Compare commits
	
		
			291 Commits
		
	
	
		
			v2.17
			...
			pr-Revolut
		
	
	| Author | SHA1 | Date | |
|---|---|---|---|
|   | 7458821bc1 | ||
| ac8c5a30d1 | |||
| 45bfe22c61 | |||
| 65db9d3fee | |||
| f3f092d1a3 | |||
| 35c95c029c | |||
| 7fb07925ec | |||
|   | dc4199d7c4 | ||
| fda35b5f70 | |||
|   | 9e16a63caa | ||
| 47377df8da | |||
| 28c576110c | |||
| d63dc04aff | |||
| e336699480 | |||
| aaec10b83e | |||
| 9cbebf239b | |||
| 97350b6245 | |||
| ![Privacy Guides [bot]](/assets/img/avatar_default.png)  | f0621e257b | ||
|   | 1ac4dd75c7 | ||
| 4c8cd3f295 | |||
|   | bfaba1cd11 | ||
| 66efe4a27f | |||
|   | 657e977074 | ||
| f516235dd4 | |||
| cc696093ce | |||
| 4da25bc39a | |||
| 6245ed8581 | |||
| d9b9092ac3 | |||
|   | 7a6fc90114 | ||
|   | ef7cf862d4 | ||
| f396afa15f | |||
| 227609f768 | |||
|   | 425914a33d | ||
|   | 131f91ad56 | ||
|   | 9b008f2b76 | ||
|   | 2a4947bd72 | ||
|   | 829883c450 | ||
|   | e52286a1b0 | ||
| 2a85daa3fa | |||
| 052671197b | |||
| f6ca66bbb4 | |||
|   | d03f91b1c0 | ||
|   | 74928bb4c7 | ||
| ![Privacy Guides [bot]](/assets/img/avatar_default.png)  | 7b6a158e4d | ||
| 2150385184 | |||
| 561f6a7463 | |||
|   | 23b7effac9 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 1cd29c6972 | ||
|   | ebf28c2b35 | ||
|   | 3498602fdd | ||
|   | 7c6ebc5ebb | ||
|   | d011fe716e | ||
|   | 428121c0c7 | ||
|   | 3361de1705 | ||
| 242894c291 | |||
| d67dcaea11 | |||
|   | e901d0db22 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 815739b7bc | ||
|   | 1b9d8f9c14 | ||
| 70a6cda9d5 | |||
|   | e6f6498908 | ||
|   | 687a36e7db | ||
|   | 94fa083700 | ||
|   | 752db84b86 | ||
| d5a732e08c | |||
| 2746861567 | |||
| f4f28ce821 | |||
|   | b0ce8cea24 | ||
| 43cdf87ad3 | |||
|   | 9782ddf60f | ||
| 8ffa8207ff | |||
| ff30001aff | |||
|   | 145e0af811 | ||
|   | e91f63045d | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 790293b792 | ||
| d4f1195bb3 | |||
| e4d89b0894 | |||
|   | a9a7864889 | ||
|   | d6bab0c4f8 | ||
|   | 27fe6a4c41 | ||
|   | bd1ff328a7 | ||
|   | 64d736a7ef | ||
|   | a1e40a79ba | ||
|   | baece71b49 | ||
|   | f5910c4b2b | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | d35437cafa | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 41bb717191 | ||
|   | fdb59b32b9 | ||
|   | c1f8a1e00c | ||
|   | 070a9b157c | ||
|   | a17363080e | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | f714a82d84 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 3efe31dc29 | ||
|   | 670331bcd9 | ||
|   | bd5506bab8 | ||
|   | eb2fd3bccb | ||
|   | 478c2cee3b | ||
|   | dd96ff1b56 | ||
|   | 2c61157cbc | ||
|   | a110fb0489 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | b66845af14 | ||
|   | 39f67789c4 | ||
|   | 603bec291e | ||
|   | 80f1e8ca51 | ||
|   | fa9faa5648 | ||
|   | 95126762a6 | ||
|   | 0d597160cf | ||
|   | dc0cd7d35f | ||
|   | 10812ede81 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 53b2c2af89 | ||
|   | 78e0cf7a42 | ||
|   | 0c2b119089 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 22572e096f | ||
|   | 41215f7433 | ||
| 750b73c589 | |||
|   | 2edd012619 | ||
|   | 2172eab26a | ||
|   | 724b70ae51 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | b9937e8630 | ||
|   | 303bf1aff6 | ||
|   | ba435096f3 | ||
|   | 3ae6f80797 | ||
|   | 67535a820c | ||
|   | c7ff34b330 | ||
|   | 703c291ba3 | ||
|   | e3ee1cf1bb | ||
|   | ae171cee7b | ||
|   | c477e7af46 | ||
|   | c113f03264 | ||
|   | b6167fda1a | ||
|   | 9525deaf51 | ||
|   | 9911fa781e | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | dc75bcf42e | ||
| 43c7b5329d | |||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 3f6cc30f06 | ||
|   | 05cb8ee35c | ||
|   | 6a469b1fa6 | ||
|   | 78a8f8c061 | ||
|   | 8979e0ce79 | ||
| ed873cd800 | |||
| 4f8663321a | |||
|   | b20785b3b6 | ||
|   | 31bc2cd5af | ||
| 1b5d83137c | |||
| e7d22bb1f2 | |||
| ab5c9f8222 | |||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | b4c0aac903 | ||
| 5f4f23ea65 | |||
| 887022c7c0 | |||
| b9612deb98 | |||
| c4f5871160 | |||
| f5dac93435 | |||
|   | 0a98bcb36b | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 4815008e23 | ||
|   | acd802e15e | ||
| ef657b4afd | |||
| 8afb128ce3 | |||
|   | d4266679b3 | ||
|   | 1be248c1ca | ||
|   | 1ec3dbf27c | ||
|   | 95a14f35d7 | ||
|   | 812558db5c | ||
|   | 7a3fdd42ab | ||
|   | a263b5a95a | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 27fec327fd | ||
|   | 6c9dc8c5d4 | ||
|   | 7f09bd69a9 | ||
|   | 226b9f7885 | ||
|   | a74b6cc7bc | ||
|   | f3086e4416 | ||
|   | 126805b5ba | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 4235d62136 | ||
|   | a87d5cb227 | ||
|   | df90475594 | ||
|   | ebf589096b | ||
|   | 64c7e30e37 | ||
| afc078b9f4 | |||
|   | ee70f568dc | ||
| 3ab0c984e8 | |||
|   | aaff8259d4 | ||
|   | 9c85a65190 | ||
| 23a2419dc8 | |||
|   | a1bd21f365 | ||
|   | 5bf2e8bf1f | ||
|   | bc8045c2a0 | ||
|   | faf6d34ec1 | ||
|   | 02c65f45e3 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 666df1dd65 | ||
|   | 7c84c44b3d | ||
|   | 1cc1bd3ad6 | ||
|   | 21f5b7f84f | ||
|   | befce0f1d9 | ||
|   | 23c74a6dc3 | ||
|   | b92347cba3 | ||
|   | e7f8f1c8c0 | ||
|   | 70c0905b2b | ||
|   | 36528b2eb8 | ||
|   | f7258ebe8d | ||
|   | 2dd8e847f6 | ||
|   | 1dbcac4d5b | ||
|   | 688abddc43 | ||
|   | bca9692c37 | ||
|   | f2162cf28a | ||
|   | 4c159a3261 | ||
|   | b3a254463d | ||
| 2b58befda4 | |||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 0b8edd035c | ||
|   | 9f6cd454a8 | ||
|   | 8309e56cb3 | ||
|   | c88dc960d2 | ||
| 2c5707a9ba | |||
|   | cc3bcd9d94 | ||
|   | 982dc64730 | ||
|   | 0660fbf119 | ||
| 9d14330cde | |||
| 16cb2daf2a | |||
| 173a9b6d30 | |||
|   | 429c643866 | ||
|   | a974b8485c | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 667996df8d | ||
|   | 93663bca8e | ||
|   | 66bb715834 | ||
| ecbc75e955 | |||
| dd87672a73 | |||
|   | e07feb8aa9 | ||
| 72f74406b9 | |||
|   | 193a8d512a | ||
|   | 137f16d0a9 | ||
|   | 35af82b3f1 | ||
|   | 8cc83258b7 | ||
| 7e1f0196f9 | |||
|   | 54e8229454 | ||
| 2e3cecf285 | |||
|   | 13c05dc07f | ||
| 0ba070dc8e | |||
| 5f970c58ac | |||
| b5205aee77 | |||
| f85803d5c1 | |||
| b3c976b694 | |||
|   | 41f785b0fd | ||
|   | 3803bdd72d | ||
|   | b373e23429 | ||
| ba7b53aceb | |||
| f255d49760 | |||
| 88bb0721eb | |||
| 7a594bbf27 | |||
|   | eddfd29cfe | ||
| c72ae5fb3c | |||
| 2098040200 | |||
| a7816299f3 | |||
| 3db5cffecd | |||
|   | 65179b83e9 | ||
|   | 3874ff4919 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 8b6f0397bb | ||
|   | 313ca0b50f | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | f288f840dd | ||
| 3af8be9b88 | |||
| c593ce9ed3 | |||
|   | 79f898a2dd | ||
| 4ea7ae8f7b | |||
| 9cfe06f714 | |||
| a7505190d4 | |||
|   | 605b0fd954 | ||
| e32404f85a | |||
|   | 61acc755c6 | ||
|   | 3d8c8d969c | ||
|   | 68096ef2ab | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | df94276c31 | ||
|   | 8040c32810 | ||
|   | 76f5417f04 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 208c738b83 | ||
|   | 432ee9898e | ||
|   | c120e07c25 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 8563ee9ec9 | ||
| 2f9c779b15 | |||
| 5fa9a3b505 | |||
| 3b0cd75cbd | |||
| 12fc2d8a9b | |||
|   | e9b951cb68 | ||
|   | 95d653f26e | ||
|   | bd4818e993 | ||
|   | 16237ad930 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 347d09a4c2 | ||
| 0ab8b1f8f2 | |||
| 4f091b65e2 | |||
| 86ee500c6d | |||
|   | 005c6fe7cd | ||
|   | bd5ef054ea | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 182d76b2ae | ||
|   | 67f1526d19 | ||
|   | ef4db53567 | 
							
								
								
									
										19
									
								
								.github/CODEOWNERS
									
									
									
									
										vendored
									
									
								
							
							
						
						| @@ -1,13 +1,18 @@ | ||||
| # Additional Co-Owners are added to the TOP of this file. | ||||
| # Additional Co-Owners are added to the TOP of this file | ||||
|  | ||||
| # High-traffic pages | ||||
| /docs/index.md @JonahAragon @dngray | ||||
| /theme/overrides/ @JonahAragon | ||||
| /docs/index.en.md @jonaharagon @dngray | ||||
| /theme/overrides/ @jonaharagon | ||||
|  | ||||
| # Org | ||||
| /docs/about/ @JonahAragon | ||||
| LICENSE @JonahAragon | ||||
| /docs/about/ @jonaharagon | ||||
| CODE_OF_CONDUCT.md @jonaharagon | ||||
| CITATION.cff | ||||
| LICENSE @jonaharagon | ||||
| README.md @jonaharagon @dngray | ||||
|  | ||||
| # Ops | ||||
| /.github/ @JonahAragon | ||||
| /.well-known/ @JonahAragon | ||||
| /Pipfile @jonaharagon | ||||
| /Pipfile.lock @jonaharagon | ||||
| /.github/ @jonaharagon | ||||
| /.well-known/ @jonaharagon | ||||
|   | ||||
							
								
								
									
										10
									
								
								.github/ISSUE_TEMPLATE/2_Website_Issues.md
									
									
									
									
										vendored
									
									
								
							
							
						
						| @@ -10,12 +10,6 @@ This is NOT the place to request changes to the content of the website. | ||||
| This is NOT the place to report issues with our services like Matrix. | ||||
| This is ONLY for reporting bugs or technical issues with www.privacyguides.org, the website. | ||||
|  | ||||
| --> | ||||
|  | ||||
| ## Description | ||||
|  | ||||
| <!-- | ||||
| ## Screenshots | ||||
|  | ||||
| Please add screenshots if applicable | ||||
| Please add screenshots if applicable. | ||||
|  | ||||
| --> | ||||
|   | ||||
							
								
								
									
										9
									
								
								.github/ISSUE_TEMPLATE/config.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						| @@ -1,12 +1,15 @@ | ||||
| contact_links: | ||||
|   - name: Suggest a New Provider or Software | ||||
|     url: https://github.com/privacyguides/privacyguides.org/discussions/new | ||||
|     url: https://discuss.privacyguides.net/c/site-development/suggestions | ||||
|     about: Suggest something new for us to look at, or something we should remove. | ||||
|   - name: Suggest a Guide | ||||
|     url: https://discuss.privacyguides.net/c/site-development/guide-suggestions | ||||
|     about: Suggest an area where you think guidance might be required. | ||||
|   - name: Ask a Question | ||||
|     url: https://github.com/privacyguides/privacyguides.org/discussions/new | ||||
|     url: https://discuss.privacyguides.net/c/privacy/questions | ||||
|     about: Let us know if something doesn't make sense! | ||||
|   - name: Share an Idea | ||||
|     url: https://github.com/privacyguides/privacyguides.org/discussions/new | ||||
|     url: https://discuss.privacyguides.net/c/site-development | ||||
|     about: Suggest a new feature/section/page or anything else for the website. | ||||
|   - name: Report a Translation Issue | ||||
|     url: https://crowdin.com/project/privacyguides/discussions | ||||
|   | ||||
							
