else getting it. This of course, I am talking about the infamous YouTube ad blocker blocker popup, discussion exploded on Reddit mostly consisting of people complaining about ads, as well as an angry mob storming r/memes, turning it into a Firefox propaganda centre.

About a month later, different adblockrs eventually found their way of bypassing detection, and they work on YouTube again. So natrually Redditors thought they’ve won another war against big tech, completely ignoring Google’s original plan to kill off adblockers by June this year.

So all extensions, including adblockers follows a specification called the Manifest V2. The Manifest allows extensions to do certain things, say accessing browser tabs or to change browser settings. All while putting some limitations, and prevent extensions from doing crazy stuff like installing a virus to your system. But too much limitation, is what pisses off many extension developers about the upcoming ManifestV3.

In this article written by the EFF, they interviewed developers responsible for popular extensions, where most described ManifestV3 as a downgrade, with some accused it for being purposefully bad. I particularly like this one from the creator of SingleFile, “I consider the migration to Manifest V3 to be a major regression from a functional and technical point of view.”

After an update in June this year, a feature called the WebRequest API will be removed, and the adblockers and tracker blockers that depend on this feature will stop working. Since the business model of Google is to track your online activity and then show you personalised ads, it is not difficult to see why this feature is removed.

Not only are they sacrifising user experience for monetary gain, they are forcing the same update on all Chromium browsers as well. I am hereby devastated to inform you that this is not the first time they have done it, and it will not be the last time they will do it.

But there are also good news, non-Chromium browsers will not be affected by the Manifest V3, and if you are already using one, you will be exempt from any future nonsense Google throws in your way. So if you are considering switching to one, unless Safari is your goto browser, which lacks competent extensions support, you can still get your adblockers, another adblockers, all the adblockers.

So are you going to make the switch before the update? Let me know in the comments down below, anyways I will be seeing you in two weeks, have a good one.

An article for more my ranting needs https://gmtex.siri.sh/fs/1/School/Y12/Cssoc/chromium.html

Hiya, so quickly wondering wether you have enabled this or not. Obviously it's not great for privacy, but it also seems very nice to have for image cloud solutions, so that images can be sorted based on location. Are there any good solutions for this? I'd like have it enabled, but also afraid of sharing images with sensitive metadata in them.

I'd like to be able to contribute financially to people/communities who run infrastructure, such as nodes, for layers like I2P and Freenet. Where do I find them, and does contributing directly to the projects themselves help in this regard?


Given the extistence of technologies like Monero and SimpleX chat, I wonder if it is possible for a truly anonymous content sharing platform to exist? And does it?

Use cases:

  • sharing pirated content without a link back to you
  • journalists or political activists not wanting to be found or caught by a government

The platform should not allow the following to know the details of what you do on this platform:

  • users on the platform: should not know the identity of a poster unless they disclose it
  • the host of the platform: should not know which content belongs to who, or be able to deduce it via traffic logs
  • Intermediates like the ISP, DNS, or your router should not be able to link any content to you. However it is okay if they know that you use the platform at all, just not what you do with it.

Does something like this exist?