								
								
									
										20
									
								
								.github/PULL_REQUEST_TEMPLATE.md
									
									
									
									
										vendored
									
									
								
							
							
						
						| @@ -1,14 +1,15 @@ | ||||
| <!-- Please use a descriptive title for your PR, it will be included in our changelog --> | ||||
|  | ||||
| Resolves: # <!-- Did you solve an open GitHub issue? Put the number here so we mark it complete! --> | ||||
|  | ||||
| <!-- | ||||
| <!-- SCROLL TO BOTTOM TO AGREE!: | ||||
| Please use a descriptive title for your PR, it will be included in our changelog! | ||||
|  | ||||
| Please share with us what you've changed. | ||||
| If you are adding a software recommendation, give us a link to its website or | ||||
| source code. | ||||
|  | ||||
| If you are making changes that you have a conflict of interest with, please | ||||
| disclose this as well: | ||||
| disclose this as well (this does not disqualify your PR by any means): | ||||
|  | ||||
| Conflict of interest contributions involve contributing about yourself, | ||||
| family, friends, clients, employers, or your financial and other relationships. | ||||
| Any external relationship can trigger a conflict of interest. | ||||
| @@ -16,7 +17,16 @@ Any external relationship can trigger a conflict of interest. | ||||
| That someone has a conflict of interest is a description of a situation, | ||||
| NOT a judgement about that person's opinions, integrity, or good faith. | ||||
|  | ||||
| If you have a conflict of interest, you must disclose who is paying you for | ||||
| If you have a conflict of interest, you MUST disclose who is paying you for | ||||
| this contribution, who the client is (if for example, you are being paid by | ||||
| an advertising agency), and any other relevant affiliations. | ||||
| --> | ||||
|  | ||||
| <!-- Place an x in the boxes below, like: [x] --> | ||||
| - [ ] Please check this box to confirm you have disclosed any relevant conflicts of interest in your post. | ||||
| - [ ] Please check this box to confirm your agreement to grant Privacy Guides a perpetual, worldwide, non-exclusive, transferable, royalty-free, irrevocable license with the right to sublicense such rights through multiple tiers of sublicensees, to reproduce, modify, display, perform, relicense, and distribute your contribution as part of our project. | ||||
| - [ ] Please check this box to confirm you are the sole author of this work, or that any additional authors will also reply to this PR on GitHub confirming their agreement to these terms. | ||||
|  | ||||
| <!-- What's this? When you submit a PR, you keep the Copyright for the work you | ||||
| are contributing. We need you to agree to the above terms in order for us to | ||||
| publish this contribution to our website. --> | ||||
|   | ||||
							
								
								
									
										14
									
								
								.github/dependabot.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						| @@ -13,17 +13,3 @@ updates: | ||||
|       - "jonaharagon" | ||||
|     labels: | ||||
|       - "fix:github_actions" | ||||
|  | ||||
|   # Maintain dependencies for pipenv | ||||
|   - package-ecosystem: "pip" | ||||
|     directory: "/" | ||||
|     ignore: | ||||
|       - dependency-name: "mkdocs-material" | ||||
|     schedule: | ||||
|       interval: "daily" | ||||
|     assignees: | ||||
|       - "jonaharagon" | ||||
|     reviewers: | ||||
|       - "jonaharagon" | ||||
|     labels: | ||||
|       - "fix:python" | ||||
|   | ||||
							
								
								
									
										34
									
								
								.github/workflows/crowdin-download.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,34 @@ | ||||
| name: 💬 Crowdin Download | ||||
|  | ||||
| on: | ||||
|   workflow_dispatch: | ||||
|   release: | ||||
|     types: [ published ] | ||||
|  | ||||
| permissions: write-all | ||||
|  | ||||
| jobs: | ||||
|   synchronize-with-crowdin: | ||||
|     runs-on: ubuntu-latest | ||||
|  | ||||
|     steps: | ||||
|  | ||||
|     - name: Checkout | ||||
|       uses: actions/checkout@v3 | ||||
|  | ||||
|     - name: crowdin action | ||||
|       uses: crowdin/github-action@v1.7.0 | ||||
|       with: | ||||
|         upload_sources: false | ||||
|         upload_translations: false | ||||
|         download_translations: true | ||||
|         localization_branch_name: crowdin/l10n_translations | ||||
|         create_pull_request: true | ||||
|         pull_request_title: 'New Crowdin Translations' | ||||
|         pull_request_body: 'New Crowdin translations by [Crowdin GitHub Action](https://github.com/crowdin/github-action)' | ||||
|         pull_request_base_branch_name: 'main' | ||||
|         config: crowdin.yml | ||||
|       env: | ||||
|         GITHUB_TOKEN: ${{ secrets.REPO_TOKEN }} | ||||
|         CROWDIN_PROJECT_ID: ${{ secrets.CROWDIN_PROJECT_ID }} | ||||
|         CROWDIN_PERSONAL_TOKEN: ${{ secrets.CROWDIN_PERSONAL_TOKEN }} | ||||
| @@ -1,9 +1,14 @@ | ||||
| name: 💬 Crowdin Upload | ||||
| 
 | ||||
| on: | ||||
|   workflow_dispatch: | ||||
|   push: | ||||
|     branches: [ main ] | ||||
| 
 | ||||
| concurrency: | ||||
|   group: ${{ github.workflow }}-${{ github.ref }} | ||||
|   cancel-in-progress: true | ||||
| 
 | ||||
| jobs: | ||||
|   synchronize-with-crowdin: | ||||
|     runs-on: ubuntu-latest | ||||
| @@ -14,11 +19,10 @@ jobs: | ||||
|       uses: actions/checkout@v3 | ||||
| 
 | ||||
|     - name: crowdin action | ||||
|       uses: crowdin/github-action@1.4.10 | ||||
|       uses: crowdin/github-action@v1.7.0 | ||||
|       with: | ||||
|         upload_sources: true | ||||
|         upload_sources_args: '--auto-update --delete-obsolete' | ||||
|         upload_translations: false | ||||
|         download_translations: false | ||||
|         config: crowdin.yml | ||||
|       env: | ||||
							
								
								
									
										73
									
								
								.github/workflows/deploy.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						| @@ -1,73 +0,0 @@ | ||||
| name: 📦 Deploy Website | ||||
|  | ||||
| on: | ||||
|   workflow_dispatch: | ||||
|   release: | ||||
|     types: [published] | ||||
|  | ||||
| env: | ||||
|   PYTHON_VERSION: 3.x | ||||
|  | ||||
| jobs: | ||||
|   build: | ||||
|     name: Build website | ||||
|     runs-on: ubuntu-latest | ||||
|     steps: | ||||
|  | ||||
|       - name: Checkout repository | ||||
|         uses: actions/checkout@v3 | ||||
|         with: | ||||
|           fetch-depth: '0' | ||||
|           ref: ${{github.event.pull_request.head.ref}} | ||||
|           repository: ${{github.event.pull_request.head.repo.full_name}} | ||||
|           ssh-key: ${{ secrets.ACTIONS_SSH_KEY }} | ||||
|           submodules: 'true' | ||||
|  | ||||
|       - name: Set up Python runtime | ||||
|         uses: actions/setup-python@v4 | ||||
|         with: | ||||
|           python-version: '3.7' | ||||
|        | ||||
|       - name: Cache files | ||||
|         uses: actions/cache@v3.0.5 | ||||
|         with: | ||||
|           key: ${{ github.ref }} | ||||
|           path: .cache | ||||
|  | ||||
|       - name: Install Python dependencies | ||||
|         run: | | ||||
|           pip install pipenv | ||||
|           pipenv install | ||||
|  | ||||
|       - name: Build website | ||||
|         run: | | ||||
|           pipenv run mkdocs build | ||||
|           mv .well-known site/ | ||||
|           tar cvf site.tar site | ||||
|           pipenv run mkdocs --version | ||||
|  | ||||
|       - name: Package website | ||||
|         uses: actions/upload-artifact@v3 | ||||
|         with: | ||||
|           name: generated-site | ||||
|           path: site.tar | ||||
|  | ||||
|   deploy: | ||||
|     name: Rsync Deploy | ||||
|     runs-on: ubuntu-latest | ||||
|     environment: production | ||||
|     needs: build | ||||
|  | ||||
|     steps: | ||||
|       - name: Download generated Jekyll site | ||||
|         uses: actions/download-artifact@v3 | ||||
|         with: | ||||
|           name: generated-site | ||||
|       - run: tar xvf site.tar | ||||
|       - name: Copy built site to production | ||||
|         run: | | ||||
|           mkdir -p ~/.ssh | ||||
|           echo "${{ secrets.SSH_KEY }}" > ~/.ssh/id_rsa | ||||
|           chmod 700 ~/.ssh/id_rsa | ||||
|           ssh-keyscan -H ${{ secrets.SSH_HOST }} >> ~/.ssh/known_hosts | ||||
|           rsync -azP --delete site/ ${{ secrets.SSH_USERNAME }}@${{ secrets.SSH_HOST }}:${{ secrets.SSH_PATH }} | ||||
							
								
								
									
										20
									
								
								.github/workflows/mirror.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						| @@ -7,7 +7,7 @@ concurrency: | ||||
|   group: git-mirror | ||||
|  | ||||
| jobs: | ||||
|   git-mirror: | ||||
|   gitlab: | ||||
|     runs-on: ubuntu-latest | ||||
|     steps: | ||||
|       - name: Mirror to GitLab | ||||
| @@ -18,10 +18,9 @@ jobs: | ||||
|           source-repo: "git@github.com:privacyguides/privacyguides.org.git" | ||||
|           destination-repo: "git@gitlab.com:privacyguides/privacyguides.org.git" | ||||
|  | ||||
|       - name: Cleanup | ||||
|         run: | | ||||
|           sudo rm -rf privacyguides.org.git | ||||
|  | ||||
|   codeberg: | ||||
|     runs-on: ubuntu-latest | ||||
|     steps: | ||||
|       - name: Mirror to Codeberg | ||||
|         uses: wearerequired/git-mirror-action@v1 | ||||
|         env: | ||||
| @@ -29,3 +28,14 @@ jobs: | ||||
|         with: | ||||
|           source-repo: "git@github.com:privacyguides/privacyguides.org.git" | ||||
|           destination-repo: "git@codeberg.org:privacyguides/privacyguides.org.git" | ||||
|  | ||||
|   sourcehut: | ||||
|     runs-on: ubuntu-latest | ||||
|     steps: | ||||
|       - name: Mirror to SourceHut | ||||
|         uses: wearerequired/git-mirror-action@v1 | ||||
|         env: | ||||
|           SSH_PRIVATE_KEY: ${{ secrets.ACTIONS_SSH_KEY }} | ||||
|         with: | ||||
|           source-repo: "git@github.com:privacyguides/privacyguides.org.git" | ||||
|           destination-repo: "git@git.sr.ht:~jonaharagon/privacyguides.org" | ||||
|   | ||||
							
								
								
									
										90
									
								
								.github/workflows/pages.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,90 @@ | ||||
| name: 🛠️ Deploy to GitHub Pages | ||||
|  | ||||
| on: | ||||
|   workflow_dispatch: | ||||
|   release: | ||||
|     types: [published] | ||||
|  | ||||
| # Allow one concurrent deployment | ||||
| concurrency: | ||||
|   group: "pages" | ||||
|   cancel-in-progress: true | ||||
|  | ||||
| env: | ||||
|   PYTHON_VERSION: 3.8 | ||||
|  | ||||
| jobs: | ||||
|   build: | ||||
|     name: Build | ||||
|  | ||||
|     runs-on: ubuntu-latest | ||||
|     steps: | ||||
|       - name: Checkout repository | ||||
|         uses: actions/checkout@v3 | ||||
|         with: | ||||
|           fetch-depth: '0' | ||||
|           ref: ${{github.event.pull_request.head.ref}} | ||||
|           repository: ${{github.event.pull_request.head.repo.full_name}} | ||||
|           ssh-key: ${{ secrets.ACTIONS_SSH_KEY }} | ||||
|           submodules: 'true' | ||||
|        | ||||
|       - name: Pages setup | ||||
|         uses: actions/configure-pages@v3 | ||||
|  | ||||
|       - name: Python setup | ||||
|         uses: actions/setup-python@v4 | ||||
|         with: | ||||
|           python-version: '3.8' | ||||
|        | ||||
|       - name: Cache files | ||||
|         uses: actions/cache@v3.2.6 | ||||
|         with: | ||||
|           key: ${{ github.ref }} | ||||
|           path: .cache | ||||
|  | ||||
|       - name: Install Python dependencies | ||||
|         run: | | ||||
|           pip install pipenv | ||||
|           pipenv install | ||||
|  | ||||
|       - name: Build website | ||||
|         env: | ||||
|           GH_TOKEN: ${{ secrets.GITHUB_TOKEN }} | ||||
|           CARDS: true | ||||
|         run: | | ||||
|           pipenv run mkdocs build --config-file config/mkdocs.en.yml | ||||
|           pipenv run mkdocs build --config-file config/mkdocs.fr.yml | ||||
|           pipenv run mkdocs build --config-file config/mkdocs.he.yml | ||||
|           pipenv run mkdocs build --config-file config/mkdocs.nl.yml | ||||
|           mv .well-known site/ | ||||
|           pipenv run mkdocs --version | ||||
|        | ||||
|       - name: Matrix homeserver configuration | ||||
|         run: | | ||||
|           mkdir -p site/.well-known/matrix | ||||
|           curl -o site/.well-known/matrix/server https://matrix.privacyguides.org/.well-known/matrix/server | ||||
|           curl -o site/.well-known/matrix/client https://matrix.privacyguides.org/.well-known/matrix/client | ||||
|  | ||||
|       - name: Package website | ||||
|         uses: actions/upload-pages-artifact@v1 | ||||
|         with: | ||||
|           path: site | ||||
|  | ||||
|   deploy: | ||||
|     name: Deploy | ||||
|     needs: build | ||||
|  | ||||
|     # Grant GITHUB_TOKEN the permissions required to make a Pages deployment | ||||
|     permissions: | ||||
|       pages: write      # to deploy to Pages | ||||
|       id-token: write   # to verify the deployment originates from an appropriate source | ||||
|  | ||||
|     environment: | ||||
|       name: github-pages | ||||
|       url: ${{ steps.deployment.outputs.page_url }} | ||||
|  | ||||
|     runs-on: ubuntu-latest | ||||
|     steps: | ||||
|       - name: Deploy to GitHub Pages | ||||
|         id: deployment | ||||
|         uses: actions/deploy-pages@main | ||||
							
								
								
									
										44
									
								
								.github/workflows/preview.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						| @@ -1,44 +0,0 @@ | ||||
| name: 🔂 Surge PR Preview | ||||
|  | ||||
| on: | ||||
|   pull_request_target: | ||||
|     types: [opened, synchronize, reopened] | ||||
|    | ||||
| # Ensures that only one mirror task will run at a time. | ||||
| concurrency: | ||||
|   group: surge-sh | ||||
|  | ||||
| jobs: | ||||
|   preview: | ||||
|     runs-on: ubuntu-latest | ||||
|     permissions: | ||||
|       issues: write | ||||
|       pull-requests: write | ||||
|       contents: write | ||||
|     environment: preview | ||||
|     steps: | ||||
|       - name: Checkout repository | ||||
|         uses: actions/checkout@v3 | ||||
|         with: | ||||
|           fetch-depth: '0' | ||||
|           ref: ${{github.event.pull_request.head.ref}} | ||||
|           repository: ${{github.event.pull_request.head.repo.full_name}} | ||||
|           ssh-key: ${{ secrets.ACTIONS_SSH_KEY }} | ||||
|           submodules: 'true' | ||||
|  | ||||
|       - name: Set up Python runtime | ||||
|         uses: actions/setup-python@v4 | ||||
|         with: | ||||
|           python-version: '3.7' | ||||
|  | ||||
|       - name: Deploy to surge.sh | ||||
|         uses: afc163/surge-preview@v1 | ||||
|         with: | ||||
|           surge_token: ${{ secrets.SURGE_TOKEN }} | ||||
|           github_token: ${{ secrets.GITHUB_TOKEN }} | ||||
|           dist: site | ||||
|           failOnError: 'true' | ||||
|           build: | | ||||
|             pip install pipenv | ||||
|             pipenv install | ||||
|             pipenv run mkdocs build | ||||
							
								
								
									
										19
									
								
								.github/workflows/release.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,19 @@ | ||||
| name: 📦 Releases | ||||
|  | ||||
| on:  | ||||
|   push: | ||||
|     tags: | ||||
|       - '*' | ||||
|  | ||||
| jobs: | ||||
|   release: | ||||
|     name: Create Release | ||||
|     runs-on: ubuntu-latest | ||||
|     permissions: | ||||
|       contents: write | ||||
|     steps: | ||||
|       - uses: actions/checkout@v3 | ||||
|       - uses: ncipollo/release-action@v1 | ||||
|         with: | ||||
|           generateReleaseNotes: true | ||||
|           token: ${{ secrets.REPO_TOKEN }} | ||||
							
								
								
									
										13
									
								
								.gitmodules
									
									
									
									
										vendored
									
									
								
							
							
						
						| @@ -1,9 +1,6 @@ | ||||
| [submodule "mkdocs-material-insiders"] | ||||
| 	path = mkdocs-material | ||||
| 	url = git@github.com:privacyguides/mkdocs-material-insiders.git | ||||
| [submodule "docs/assets/brand"] | ||||
| 	path = docs/assets/brand | ||||
| [submodule "theme/assets/brand"] | ||||
| 	path = theme/assets/brand | ||||
| 	url = https://github.com/privacyguides/brand.git | ||||
| [submodule "docs/blog"] | ||||
| 	path = docs/blog | ||||
| 	url = https://github.com/privacyguides/blog.git | ||||
| [submodule "modules/mkdocs-material"] | ||||
| 	path = modules/mkdocs-material | ||||
| 	url = git@github.com:privacyguides/mkdocs-material-insiders.git | ||||
|   | ||||
| @@ -1,5 +0,0 @@ | ||||
| { | ||||
|     "m.homeserver": { | ||||
|         "base_url": "https://dendrite-client.privacyguides.org" | ||||
|     } | ||||
| } | ||||
| @@ -1,3 +0,0 @@ | ||||
| { | ||||
|     "m.server": "dendrite-federation.privacyguides.org:443" | ||||
| } | ||||
| @@ -1,5 +0,0 @@ | ||||
| Contact: jonah@triplebit.net | ||||
| Encryption: https://www.jonaharagon.com/keys/ | ||||
| Preferred-Languages: en | ||||
| Canonical: https://privacyguides.org/.well-known/security.txt | ||||
| Policy: https://github.com/privacyguides/privacyguides.org/security/policy | ||||
							
								
								
									
										1
									
								
								Brewfile.netlify
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1 @@ | ||||
| brew "pngquant" | ||||
							
								
								
									
										47
									
								
								CITATION.cff
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,47 @@ | ||||
| cff-version: 1.2.0 | ||||
| title: Privacy Guides | ||||
| message: 'If you reference this website, please cite it in your work.' | ||||
| type: software | ||||
| authors: | ||||
|   - email: jonah@privacyguides.org | ||||
|     given-names: Jonah | ||||
|     family-names: Aragon | ||||
|     orcid: 'https://orcid.org/0000-0001-6996-4965' | ||||
|   - name: The Privacy Guides team | ||||
|     website: 'https://github.com/orgs/privacyguides/people' | ||||
| repository-code: 'https://github.com/privacyguides/privacyguides.org' | ||||
| references: | ||||
|   - authors: | ||||
|     - family-names: Donath | ||||
|       given-names: Martin | ||||
|     title: 'mkdocs-material' | ||||
|     type: software | ||||
|     repository-code: 'https://github.com/squidfunk/mkdocs-material' | ||||
| preferred-citation: | ||||
|   type: website | ||||
|   title: Privacy Guides | ||||
|   authors: | ||||
|     - email: jonah@privacyguides.org | ||||
|       given-names: Jonah | ||||
|       family-names: Aragon | ||||
|       orcid: 'https://orcid.org/0000-0001-6996-4965' | ||||
|     - given-names: Daniel | ||||
|       family-names: Gray | ||||
|       email: dngray@privacyguides.org | ||||
|     - name: The Privacy Guides team | ||||
|       website: 'https://github.com/orgs/privacyguides/people' | ||||
|     - name: Various project contributors | ||||
|   url: 'https://www.privacyguides.org' | ||||
|   abstract: >- | ||||
|     Privacy Guides is a socially motivated website that | ||||
|     provides information for protecting your data | ||||
|     security and privacy. We are a non-profit | ||||
|     collective operated entirely by volunteer team | ||||
|     members and contributors. | ||||
|   keywords: | ||||
|     - privacy | ||||
|     - surveillance | ||||
|     - encryption | ||||
|     - website | ||||
|     - markdown | ||||
|   license: "CC-BY-ND-4.0" | ||||
							
								
								
									
										468
									
								
								LICENSE
									
									
									
									
									
								
							
							
						
						| @@ -1,116 +1,392 @@ | ||||
| CC0 1.0 Universal | ||||
| Attribution-NoDerivatives 4.0 International | ||||
|  | ||||
| Statement of Purpose | ||||
| ======================================================================= | ||||
|  | ||||
| The laws of most jurisdictions throughout the world automatically confer | ||||
| exclusive Copyright and Related Rights (defined below) upon the creator and | ||||
| subsequent owner(s) (each and all, an "owner") of an original work of | ||||
| authorship and/or a database (each, a "Work"). | ||||
| Creative Commons Corporation ("Creative Commons") is not a law firm and | ||||
| does not provide legal services or legal advice. Distribution of | ||||
| Creative Commons public licenses does not create a lawyer-client or | ||||
| other relationship. Creative Commons makes its licenses and related | ||||
| information available on an "as-is" basis. Creative Commons gives no | ||||
| warranties regarding its licenses, any material licensed under their | ||||
| terms and conditions, or any related information. Creative Commons | ||||
| disclaims all liability for damages resulting from their use to the | ||||
| fullest extent possible. | ||||
|  | ||||
| Certain owners wish to permanently relinquish those rights to a Work for the | ||||
| purpose of contributing to a commons of creative, cultural and scientific | ||||
| works ("Commons") that the public can reliably and without fear of later | ||||
| claims of infringement build upon, modify, incorporate in other works, reuse | ||||
| and redistribute as freely as possible in any form whatsoever and for any | ||||
| purposes, including without limitation commercial purposes. These owners may | ||||
| contribute to the Commons to promote the ideal of a free culture and the | ||||
| further production of creative, cultural and scientific works, or to gain | ||||
| reputation or greater distribution for their Work in part through the use and | ||||
| efforts of others. | ||||
| Using Creative Commons Public Licenses | ||||
|  | ||||
| For these and/or other purposes and motivations, and without any expectation | ||||
| of additional consideration or compensation, the person associating CC0 with a | ||||
| Work (the "Affirmer"), to the extent that he or she is an owner of Copyright | ||||
| and Related Rights in the Work, voluntarily elects to apply CC0 to the Work | ||||
| and publicly distribute the Work under its terms, with knowledge of his or her | ||||
| Copyright and Related Rights in the Work and the meaning and intended legal | ||||
| effect of CC0 on those rights. | ||||
| Creative Commons public licenses provide a standard set of terms and | ||||
| conditions that creators and other rights holders may use to share | ||||
| original works of authorship and other material subject to copyright | ||||
| and certain other rights specified in the public license below. The | ||||
| following considerations are for informational purposes only, are not | ||||
| exhaustive, and do not form part of our licenses. | ||||
|  | ||||
| 1. Copyright and Related Rights. A Work made available under CC0 may be | ||||
| protected by copyright and related or neighboring rights ("Copyright and | ||||
| Related Rights"). Copyright and Related Rights include, but are not limited | ||||
| to, the following: | ||||
|      Considerations for licensors: Our public licenses are | ||||
|      intended for use by those authorized to give the public | ||||
|      permission to use material in ways otherwise restricted by | ||||
|      copyright and certain other rights. Our licenses are | ||||
|      irrevocable. Licensors should read and understand the terms | ||||
|      and conditions of the license they choose before applying it. | ||||
|      Licensors should also secure all rights necessary before | ||||
|      applying our licenses so that the public can reuse the | ||||
|      material as expected. Licensors should clearly mark any | ||||
|      material not subject to the license. This includes other CC- | ||||
|      licensed material, or material used under an exception or | ||||
|      limitation to copyright. More considerations for licensors: | ||||
|     wiki.creativecommons.org/Considerations_for_licensors | ||||
|  | ||||
|   i. the right to reproduce, adapt, distribute, perform, display, communicate, | ||||
|   and translate a Work; | ||||
|      Considerations for the public: By using one of our public | ||||
|      licenses, a licensor grants the public permission to use the | ||||
|      licensed material under specified terms and conditions. If | ||||
|      the licensor's permission is not necessary for any reason--for | ||||
|      example, because of any applicable exception or limitation to | ||||
|      copyright--then that use is not regulated by the license. Our | ||||
|      licenses grant only permissions under copyright and certain | ||||
|      other rights that a licensor has authority to grant. Use of | ||||
|      the licensed material may still be restricted for other | ||||
|      reasons, including because others have copyright or other | ||||
|      rights in the material. A licensor may make special requests, | ||||
|      such as asking that all changes be marked or described. | ||||
|      Although not required by our licenses, you are encouraged to | ||||
|      respect those requests where reasonable. More considerations | ||||
|      for the public: | ||||
|     wiki.creativecommons.org/Considerations_for_licensees | ||||
|  | ||||
|   ii. moral rights retained by the original author(s) and/or performer(s); | ||||
|  | ||||
|   iii. publicity and privacy rights pertaining to a person's image or likeness | ||||
|   depicted in a Work; | ||||
| ======================================================================= | ||||
|  | ||||
|   iv. rights protecting against unfair competition in regards to a Work, | ||||
|   subject to the limitations in paragraph 4(a), below; | ||||
| Creative Commons Attribution-NoDerivatives 4.0 International Public | ||||
| License | ||||
|  | ||||
|   v. rights protecting the extraction, dissemination, use and reuse of data in | ||||
|   a Work; | ||||
| By exercising the Licensed Rights (defined below), You accept and agree | ||||
| to be bound by the terms and conditions of this Creative Commons | ||||
| Attribution-NoDerivatives 4.0 International Public License ("Public | ||||
| License"). To the extent this Public License may be interpreted as a | ||||
| contract, You are granted the Licensed Rights in consideration of Your | ||||
| acceptance of these terms and conditions, and the Licensor grants You | ||||
| such rights in consideration of benefits the Licensor receives from | ||||
| making the Licensed Material available under these terms and | ||||
| conditions. | ||||
|  | ||||
|   vi. database rights (such as those arising under Directive 96/9/EC of the | ||||
|   European Parliament and of the Council of 11 March 1996 on the legal | ||||
|   protection of databases, and under any national implementation thereof, | ||||
|   including any amended or successor version of such directive); and | ||||
|  | ||||
|   vii. other similar, equivalent or corresponding rights throughout the world | ||||
|   based on applicable law or treaty, and any national implementations thereof. | ||||
| Section 1 -- Definitions. | ||||
|  | ||||
| 2. Waiver. To the greatest extent permitted by, but not in contravention of, | ||||
| applicable law, Affirmer hereby overtly, fully, permanently, irrevocably and | ||||
| unconditionally waives, abandons, and surrenders all of Affirmer's Copyright | ||||
| and Related Rights and associated claims and causes of action, whether now | ||||
| known or unknown (including existing as well as future claims and causes of | ||||
| action), in the Work (i) in all territories worldwide, (ii) for the maximum | ||||
| duration provided by applicable law or treaty (including future time | ||||
| extensions), (iii) in any current or future medium and for any number of | ||||
| copies, and (iv) for any purpose whatsoever, including without limitation | ||||
| commercial, advertising or promotional purposes (the "Waiver"). Affirmer makes | ||||
| the Waiver for the benefit of each member of the public at large and to the | ||||
| detriment of Affirmer's heirs and successors, fully intending that such Waiver | ||||
| shall not be subject to revocation, rescission, cancellation, termination, or | ||||
| any other legal or equitable action to disrupt the quiet enjoyment of the Work | ||||
| by the public as contemplated by Affirmer's express Statement of Purpose. | ||||
|   a. Adapted Material means material subject to Copyright and Similar | ||||
|      Rights that is derived from or based upon the Licensed Material | ||||
|      and in which the Licensed Material is translated, altered, | ||||
|      arranged, transformed, or otherwise modified in a manner requiring | ||||
|      permission under the Copyright and Similar Rights held by the | ||||
|      Licensor. For purposes of this Public License, where the Licensed | ||||
|      Material is a musical work, performance, or sound recording, | ||||
|      Adapted Material is always produced where the Licensed Material is | ||||
|      synched in timed relation with a moving image. | ||||
|  | ||||
| 3. Public License Fallback. Should any part of the Waiver for any reason be | ||||
| judged legally invalid or ineffective under applicable law, then the Waiver | ||||
| shall be preserved to the maximum extent permitted taking into account | ||||
| Affirmer's express Statement of Purpose. In addition, to the extent the Waiver | ||||
| is so judged Affirmer hereby grants to each affected person a royalty-free, | ||||
| non transferable, non sublicensable, non exclusive, irrevocable and | ||||
| unconditional license to exercise Affirmer's Copyright and Related Rights in | ||||
| the Work (i) in all territories worldwide, (ii) for the maximum duration | ||||
| provided by applicable law or treaty (including future time extensions), (iii) | ||||
| in any current or future medium and for any number of copies, and (iv) for any | ||||
| purpose whatsoever, including without limitation commercial, advertising or | ||||
| promotional purposes (the "License"). The License shall be deemed effective as | ||||
| of the date CC0 was applied by Affirmer to the Work. Should any part of the | ||||
| License for any reason be judged legally invalid or ineffective under | ||||
| applicable law, such partial invalidity or ineffectiveness shall not | ||||
| invalidate the remainder of the License, and in such case Affirmer hereby | ||||
| affirms that he or she will not (i) exercise any of his or her remaining | ||||
| Copyright and Related Rights in the Work or (ii) assert any associated claims | ||||
| and causes of action with respect to the Work, in either case contrary to | ||||
| Affirmer's express Statement of Purpose. | ||||
|   b. Copyright and Similar Rights means copyright and/or similar rights | ||||
|      closely related to copyright including, without limitation, | ||||
|      performance, broadcast, sound recording, and Sui Generis Database | ||||
|      Rights, without regard to how the rights are labeled or | ||||
|      categorized. For purposes of this Public License, the rights | ||||
|      specified in Section 2(b)(1)-(2) are not Copyright and Similar | ||||
|      Rights. | ||||
|  | ||||
| 4. Limitations and Disclaimers. | ||||
|   c. Effective Technological Measures means those measures that, in the | ||||
|      absence of proper authority, may not be circumvented under laws | ||||
|      fulfilling obligations under Article 11 of the WIPO Copyright | ||||
|      Treaty adopted on December 20, 1996, and/or similar international | ||||
|      agreements. | ||||
|  | ||||
|   a. No trademark or patent rights held by Affirmer are waived, abandoned, | ||||
|   surrendered, licensed or otherwise affected by this document. | ||||
|   d. Exceptions and Limitations means fair use, fair dealing, and/or | ||||
|      any other exception or limitation to Copyright and Similar Rights | ||||
|      that applies to Your use of the Licensed Material. | ||||
|  | ||||
|   b. Affirmer offers the Work as-is and makes no representations or warranties | ||||
|   of any kind concerning the Work, express, implied, statutory or otherwise, | ||||
|   including without limitation warranties of title, merchantability, fitness | ||||
|   for a particular purpose, non infringement, or the absence of latent or | ||||
|   other defects, accuracy, or the present or absence of errors, whether or not | ||||
|   discoverable, all to the greatest extent permissible under applicable law. | ||||
|   e. Licensed Material means the artistic or literary work, database, | ||||
|      or other material to which the Licensor applied this Public | ||||
|      License. | ||||
|  | ||||
|   c. Affirmer disclaims responsibility for clearing rights of other persons | ||||
|   that may apply to the Work or any use thereof, including without limitation | ||||
|   any person's Copyright and Related Rights in the Work. Further, Affirmer | ||||
|   disclaims responsibility for obtaining any necessary consents, permissions | ||||
|   or other rights required for any use of the Work. | ||||
|   f. Licensed Rights means the rights granted to You subject to the | ||||
|      terms and conditions of this Public License, which are limited to | ||||
|      all Copyright and Similar Rights that apply to Your use of the | ||||
|      Licensed Material and that the Licensor has authority to license. | ||||
|  | ||||
|   d. Affirmer understands and acknowledges that Creative Commons is not a | ||||
|   party to this document and has no duty or obligation with respect to this | ||||
|   CC0 or use of the Work. | ||||
|   g. Licensor means the individual(s) or entity(ies) granting rights | ||||
|      under this Public License. | ||||
|  | ||||
| For more information, please see | ||||
| <http://creativecommons.org/publicdomain/zero/1.0/> | ||||
|   h. Share means to provide material to the public by any means or | ||||
|      process that requires permission under the Licensed Rights, such | ||||
|      as reproduction, public display, public performance, distribution, | ||||
|      dissemination, communication, or importation, and to make material | ||||
|      available to the public including in ways that members of the | ||||
|      public may access the material from a place and at a time | ||||
|      individually chosen by them. | ||||
|  | ||||
|   i. Sui Generis Database Rights means rights other than copyright | ||||
|      resulting from Directive 96/9/EC of the European Parliament and of | ||||
|      the Council of 11 March 1996 on the legal protection of databases, | ||||
|      as amended and/or succeeded, as well as other essentially | ||||
|      equivalent rights anywhere in the world. | ||||
|  | ||||
|   j. You means the individual or entity exercising the Licensed Rights | ||||
|      under this Public License. Your has a corresponding meaning. | ||||
|  | ||||
|  | ||||
| Section 2 -- Scope. | ||||
|  | ||||
|   a. License grant. | ||||
|  | ||||
|        1. Subject to the terms and conditions of this Public License, | ||||
|           the Licensor hereby grants You a worldwide, royalty-free, | ||||
|           non-sublicensable, non-exclusive, irrevocable license to | ||||
|           exercise the Licensed Rights in the Licensed Material to: | ||||
|  | ||||
|             a. reproduce and Share the Licensed Material, in whole or | ||||
|                in part; and | ||||
|  | ||||
|             b. produce and reproduce, but not Share, Adapted Material. | ||||
|  | ||||
|        2. Exceptions and Limitations. For the avoidance of doubt, where | ||||
|           Exceptions and Limitations apply to Your use, this Public | ||||
|           License does not apply, and You do not need to comply with | ||||
|           its terms and conditions. | ||||
|  | ||||
|        3. Term. The term of this Public License is specified in Section | ||||
|           6(a). | ||||
|  | ||||
|        4. Media and formats; technical modifications allowed. The | ||||
|           Licensor authorizes You to exercise the Licensed Rights in | ||||
|           all media and formats whether now known or hereafter created, | ||||
|           and to make technical modifications necessary to do so. The | ||||
|           Licensor waives and/or agrees not to assert any right or | ||||
|           authority to forbid You from making technical modifications | ||||
|           necessary to exercise the Licensed Rights, including | ||||
|           technical modifications necessary to circumvent Effective | ||||
|           Technological Measures. For purposes of this Public License, | ||||
|           simply making modifications authorized by this Section 2(a) | ||||
|           (4) never produces Adapted Material. | ||||
|  | ||||
|        5. Downstream recipients. | ||||
|  | ||||
|             a. Offer from the Licensor -- Licensed Material. Every | ||||
|                recipient of the Licensed Material automatically | ||||
|                receives an offer from the Licensor to exercise the | ||||
|                Licensed Rights under the terms and conditions of this | ||||
|                Public License. | ||||
|  | ||||
|             b. No downstream restrictions. You may not offer or impose | ||||
|                any additional or different terms or conditions on, or | ||||
|                apply any Effective Technological Measures to, the | ||||
|                Licensed Material if doing so restricts exercise of the | ||||
|                Licensed Rights by any recipient of the Licensed | ||||
|                Material. | ||||
|  | ||||
|        6. No endorsement. Nothing in this Public License constitutes or | ||||
|           may be construed as permission to assert or imply that You | ||||
|           are, or that Your use of the Licensed Material is, connected | ||||
|           with, or sponsored, endorsed, or granted official status by, | ||||
|           the Licensor or others designated to receive attribution as | ||||
|           provided in Section 3(a)(1)(A)(i). | ||||
|  | ||||
|   b. Other rights. | ||||
|  | ||||
|        1. Moral rights, such as the right of integrity, are not | ||||
|           licensed under this Public License, nor are publicity, | ||||
|           privacy, and/or other similar personality rights; however, to | ||||
|           the extent possible, the Licensor waives and/or agrees not to | ||||
|           assert any such rights held by the Licensor to the limited | ||||
|           extent necessary to allow You to exercise the Licensed | ||||
|           Rights, but not otherwise. | ||||
|  | ||||
|        2. Patent and trademark rights are not licensed under this | ||||
|           Public License. | ||||
|  | ||||
|        3. To the extent possible, the Licensor waives any right to | ||||
|           collect royalties from You for the exercise of the Licensed | ||||
|           Rights, whether directly or through a collecting society | ||||
|           under any voluntary or waivable statutory or compulsory | ||||
|           licensing scheme. In all other cases the Licensor expressly | ||||
|           reserves any right to collect such royalties. | ||||
|  | ||||
|  | ||||
| Section 3 -- License Conditions. | ||||
|  | ||||
| Your exercise of the Licensed Rights is expressly made subject to the | ||||
| following conditions. | ||||
|  | ||||
|   a. Attribution. | ||||
|  | ||||
|        1. If You Share the Licensed Material, You must: | ||||
|  | ||||
|             a. retain the following if it is supplied by the Licensor | ||||
|                with the Licensed Material: | ||||
|  | ||||
|                  i. identification of the creator(s) of the Licensed | ||||
|                     Material and any others designated to receive | ||||
|                     attribution, in any reasonable manner requested by | ||||
|                     the Licensor (including by pseudonym if | ||||
|                     designated); | ||||
|  | ||||
|                 ii. a copyright notice; | ||||
|  | ||||
|                iii. a notice that refers to this Public License; | ||||
|  | ||||
|                 iv. a notice that refers to the disclaimer of | ||||
|                     warranties; | ||||
|  | ||||
|                  v. a URI or hyperlink to the Licensed Material to the | ||||
|                     extent reasonably practicable; | ||||
|  | ||||
|             b. indicate if You modified the Licensed Material and | ||||
|                retain an indication of any previous modifications; and | ||||
|  | ||||
|             c. indicate the Licensed Material is licensed under this | ||||
|                Public License, and include the text of, or the URI or | ||||
|                hyperlink to, this Public License. | ||||
|  | ||||
|           For the avoidance of doubt, You do not have permission under | ||||
|           this Public License to Share Adapted Material. | ||||
|  | ||||
|        2. You may satisfy the conditions in Section 3(a)(1) in any | ||||
|           reasonable manner based on the medium, means, and context in | ||||
|           which You Share the Licensed Material. For example, it may be | ||||
|           reasonable to satisfy the conditions by providing a URI or | ||||
|           hyperlink to a resource that includes the required | ||||
|           information. | ||||
|  | ||||
|        3. If requested by the Licensor, You must remove any of the | ||||
|           information required by Section 3(a)(1)(A) to the extent | ||||
|           reasonably practicable. | ||||
|  | ||||
|  | ||||
| Section 4 -- Sui Generis Database Rights. | ||||
|  | ||||
| Where the Licensed Rights include Sui Generis Database Rights that | ||||
| apply to Your use of the Licensed Material: | ||||
|  | ||||
|   a. for the avoidance of doubt, Section 2(a)(1) grants You the right | ||||
|      to extract, reuse, reproduce, and Share all or a substantial | ||||
|      portion of the contents of the database, provided You do not Share | ||||
|      Adapted Material; | ||||
|  | ||||
|   b. if You include all or a substantial portion of the database | ||||
|      contents in a database in which You have Sui Generis Database | ||||
|      Rights, then the database in which You have Sui Generis Database | ||||
|      Rights (but not its individual contents) is Adapted Material; and | ||||
|  | ||||
|   c. You must comply with the conditions in Section 3(a) if You Share | ||||
|      all or a substantial portion of the contents of the database. | ||||
|  | ||||
| For the avoidance of doubt, this Section 4 supplements and does not | ||||
| replace Your obligations under this Public License where the Licensed | ||||
| Rights include other Copyright and Similar Rights. | ||||
|  | ||||
|  | ||||
| Section 5 -- Disclaimer of Warranties and Limitation of Liability. | ||||
|  | ||||
|   a. UNLESS OTHERWISE SEPARATELY UNDERTAKEN BY THE LICENSOR, TO THE | ||||
|      EXTENT POSSIBLE, THE LICENSOR OFFERS THE LICENSED MATERIAL AS-IS | ||||
|      AND AS-AVAILABLE, AND MAKES NO REPRESENTATIONS OR WARRANTIES OF | ||||
|      ANY KIND CONCERNING THE LICENSED MATERIAL, WHETHER EXPRESS, | ||||
|      IMPLIED, STATUTORY, OR OTHER. THIS INCLUDES, WITHOUT LIMITATION, | ||||
|      WARRANTIES OF TITLE, MERCHANTABILITY, FITNESS FOR A PARTICULAR | ||||
|      PURPOSE, NON-INFRINGEMENT, ABSENCE OF LATENT OR OTHER DEFECTS, | ||||
|      ACCURACY, OR THE PRESENCE OR ABSENCE OF ERRORS, WHETHER OR NOT | ||||
|      KNOWN OR DISCOVERABLE. WHERE DISCLAIMERS OF WARRANTIES ARE NOT | ||||
|      ALLOWED IN FULL OR IN PART, THIS DISCLAIMER MAY NOT APPLY TO YOU. | ||||
|  | ||||
|   b. TO THE EXTENT POSSIBLE, IN NO EVENT WILL THE LICENSOR BE LIABLE | ||||
|      TO YOU ON ANY LEGAL THEORY (INCLUDING, WITHOUT LIMITATION, | ||||
|      NEGLIGENCE) OR OTHERWISE FOR ANY DIRECT, SPECIAL, INDIRECT, | ||||
|      INCIDENTAL, CONSEQUENTIAL, PUNITIVE, EXEMPLARY, OR OTHER LOSSES, | ||||
|      COSTS, EXPENSES, OR DAMAGES ARISING OUT OF THIS PUBLIC LICENSE OR | ||||
|      USE OF THE LICENSED MATERIAL, EVEN IF THE LICENSOR HAS BEEN | ||||
|      ADVISED OF THE POSSIBILITY OF SUCH LOSSES, COSTS, EXPENSES, OR | ||||
|      DAMAGES. WHERE A LIMITATION OF LIABILITY IS NOT ALLOWED IN FULL OR | ||||
|      IN PART, THIS LIMITATION MAY NOT APPLY TO YOU. | ||||
|  | ||||
|   c. The disclaimer of warranties and limitation of liability provided | ||||
|      above shall be interpreted in a manner that, to the extent | ||||
|      possible, most closely approximates an absolute disclaimer and | ||||
|      waiver of all liability. | ||||
|  | ||||
|  | ||||
| Section 6 -- Term and Termination. | ||||
|  | ||||
|   a. This Public License applies for the term of the Copyright and | ||||
|      Similar Rights licensed here. However, if You fail to comply with | ||||
|      this Public License, then Your rights under this Public License | ||||
|      terminate automatically. | ||||
|  | ||||
|   b. Where Your right to use the Licensed Material has terminated under | ||||
|      Section 6(a), it reinstates: | ||||
|  | ||||
|        1. automatically as of the date the violation is cured, provided | ||||
|           it is cured within 30 days of Your discovery of the | ||||
|           violation; or | ||||
|  | ||||
|        2. upon express reinstatement by the Licensor. | ||||
|  | ||||
|      For the avoidance of doubt, this Section 6(b) does not affect any | ||||
|      right the Licensor may have to seek remedies for Your violations | ||||
|      of this Public License. | ||||
|  | ||||
|   c. For the avoidance of doubt, the Licensor may also offer the | ||||
|      Licensed Material under separate terms or conditions or stop | ||||
|      distributing the Licensed Material at any time; however, doing so | ||||
|      will not terminate this Public License. | ||||
|  | ||||
|   d. Sections 1, 5, 6, 7, and 8 survive termination of this Public | ||||
|      License. | ||||
|  | ||||
|  | ||||
| Section 7 -- Other Terms and Conditions. | ||||
|  | ||||
|   a. The Licensor shall not be bound by any additional or different | ||||
|      terms or conditions communicated by You unless expressly agreed. | ||||
|  | ||||
|   b. Any arrangements, understandings, or agreements regarding the | ||||
|      Licensed Material not stated herein are separate from and | ||||
|      independent of the terms and conditions of this Public License. | ||||
|  | ||||
|  | ||||
| Section 8 -- Interpretation. | ||||
|  | ||||
|   a. For the avoidance of doubt, this Public License does not, and | ||||
|      shall not be interpreted to, reduce, limit, restrict, or impose | ||||
|      conditions on any use of the Licensed Material that could lawfully | ||||
|      be made without permission under this Public License. | ||||
|  | ||||
|   b. To the extent possible, if any provision of this Public License is | ||||
|      deemed unenforceable, it shall be automatically reformed to the | ||||
|      minimum extent necessary to make it enforceable. If the provision | ||||
|      cannot be reformed, it shall be severed from this Public License | ||||
|      without affecting the enforceability of the remaining terms and | ||||
|      conditions. | ||||
|  | ||||
|   c. No term or condition of this Public License will be waived and no | ||||
|      failure to comply consented to unless expressly agreed to by the | ||||
|      Licensor. | ||||
|  | ||||
|   d. Nothing in this Public License constitutes or may be interpreted | ||||
|      as a limitation upon, or waiver of, any privileges and immunities | ||||
|      that apply to the Licensor or You, including from the legal | ||||
|      processes of any jurisdiction or authority. | ||||
|  | ||||
| ======================================================================= | ||||
|  | ||||
| Creative Commons is not a party to its public | ||||
| licenses. Notwithstanding, Creative Commons may elect to apply one of | ||||
| its public licenses to material it publishes and in those instances | ||||
| will be considered the “Licensor.” The text of the Creative Commons | ||||
| public licenses is dedicated to the public domain under the CC0 Public | ||||
| Domain Dedication. Except for the limited purpose of indicating that | ||||
| material is shared under a Creative Commons public license or as | ||||
| otherwise permitted by the Creative Commons policies published at | ||||
| creativecommons.org/policies, Creative Commons does not authorize the | ||||
| use of the trademark "Creative Commons" or any other trademark or logo | ||||
| of Creative Commons without its prior written consent including, | ||||
| without limitation, in connection with any unauthorized modifications | ||||
| to any of its public licenses or any other arrangements, | ||||
| understandings, or agreements concerning use of licensed material. For | ||||
| the avoidance of doubt, this paragraph does not form part of the | ||||
| public licenses. | ||||
|  | ||||
| Creative Commons may be contacted at creativecommons.org. | ||||
|   | ||||
							
								
								
									
										11
									
								
								Pipfile
									
									
									
									
									
								
							
							
						
						| @@ -5,15 +5,16 @@ name = "pypi" | ||||
|  | ||||
| [packages] | ||||
| mkdocs = "*" | ||||
| mkdocs-material = {path = "./mkdocs-material"} | ||||
| mkdocs-static-i18n = "*" | ||||
| mkdocs-git-revision-date-localized-plugin = "*" | ||||
| typing-extensions = "*" | ||||
| mkdocs-minify-plugin = "*" | ||||
| mkdocs-rss-plugin = "*" | ||||
| mkdocs-git-committers-plugin-2 = "*" | ||||
| mkdocs-macros-plugin = "*" | ||||
| pillow = "*" | ||||
| cairosvg = "*" | ||||
| mkdocs-material = {path = "./modules/mkdocs-material"} | ||||
|  | ||||
| [dev-packages] | ||||
| scour = "*" | ||||
|  | ||||
| [requires] | ||||
| python_version = "3.7" | ||||
| python_version = "3.8" | ||||
|   | ||||
							
								
								
									
										1058
									
								
								Pipfile.lock
									
									
									
										generated
									
									
									
								
							
							
						
						
							
								
								
									
										70
									
								
								README.md
									
									
									
									
									
								
							
							
						
						| @@ -9,30 +9,20 @@ | ||||
|  | ||||
|   <p><em>Your central privacy and security resource to protect yourself online.</em></p> | ||||
|  | ||||
|   <a href="https://opencollective.com/privacyguides"> | ||||
|     <img src="https://img.shields.io/opencollective/all/privacyguides"> | ||||
|   </a></p> | ||||
|  | ||||
|   <p><a href="https://www.reddit.com/r/PrivacyGuides/"> | ||||
|     <img src="https://img.shields.io/reddit/subreddit-subscribers/PrivacyGuides?label=Subscribe%20to%20r%2FPrivacyGuides&style=social"> | ||||
|   </a> | ||||
|   <a href="https://mastodon.social/@privacyguides"> | ||||
|     <img src="https://img.shields.io/mastodon/follow/107604420394178246?style=social"> | ||||
|   <p><a href="https://mastodon.neat.computer/@privacyguides"> | ||||
|     <img src="https://img.shields.io/mastodon/follow/109298532634697668?domain=https%3A%2F%2Fmastodon.neat.computer&label=Follow%20%40privacyguides%40neat.computer&style=social"> | ||||
|   </a> | ||||
|   <a href="https://twitter.com/privacy_guides"> | ||||
|     <img src="https://img.shields.io/twitter/follow/privacy_guides?style=social"> | ||||
|   </a> | ||||
|   <a href="https://discuss.privacyguides.net/"> | ||||
|     <img src="https://img.shields.io/discourse/users?label=Join%20our%20forum&logo=discourse&server=https%3A%2F%2Fdiscuss.privacyguides.net&style=social"> | ||||
|   </a> | ||||
|   <a href="https://github.com/privacyguides/privacyguides.org/stargazers"> | ||||
|     <img src="https://img.shields.io/github/stars/privacyguides?style=social"> | ||||
|   </a></p> | ||||
|  | ||||
|   <a href="https://github.com/privacyguides/privacyguides.org/issues"> | ||||
|     <img src="https://img.shields.io/github/issues-raw/privacyguides/privacyguides.org"> | ||||
|   </a> | ||||
|   <a href="https://github.com/privacyguides/privacyguides.org/issues?q=is%3Aissue+is%3Aclosed"> | ||||
|     <img src="https://img.shields.io/github/issues-closed-raw/privacyguides/privacyguides.org"> | ||||
|   </a> | ||||
|   <a href="https://github.com/privacyguides/privacyguides.org/pulls"> | ||||
|   <p><a href="https://github.com/privacyguides/privacyguides.org/pulls"> | ||||
|     <img src="https://img.shields.io/github/issues-pr-raw/privacyguides/privacyguides.org"> | ||||
|   </a> | ||||
|   <a href="https://github.com/privacyguides/privacyguides.org/pulls?q=is%3Apr+is%3Aclosed"> | ||||
| @@ -40,6 +30,9 @@ | ||||
|   </a> | ||||
|   <a href="https://crowdin.com/project/privacyguides"> | ||||
|     <img src="https://badges.crowdin.net/privacyguides/localized.svg"> | ||||
|   </a> | ||||
|   <a href="https://opencollective.com/privacyguides"> | ||||
|     <img src="https://img.shields.io/opencollective/all/privacyguides"> | ||||
|   </a></p> | ||||
| </div> | ||||
|  | ||||
| @@ -47,11 +40,11 @@ | ||||
|  | ||||
| **Privacy Guides** is a socially motivated website that provides information for protecting your data security and privacy. We are a non-profit collective operated entirely by volunteer team members and contributors. | ||||
|  | ||||
| Our current list of team members can be found [here](https://github.com/orgs/privacyguides/people). Additionally, [many people](https://github.com/privacyguides/privacyguides.org/graphs/contributors) have made contributions to the project, and you can too! | ||||
| Our current list of team members can be found [here](https://www.privacyguides.org/about/#our-team). Additionally, [many people](https://github.com/privacyguides/privacyguides.org/graphs/contributors) have made contributions to the project, and you can too! | ||||
|  | ||||
| ## Contributing | ||||
|  | ||||
| - 💬 [Start a discussion or suggest an idea](https://github.com/privacyguides/privacyguides.org/discussions) | ||||
| - 💬 [Start a discussion or suggest an idea](https://discuss.privacyguides.net/) | ||||
| - 💖 [Sponsor the project](https://github.com/sponsors/privacyguides) | ||||
| - 🈴 [Help translate the site](https://crwd.in/privacyguides) [[Matrix chat](https://matrix.to/#/#pg-i18n:aragon.sh)] | ||||
| - 📝 Edit the site, everything's accessible in this repo | ||||
| @@ -64,43 +57,34 @@ Our current list of team members can be found [here](https://github.com/orgs/pri | ||||
| [](https://code.privacyguides.dev/privacyguides/privacyguides.org) | ||||
| [](https://gitlab.com/privacyguides/privacyguides.org) | ||||
| [](https://codeberg.org/privacyguides/privacyguides.org) | ||||
| [](https://git.sr.ht/~jonaharagon/privacyguides.org) | ||||
|  | ||||
| ## Developing | ||||
|  | ||||
| This website uses [`mkdocs-material-insiders`](https://squidfunk.github.io/mkdocs-material/insiders/) which offers additional functionality over the open-source `mkdocs-material` project. For obvious reasons we cannot distribute access to the insiders repository. You can install the website locally with the open-source version of `mkdocs-material`: | ||||
| Committing to this repository requires [signing your commits](https://docs.github.com/en/authentication/managing-commit-signature-verification/signing-commits) (`git config commit.gpgsign true`) unless you are making edits via the GitHub.com text editor interface. As of August 2022 the preferred signing method is [SSH commit signatures](https://docs.github.com/en/authentication/managing-commit-signature-verification/about-commit-signature-verification#ssh-commit-signature-verification), but GPG signing is also acceptable. You should add your signing key to your GitHub profile. | ||||
|  | ||||
| 1. Clone this repository:  | ||||
|     - `git clone https://github.com/privacyguides/privacyguides.org.git` | ||||
|     - `git submodule init` | ||||
|     - `git submodule update docs/assets/brand` | ||||
| 2. Install [Python 3.6+](https://www.python.org/downloads/) | ||||
| 3. Install [dependencies](/Pipfile): `pip install mkdocs mkdocs-material mkdocs-static-i18n mkdocs-git-revision-date-localized-plugin mkdocs-minify-plugin mkdocs-rss-plugin typing-extensions` | ||||
| 4. Serve the site locally: `mkdocs serve` | ||||
|     - The site will be available at `http://localhost:8000` | ||||
|     - You can build the site locally with `mkdocs build` | ||||
|     - Your local version of the site may be missing functionality, which is expected. If you are submitting a PR, please ensure the automatic preview generated for your PR looks correct, as that site will be built with the production insiders build. | ||||
| This website uses [`mkdocs-material-insiders`](https://squidfunk.github.io/mkdocs-material/insiders/) which offers additional functionality over the open-source `mkdocs-material` project. For obvious reasons we cannot distribute access to the insiders repository. Running this website locally without access to insiders is unsupported. If you are submitting a PR, please ensure the automatic preview generated for your PR looks correct, as that site will be built with the production insiders build. | ||||
|  | ||||
| **Team members** should clone the repository with `mkdocs-material-insiders` directly. This method is identical to production: | ||||
|  | ||||
| 1. Clone this repository and submodules: `git clone --recurse-submodules https://github.com/privacyguides/privacyguides.org.git` | ||||
| 2. Install [Python 3.6+](https://www.python.org/downloads/) | ||||
| 3. Install **pipenv**: `pip install pipenv` | ||||
| 4. Install dependencies: `pipenv install --dev` | ||||
| 5. Serve the site locally: `pipenv run mkdocs serve` | ||||
| 2. Enable SSH commit verification with our local [`.allowed_signers`](/.allowed_signers) file: `git config gpg.ssh.allowedSignersFile .allowed_signers` | ||||
| 3. Install Python **3.8**, this is the only version supported by Netlify. | ||||
| 4. Install **pipenv**: `pip install pipenv` | ||||
| 5. Install dependencies: `pipenv install --dev` (install [Pillow and CairoSVG](https://squidfunk.github.io/mkdocs-material/setup/setting-up-social-cards/#dependencies) as well to generate social cards) | ||||
| 6. Serve the site locally: `pipenv run mkdocs serve --config-file config/mkdocs.en.yml` (set `CARDS=true` to generate social cards) | ||||
|     - The site will be available at `http://localhost:8000` | ||||
|     - You can build the site locally with `pipenv run mkdocs build` | ||||
|     - You can build the site locally with `pipenv run mkdocs build --config-file config/mkdocs.en.yml` | ||||
|     - This version of the site should be identical to the live, production version | ||||
|  | ||||
| If you commit to `main` with commits signed with your SSH key, you should add your SSH key to [`.allowed_signers`](/.allowed_signers) in this repo. | ||||
|  | ||||
| ## Releasing | ||||
|  | ||||
| 1. Create a new tag: `git tag -s v2.X.X -m 'Some message'` | ||||
| 1. Create a new tag: `git tag -s v3.X.X -m 'Some message'` | ||||
|     - [View existing tags](https://github.com/privacyguides/privacyguides.org/tags) | ||||
|     - Tag [numbering](https://semver.org/): Increment the MINOR (2nd) number when making significant changes (adding/deleting pages, etc.), increment the PATCH (3rd) number when making minor changes (typos, bug fixes). Probably leave the MAJOR number at 2 until a massive redesign (v1 -> v2 was the Jekyll to MkDocs transition). | ||||
|     - Tag [numbering](https://semver.org/): Increment the MINOR (2nd) number when making significant changes (adding/deleting pages, etc.), increment the PATCH (3rd) number when making minor changes (typos, bug fixes). Probably leave the MAJOR number at 3 until a massive revamp (v1 -> v2 was the Jekyll to MkDocs transition, v2 -> v3 was the introduction of translations). | ||||
|     - Consider enabling GPG tag signing by default (`git config tag.gpgSign true`) to avoid missing signatures | ||||
| 2. Push the tag to GitHub: `git push --tags` | ||||
| 3. [Create a new release](https://github.com/privacyguides/privacyguides.org/releases/new) selecting the new tag | ||||
|     - Title the release the same as the tag version number without the `v`, i.e. `2.X.X` | ||||
|       - For more significant releases, add a **short** title, for example [2.3.0 - Localization Support](https://github.com/privacyguides/privacyguides.org/releases/tag/v2.3.0) or [2.2.0 - Removing Social Networks](https://github.com/privacyguides/privacyguides.org/releases/tag/v2.2.0) | ||||
|     - GitHub should let you auto-generate release notes based on PR titles | ||||
|       - Mark more significant changes in bold, see [2.3.0](https://github.com/privacyguides/privacyguides.org/releases/tag/v2.3.0) for example | ||||
| 4. Publish release, it will be deployed to the live site automatically | ||||
|     - When publishing more significant releases (generally any with a MINOR version increment) check the "Create a discussion for this release" box to post an announcement | ||||
| 3. A GitHub Release will be automatically created and deployed to the live site. | ||||
|     - You may wish to manually check or edit the release changelog/title after it is published for accuracy. | ||||
|   | ||||
							
								
								
									
										63
									
								
								_redirects
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,63 @@ | ||||
| /  /en/  302  Language=en | ||||
| /  /fr/  302  Language=fr | ||||
| /  /he/  302  Language=he | ||||
| /  /nl/  302  Language=nl | ||||
| /  /en/  302 | ||||
|  | ||||
| /.well-known/matrix/* https://matrix.privacyguides.org/.well-known/matrix/:splat 200 | ||||
|  | ||||
| /kb /en/basics/threat-modeling/ | ||||
| /:lang/kb /:lang/basics/threat-modeling/ | ||||
|  | ||||
| /coc/ /en/CODE_OF_CONDUCT/ | ||||
|  | ||||
| /team /en/about/ | ||||
| /browsers /en/desktop-browsers/ | ||||
| /blog https://blog.privacyguides.org | ||||
| /basics/dns-overview /en/advanced/dns-overview/ | ||||
| /basics/tor-overview /en/advanced/tor-overview/ | ||||
| /real-time-communication/communication-network-types /en/advanced/communication-network-types | ||||
| /advanced/real-time-communication /en/advanced/communication-network-types | ||||
| /android/overview /en/os/android-overview/ | ||||
| /linux-desktop/overview /en/os/linux-overview/ | ||||
| /android/grapheneos-vs-calyxos https://blog.privacyguides.org/2022/04/21/grapheneos-or-calyxos/ | ||||
| /ios/configuration https://blog.privacyguides.org/2022/10/22/ios-configuration-guide/ | ||||
| /linux-desktop/hardening https://blog.privacyguides.org/2022/04/22/linux-system-hardening/ | ||||
| /linux-desktop/sandboxing https://blog.privacyguides.org/2022/04/22/linux-application-sandboxing/ | ||||
| /advanced/signal-configuration-hardening https://blog.privacyguides.org/2022/07/07/signal-configuration-and-hardening/ | ||||
| /real-time-communication/signal-configuration-hardening https://blog.privacyguides.org/2022/07/07/signal-configuration-and-hardening/ | ||||
| /advanced/integrating-metadata-removal https://blog.privacyguides.org/2022/04/09/integrating-metadata-removal/ | ||||
| /advanced/erasing-data https://blog.privacyguides.org/2022/05/25/secure-data-erasure/ | ||||
| /operating-systems /en/desktop/ | ||||
| /threat-modeling /en/basics/threat-modeling/ | ||||
| /self-contained-networks /en/tor/ | ||||
| /privacy-policy /en/about/privacy-policy/ | ||||
| /metadata-removal-tools /en/data-redaction/ | ||||
| /basics /en/kb | ||||
| /software/file-encryption /en/encryption/ | ||||
| /providers /en/tools/#service-providers | ||||
| /software/calendar-contacts /en/calendar/ | ||||
| /calendar-contacts /en/calendar/ | ||||
| /software/metadata-removal-tools /en/data-redaction/ | ||||
| /contact /en/about/ | ||||
| /welcome-to-privacy-guides https://blog.privacyguides.org/2021/09/14/welcome-to-privacy-guides/ | ||||
| /software/email /en/email-clients/ | ||||
| /providers/paste /en/tools/ | ||||
| /blog/2019/10/05/understanding-vpns https://www.jonaharagon.com/posts/understanding-vpns/ | ||||
| /terms-and-notices /en/about/notices/ | ||||
| /software/networks /en/tor/ | ||||
| /social-news-aggregator /en/news-aggregators/ | ||||
| /basics/erasing-data https://blog.privacyguides.org/2022/05/25/secure-data-erasure/ | ||||
| /linux-desktop /en/desktop/ | ||||
|  | ||||
| /providers/:slug /en/:slug/ | ||||
| /software/:slug /en/:slug/ | ||||
| /blog/* https://blog.privacyguides.org/:splat | ||||
| /assets/* /en/assets/:splat | ||||
|  | ||||
| /:slug/ /en/:slug/ | ||||
| /about/:slug/ /en/about/:slug/ | ||||
| /advanced/:slug/ /en/advanced/:slug/ | ||||
| /basics/:slug/ /en/basics/:slug/ | ||||
| /meta/:slug/ /en/meta/:slug/ | ||||
| /os/:slug/ /en/os/:slug/ | ||||
							
								
								
									
										116
									
								
								config/mkdocs.common.yml
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,116 @@ | ||||
| extra: | ||||
|   social: | ||||
|     - icon: simple/mastodon | ||||
|       link: https://mastodon.neat.computer/@privacyguides | ||||
|       name: Mastodon | ||||
|     - icon: simple/matrix | ||||
|       link: https://matrix.to/#/#privacyguides:matrix.org | ||||
|       name: Matrix | ||||
|     - icon: simple/discourse | ||||
|       link: https://discuss.privacyguides.net/ | ||||
|       name: Forum | ||||
|     - icon: simple/github | ||||
|       link: https://github.com/privacyguides | ||||
|       name: GitHub | ||||
|   alternate: | ||||
|     - name: English | ||||
|       link: /en/ | ||||
|       lang: en | ||||
|       icon: https://raw.githubusercontent.com/twitter/twemoji/master/assets/svg/1f1fa-1f1f8.svg | ||||
|     - name: Français | ||||
|       link: /fr/ | ||||
|       lang: fr | ||||
|       icon: https://raw.githubusercontent.com/twitter/twemoji/master/assets/svg/1f1eb-1f1f7.svg | ||||
|     - name: עִברִית | ||||
|       link: /he/ | ||||
|       lang: he | ||||
|       icon: https://raw.githubusercontent.com/twitter/twemoji/master/assets/svg/1f1ee-1f1f1.svg | ||||
|     - name: Nederlands | ||||
|       link: /nl/ | ||||
|       lang: nl | ||||
|       icon: https://raw.githubusercontent.com/twitter/twemoji/master/assets/svg/1f1f3-1f1f1.svg | ||||
|  | ||||
| repo_url: https://github.com/privacyguides/privacyguides.org | ||||
| repo_name: "" | ||||
|  | ||||
| theme: | ||||
|   name: material | ||||
|   custom_dir: ../theme | ||||
|   favicon: assets/brand/png/favicon/favicon-32x32.png | ||||
|   icon: | ||||
|     repo: simple/github | ||||
|   features: | ||||
|     - navigation.tracking | ||||
|     - navigation.tabs | ||||
|     - navigation.sections | ||||
|     - navigation.expand | ||||
|     - navigation.path | ||||
|     - navigation.indexes | ||||
|     - content.tooltips | ||||
|     - search.highlight | ||||
|  | ||||
| extra_css: | ||||
|   - assets/stylesheets/extra.css?v=3.2.0 | ||||
| extra_javascript: | ||||
|   - assets/javascripts/mathjax.js | ||||
|   - assets/javascripts/feedback.js | ||||
|  | ||||
| watch: | ||||
|   - ../theme | ||||
|   - ../includes | ||||
|   - mkdocs.common.yml | ||||
|  | ||||
| plugins: | ||||
|   tags: {} | ||||
|   search: {} | ||||
|   macros: {} | ||||
|   meta: {} | ||||
|   git-committers: | ||||
|     enabled: !ENV [NETLIFY, false] | ||||
|     repository: privacyguides/privacyguides.org | ||||
|     branch: main | ||||
|   git-revision-date-localized: | ||||
|     enabled: !ENV [NETLIFY, false] | ||||
|     exclude: | ||||
|       - index.md | ||||
|     fallback_to_build_date: true | ||||
|   privacy: | ||||
|     external_assets_exclude: | ||||
|       - cdn.jsdelivr.net/npm/mathjax@3/* | ||||
|       - api.privacyguides.net/* | ||||
|   optimize: | ||||
|     enabled: !ENV [NETLIFY, false] | ||||
|  | ||||
| markdown_extensions: | ||||
|   admonition: {} | ||||
|   pymdownx.details: {} | ||||
|   pymdownx.superfences: | ||||
|     custom_fences: | ||||
|       - name: mermaid | ||||
|         class: mermaid | ||||
|         format: !!python/name:pymdownx.superfences.fence_code_format | ||||
|   pymdownx.tabbed: | ||||
|     alternate_style: true | ||||
|   pymdownx.arithmatex: | ||||
|     generic: true | ||||
|   pymdownx.critic: {} | ||||
|   pymdownx.caret: {} | ||||
|   pymdownx.keys: {} | ||||
|   pymdownx.mark: {} | ||||
|   pymdownx.tilde: {} | ||||
|   pymdownx.snippets: {} | ||||
|   pymdownx.tasklist: | ||||
|     custom_checkbox: true | ||||
|   attr_list: {} | ||||
|   def_list: {} | ||||
|   md_in_html: {} | ||||
|   meta: {} | ||||
|   abbr: {} | ||||
|   pymdownx.emoji: | ||||
|     emoji_index: !!python/name:materialx.emoji.twemoji | ||||
|     emoji_generator: !!python/name:materialx.emoji.to_svg | ||||
|   tables: {} | ||||
|   footnotes: {} | ||||
|   toc: | ||||
|     permalink: true | ||||
|     toc_depth: 4 | ||||
							
								
								
									
										150
									
								
								config/mkdocs.en.yml
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,150 @@ | ||||
| INHERIT: mkdocs.common.yml | ||||
| docs_dir: '../docs' | ||||
| site_url: "https://www.privacyguides.org/en/" | ||||
| site_dir: '../site/en' | ||||
|  | ||||
| site_name: Privacy Guides | ||||
| site_description: | | ||||
|   Privacy Guides is your central privacy and security resource to protect yourself online. | ||||
| copyright: | | ||||
|   <b>Privacy Guides</b> is a non-profit, socially motivated website that provides information for protecting your data security and privacy.<br> | ||||
|   We do not make money from recommending certain products, and we do not use affiliate links.<br> | ||||
|   © 2022 Privacy Guides and contributors. | ||||
|   <span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="m245.83 214.87-33.22 17.28c-9.43-19.58-25.24-19.93-27.46-19.93-22.13 0-33.22 14.61-33.22 43.84 0 23.57 9.21 43.84 33.22 43.84 14.47 0 24.65-7.09 30.57-21.26l30.55 15.5c-6.17 11.51-25.69 38.98-65.1 38.98-22.6 0-73.96-10.32-73.96-77.05 0-58.69 43-77.06 72.63-77.06 30.72-.01 52.7 11.95 65.99 35.86zm143.05 0-32.78 17.28c-9.5-19.77-25.72-19.93-27.9-19.93-22.14 0-33.22 14.61-33.22 43.84 0 23.55 9.23 43.84 33.22 43.84 14.45 0 24.65-7.09 30.54-21.26l31 15.5c-2.1 3.75-21.39 38.98-65.09 38.98-22.69 0-73.96-9.87-73.96-77.05 0-58.67 42.97-77.06 72.63-77.06 30.71-.01 52.58 11.95 65.56 35.86zM247.56 8.05C104.74 8.05 0 123.11 0 256.05c0 138.49 113.6 248 247.56 248 129.93 0 248.44-100.87 248.44-248 0-137.87-106.62-248-248.44-248zm.87 450.81c-112.54 0-203.7-93.04-203.7-202.81 0-105.42 85.43-203.27 203.72-203.27 112.53 0 202.82 89.46 202.82 203.26-.01 121.69-99.68 202.82-202.84 202.82z"></path></svg></span><span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="M314.9 194.4v101.4h-28.3v120.5h-77.1V295.9h-28.3V194.4c0-4.4 1.6-8.2 4.6-11.3 3.1-3.1 6.9-4.7 11.3-4.7H299c4.1 0 7.8 1.6 11.1 4.7 3.1 3.2 4.8 6.9 4.8 11.3zm-101.5-63.7c0-23.3 11.5-35 34.5-35s34.5 11.7 34.5 35c0 23-11.5 34.5-34.5 34.5s-34.5-11.5-34.5-34.5zM247.6 8C389.4 8 496 118.1 496 256c0 147.1-118.5 248-248.4 248C113.6 504 0 394.5 0 256 0 123.1 104.7 8 247.6 8zm.8 44.7C130.2 52.7 44.7 150.6 44.7 256c0 109.8 91.2 202.8 203.7 202.8 103.2 0 202.8-81.1 202.8-202.8.1-113.8-90.2-203.3-202.8-203.3z"></path></svg></span><span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="M247.6 8C389.4 8 496 118.1 496 256c0 147.1-118.5 248-248.4 248C113.6 504 0 394.5 0 256 0 123.1 104.7 8 247.6 8zm.8 44.7C130.2 52.7 44.7 150.6 44.7 256c0 109.8 91.2 202.8 203.7 202.8 103.2 0 202.8-81.1 202.8-202.8.1-113.8-90.2-203.3-202.8-203.3zm94 144.3v42.5H162.1V197h180.3zm0 79.8v42.5H162.1v-42.5h180.3z"></path></svg></span> | ||||
|   Content licensed under <a href="/about/"><strong>CC BY-ND 4.0</strong></a>. | ||||
| edit_uri: edit/main/docs/ | ||||
|  | ||||
| extra: | ||||
|   generator: false | ||||
|   analytics: | ||||
|     provider: plausible | ||||
|     property: privacyguides.org | ||||
|     feedback: | ||||
|       title: "Was this page helpful?" | ||||
|       ratings: | ||||
|         - icon: material/robot-happy-outline | ||||
|           name: "This page was helpful" | ||||
|           data: Helpful | ||||
|           note: "Thanks for your feedback!" | ||||
|         - icon: material/robot-confused | ||||
|           name: "This page could be improved" | ||||
|           data: Needs Improvement | ||||
|           note: "Thanks for your feedback! Help us improve this page by opening a <a href='https://discuss.privacyguides.net/'>discussion on our forum</a>." | ||||
|  | ||||
| theme: | ||||
|   language: en | ||||
|   logo: ../theme/assets/brand/SVG/Logo/privacy-guides-logo-notext-colorbg.svg | ||||
|   font: | ||||
|     text: Public Sans | ||||
|     code: DM Mono | ||||
|   palette: | ||||
|     - media: "(prefers-color-scheme)" | ||||
|       scheme: default | ||||
|       accent: deep purple | ||||
|       toggle: | ||||
|         icon: material/brightness-auto | ||||
|         name: "Switch to dark mode" | ||||
|     - media: "(prefers-color-scheme: dark)" | ||||
|       scheme: slate | ||||
|       accent: amber | ||||
|       toggle: | ||||
|         icon: material/brightness-2 | ||||
|         name: "Switch to light mode" | ||||
|     - media: "(prefers-color-scheme: light)" | ||||
|       scheme: default | ||||
|       accent: deep purple | ||||
|       toggle: | ||||
|         icon: material/brightness-5 | ||||
|         name: "Switch to system theme" | ||||
|  | ||||
| plugins: | ||||
|   social: | ||||
|     cards: !ENV [NETLIFY, false] | ||||
|     cards_color: | ||||
|       fill: "#FFD06F" | ||||
|       text: "#2d2d2d" | ||||
|     cards_dir: assets/img/social | ||||
|     cards_font: Public Sans | ||||
|     cache_dir: .cache/plugin/social-en | ||||
|  | ||||
| markdown_extensions: | ||||
|   pymdownx.snippets: | ||||
|     auto_append:  | ||||
|       - includes/abbreviations.en.txt | ||||
|  | ||||
| nav: | ||||
|   - Home: 'index.md' | ||||
|   - Knowledge Base: | ||||
|     - 'basics/threat-modeling.md' | ||||
|     - 'basics/common-threats.md' | ||||
|     - 'basics/common-misconceptions.md' | ||||
|     - 'basics/account-creation.md' | ||||
|     - 'basics/account-deletion.md' | ||||
|     - Technology Essentials: | ||||
|       - 'basics/passwords-overview.md' | ||||
|       - 'basics/multi-factor-authentication.md' | ||||
|       - 'basics/email-security.md' | ||||
|       - 'basics/vpn-overview.md' | ||||
|     - Operating Systems: | ||||
|       - 'os/android-overview.md' | ||||
|       - 'os/linux-overview.md' | ||||
|       - 'os/qubes-overview.md' | ||||
|     - Advanced Topics: | ||||
|       - 'advanced/dns-overview.md' | ||||
|       - 'advanced/tor-overview.md' | ||||
|       - 'advanced/payments.md' | ||||
|       - 'advanced/communication-network-types.md' | ||||
|     - kb-archive.md | ||||
|   - Recommendations: | ||||
|     - 'tools.md' | ||||
|     - Internet Browsing: | ||||
|       - 'tor.md' | ||||
|       - 'desktop-browsers.md' | ||||
|       - 'mobile-browsers.md' | ||||
|     - Operating Systems: | ||||
|       - 'android.md' | ||||
|       - 'desktop.md' | ||||
|       - 'router.md' | ||||
|     - Providers: | ||||
|       - 'cloud.md' | ||||
|       - 'dns.md' | ||||
|       - 'email.md' | ||||
|       - 'financial-services.md' | ||||
|       - 'search-engines.md' | ||||
|       - 'vpn.md' | ||||
|     - Software: | ||||
|       - 'calendar.md' | ||||
|       - 'cryptocurrency.md' | ||||
|       - 'data-redaction.md' | ||||
|       - 'email-clients.md' | ||||
|       - 'encryption.md' | ||||
|       - 'file-sharing.md' | ||||
|       - 'frontends.md' | ||||
|       - 'multi-factor-authentication.md' | ||||
|       - 'news-aggregators.md' | ||||
|       - 'notebooks.md' | ||||
|       - 'passwords.md' | ||||
|       - 'productivity.md' | ||||
|       - 'real-time-communication.md' | ||||
|       - 'video-streaming.md' | ||||
|   - About: | ||||
|     - 'about/index.md' | ||||
|     - 'about/criteria.md' | ||||
|     - 'about/statistics.md' | ||||
|     - 'about/notices.md' | ||||
|     - 'about/privacy-policy.md' | ||||
|     - Community: | ||||
|       - 'about/donate.md' | ||||
|       - Online Services: 'about/services.md' | ||||
|       - Code of Conduct: 'CODE_OF_CONDUCT.md' | ||||
|       - 'about/privacytools.md' | ||||
|     - Contributing: | ||||
|       - Writing Guide: | ||||
|         - 'meta/writing-style.md' | ||||
|         - 'meta/brand.md' | ||||
|       - Technical Guides: | ||||
|         - 'meta/uploading-images.md' | ||||
|         - 'meta/git-recommendations.md' | ||||
|   - Changelog: 'https://github.com/privacyguides/privacyguides.org/releases' | ||||
|   - Forum: 'https://discuss.privacyguides.net/' | ||||
|   - Blog: 'https://blog.privacyguides.org/' | ||||
							
								
								
									
										150
									
								
								config/mkdocs.fr.yml
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,150 @@ | ||||
| INHERIT: mkdocs.common.yml | ||||
| docs_dir: '../i18n/fr' | ||||
| site_url: "https://www.privacyguides.org/fr/" | ||||
| site_dir: '../site/fr' | ||||
|  | ||||
| site_name: Privacy Guides | ||||
| site_description: | | ||||
|   Privacy Guides est votre ressource centrale en matière de vie privée et de sécurité pour vous protéger en ligne. | ||||
| copyright: | | ||||
|   <b>Privacy Guides</b> is a non-profit, socially motivated website that provides information for protecting your data security and privacy.<br> | ||||
|   We do not make money from recommending certain products, and we do not use affiliate links.<br> | ||||
|   © 2022 Privacy Guides and contributors.  | ||||
|   <span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="m245.83 214.87-33.22 17.28c-9.43-19.58-25.24-19.93-27.46-19.93-22.13 0-33.22 14.61-33.22 43.84 0 23.57 9.21 43.84 33.22 43.84 14.47 0 24.65-7.09 30.57-21.26l30.55 15.5c-6.17 11.51-25.69 38.98-65.1 38.98-22.6 0-73.96-10.32-73.96-77.05 0-58.69 43-77.06 72.63-77.06 30.72-.01 52.7 11.95 65.99 35.86zm143.05 0-32.78 17.28c-9.5-19.77-25.72-19.93-27.9-19.93-22.14 0-33.22 14.61-33.22 43.84 0 23.55 9.23 43.84 33.22 43.84 14.45 0 24.65-7.09 30.54-21.26l31 15.5c-2.1 3.75-21.39 38.98-65.09 38.98-22.69 0-73.96-9.87-73.96-77.05 0-58.67 42.97-77.06 72.63-77.06 30.71-.01 52.58 11.95 65.56 35.86zM247.56 8.05C104.74 8.05 0 123.11 0 256.05c0 138.49 113.6 248 247.56 248 129.93 0 248.44-100.87 248.44-248 0-137.87-106.62-248-248.44-248zm.87 450.81c-112.54 0-203.7-93.04-203.7-202.81 0-105.42 85.43-203.27 203.72-203.27 112.53 0 202.82 89.46 202.82 203.26-.01 121.69-99.68 202.82-202.84 202.82z"></path></svg></span><span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="M314.9 194.4v101.4h-28.3v120.5h-77.1V295.9h-28.3V194.4c0-4.4 1.6-8.2 4.6-11.3 3.1-3.1 6.9-4.7 11.3-4.7H299c4.1 0 7.8 1.6 11.1 4.7 3.1 3.2 4.8 6.9 4.8 11.3zm-101.5-63.7c0-23.3 11.5-35 34.5-35s34.5 11.7 34.5 35c0 23-11.5 34.5-34.5 34.5s-34.5-11.5-34.5-34.5zM247.6 8C389.4 8 496 118.1 496 256c0 147.1-118.5 248-248.4 248C113.6 504 0 394.5 0 256 0 123.1 104.7 8 247.6 8zm.8 44.7C130.2 52.7 44.7 150.6 44.7 256c0 109.8 91.2 202.8 203.7 202.8 103.2 0 202.8-81.1 202.8-202.8.1-113.8-90.2-203.3-202.8-203.3z"></path></svg></span><span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="M247.6 8C389.4 8 496 118.1 496 256c0 147.1-118.5 248-248.4 248C113.6 504 0 394.5 0 256 0 123.1 104.7 8 247.6 8zm.8 44.7C130.2 52.7 44.7 150.6 44.7 256c0 109.8 91.2 202.8 203.7 202.8 103.2 0 202.8-81.1 202.8-202.8.1-113.8-90.2-203.3-202.8-203.3zm94 144.3v42.5H162.1V197h180.3zm0 79.8v42.5H162.1v-42.5h180.3z"></path></svg></span>  | ||||
|   Content licensed under <a href="/about/"><strong>CC BY-ND 4.0</strong></a>. | ||||
| edit_uri: edit/main/i18n/fr/ | ||||
|  | ||||
| extra: | ||||
|   generator: false | ||||
|   analytics: | ||||
|     provider: plausible | ||||
|     property: privacyguides.org | ||||
|     feedback: | ||||
|       title: "Cette page vous a été utile ?" | ||||
|       ratings: | ||||
|         - icon: material/robot-happy-outline | ||||
|           name: "Cette page a été utile" | ||||
|           data: Helpful | ||||
|           note: "Merci pour votre retour !" | ||||
|         - icon: material/robot-confused | ||||
|           name: "Cette page pourrait être améliorée" | ||||
|           data: Needs Improvement | ||||
|           note: "Thanks for your feedback! Help us improve this page by opening a <a href='https://discuss.privacyguides.net/'>discussion on our forum</a>." | ||||
|  | ||||
| theme: | ||||
|   language: fr | ||||
|   logo: ../../theme/assets/brand/SVG/Logo/privacy-guides-logo-notext-colorbg.svg | ||||
|   font: | ||||
|     text: Public Sans | ||||
|     code: DM Mono | ||||
|   palette: | ||||
|     - media: "(prefers-color-scheme)" | ||||
|       scheme: default | ||||
|       accent: deep purple | ||||
|       toggle: | ||||
|         icon: material/brightness-auto | ||||
|         name: "Basculer en mode sombre" | ||||
|     - media: "(prefers-color-scheme: dark)" | ||||
|       scheme: slate | ||||
|       accent: amber | ||||
|       toggle: | ||||
|         icon: material/brightness-2 | ||||
|         name: "Basculer en mode clair" | ||||
|     - media: "(prefers-color-scheme: light)" | ||||
|       scheme: default | ||||
|       accent: deep purple | ||||
|       toggle: | ||||
|         icon: material/brightness-5 | ||||
|         name: "Basculer vers le thème du système" | ||||
|  | ||||
| plugins: | ||||
|   social: | ||||
|     cards: !ENV [NETLIFY, false] | ||||
|     cards_color: | ||||
|       fill: "#FFD06F" | ||||
|       text: "#2d2d2d" | ||||
|     cards_dir: assets/img/social | ||||
|     cards_font: Public Sans | ||||
|     cache_dir: .cache/plugin/social-fr | ||||
|  | ||||
| markdown_extensions: | ||||
|   pymdownx.snippets: | ||||
|     auto_append:  | ||||
|       - includes/abbreviations.fr.txt | ||||
|  | ||||
| nav: | ||||
|   - Accueil: 'index.md' | ||||
|   - Base de connaissances: | ||||
|     - 'basics/threat-modeling.md' | ||||
|     - 'basics/common-threats.md' | ||||
|     - 'basics/common-misconceptions.md' | ||||
|     - 'basics/account-creation.md' | ||||
|     - 'basics/account-deletion.md' | ||||
|     - Les essentiels de la technologie: | ||||
|       - 'basics/passwords-overview.md' | ||||
|       - 'basics/multi-factor-authentication.md' | ||||
|       - 'basics/email-security.md' | ||||
|       - 'basics/vpn-overview.md' | ||||
|     - "Systèmes d'exploitation": | ||||
|       - 'os/android-overview.md' | ||||
|       - 'os/linux-overview.md' | ||||
|       - 'os/qubes-overview.md' | ||||
|     - "Sujets avancés": | ||||
|       - 'advanced/dns-overview.md' | ||||
|       - 'advanced/tor-overview.md' | ||||
|       - 'advanced/payments.md' | ||||
|       - 'advanced/communication-network-types.md' | ||||
|     - kb-archive.md | ||||
|   - Recommandations: | ||||
|     - 'tools.md' | ||||
|     - Navigation internet: | ||||
|       - 'tor.md' | ||||
|       - 'desktop-browsers.md' | ||||
|       - 'mobile-browsers.md' | ||||
|     - "Systèmes d'exploitation": | ||||
|       - 'android.md' | ||||
|       - 'desktop.md' | ||||
|       - 'router.md' | ||||
|     - "Fournisseurs": | ||||
|       - 'cloud.md' | ||||
|       - 'dns.md' | ||||
|       - 'email.md' | ||||
|       - 'financial-services.md' | ||||
|       - 'search-engines.md' | ||||
|       - 'vpn.md' | ||||
|     - "Logiciels": | ||||
|       - 'calendar.md' | ||||
|       - 'cryptocurrency.md' | ||||
|       - 'data-redaction.md' | ||||
|       - 'email-clients.md' | ||||
|       - 'encryption.md' | ||||
|       - 'file-sharing.md' | ||||
|       - 'frontends.md' | ||||
|       - 'multi-factor-authentication.md' | ||||
|       - 'news-aggregators.md' | ||||
|       - 'notebooks.md' | ||||
|       - 'passwords.md' | ||||
|       - 'productivity.md' | ||||
|       - 'real-time-communication.md' | ||||
|       - 'video-streaming.md' | ||||
|   - "À propos": | ||||
|     - 'about/index.md' | ||||
|     - 'about/criteria.md' | ||||
|     - 'about/statistics.md' | ||||
|     - 'about/notices.md' | ||||
|     - 'about/privacy-policy.md' | ||||
|     - Community: | ||||
|       - 'about/donate.md' | ||||
|       - Online Services: 'about/services.md' | ||||
|       - Code of Conduct: 'CODE_OF_CONDUCT.md' | ||||
|       - 'about/privacytools.md' | ||||
|     - Contributing: | ||||
|       - Writing Guide: | ||||
|         - 'meta/writing-style.md' | ||||
|         - 'meta/brand.md' | ||||
|       - Technical Guides: | ||||
|         - 'meta/uploading-images.md' | ||||
|         - 'meta/git-recommendations.md' | ||||
|   - Journal des modifications: 'https://github.com/privacyguides/privacyguides.org/releases' | ||||
|   - Forum: 'https://discuss.privacyguides.net/' | ||||
|   - Blog: 'https://blog.privacyguides.org/' | ||||
							
								
								
									
										154
									
								
								config/mkdocs.he.yml
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,154 @@ | ||||
| INHERIT: mkdocs.common.yml | ||||
| docs_dir: '../i18n/he' | ||||
| site_url: "https://www.privacyguides.org/he/" | ||||
| site_dir: '../site/he' | ||||
|  | ||||
| site_name: Privacy Guides | ||||
| site_description: | | ||||
|   Privacy Guides (מדריכי פרטיות) הם משאב הפרטיות והאבטחה המרכזי שלכם כדי להגן על עצמכם באופן מקוון. | ||||
| copyright: | | ||||
|   <b>Privacy Guides</b> is a non-profit, socially motivated website that provides information for protecting your data security and privacy.<br> | ||||
|   We do not make money from recommending certain products, and we do not use affiliate links.<br> | ||||
|   © 2022 Privacy Guides and contributors. | ||||
|   <span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="m245.83 214.87-33.22 17.28c-9.43-19.58-25.24-19.93-27.46-19.93-22.13 0-33.22 14.61-33.22 43.84 0 23.57 9.21 43.84 33.22 43.84 14.47 0 24.65-7.09 30.57-21.26l30.55 15.5c-6.17 11.51-25.69 38.98-65.1 38.98-22.6 0-73.96-10.32-73.96-77.05 0-58.69 43-77.06 72.63-77.06 30.72-.01 52.7 11.95 65.99 35.86zm143.05 0-32.78 17.28c-9.5-19.77-25.72-19.93-27.9-19.93-22.14 0-33.22 14.61-33.22 43.84 0 23.55 9.23 43.84 33.22 43.84 14.45 0 24.65-7.09 30.54-21.26l31 15.5c-2.1 3.75-21.39 38.98-65.09 38.98-22.69 0-73.96-9.87-73.96-77.05 0-58.67 42.97-77.06 72.63-77.06 30.71-.01 52.58 11.95 65.56 35.86zM247.56 8.05C104.74 8.05 0 123.11 0 256.05c0 138.49 113.6 248 247.56 248 129.93 0 248.44-100.87 248.44-248 0-137.87-106.62-248-248.44-248zm.87 450.81c-112.54 0-203.7-93.04-203.7-202.81 0-105.42 85.43-203.27 203.72-203.27 112.53 0 202.82 89.46 202.82 203.26-.01 121.69-99.68 202.82-202.84 202.82z"></path></svg></span><span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="M314.9 194.4v101.4h-28.3v120.5h-77.1V295.9h-28.3V194.4c0-4.4 1.6-8.2 4.6-11.3 3.1-3.1 6.9-4.7 11.3-4.7H299c4.1 0 7.8 1.6 11.1 4.7 3.1 3.2 4.8 6.9 4.8 11.3zm-101.5-63.7c0-23.3 11.5-35 34.5-35s34.5 11.7 34.5 35c0 23-11.5 34.5-34.5 34.5s-34.5-11.5-34.5-34.5zM247.6 8C389.4 8 496 118.1 496 256c0 147.1-118.5 248-248.4 248C113.6 504 0 394.5 0 256 0 123.1 104.7 8 247.6 8zm.8 44.7C130.2 52.7 44.7 150.6 44.7 256c0 109.8 91.2 202.8 203.7 202.8 103.2 0 202.8-81.1 202.8-202.8.1-113.8-90.2-203.3-202.8-203.3z"></path></svg></span><span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="M247.6 8C389.4 8 496 118.1 496 256c0 147.1-118.5 248-248.4 248C113.6 504 0 394.5 0 256 0 123.1 104.7 8 247.6 8zm.8 44.7C130.2 52.7 44.7 150.6 44.7 256c0 109.8 91.2 202.8 203.7 202.8 103.2 0 202.8-81.1 202.8-202.8.1-113.8-90.2-203.3-202.8-203.3zm94 144.3v42.5H162.1V197h180.3zm0 79.8v42.5H162.1v-42.5h180.3z"></path></svg></span> | ||||
|   Content licensed under <a href="/about/"><strong>CC BY-ND 4.0</strong></a>. | ||||
| edit_uri: edit/main/i18n/he/ | ||||
|  | ||||
| extra: | ||||
|   generator: false | ||||
|   analytics: | ||||
|     provider: plausible | ||||
|     property: privacyguides.org | ||||
|     feedback: | ||||
|       title: "האם הדף הזה עזר לך?" | ||||
|       ratings: | ||||
|         - icon: material/robot-happy-outline | ||||
|           name: "הדף הזה היה מועיל" | ||||
|           data: Helpful | ||||
|           note: "תודה על המשוב שלך!" | ||||
|         - icon: material/robot-confused | ||||
|           name: "דף זה יכול להשתפר" | ||||
|           data: Needs Improvement | ||||
|           note: "תודה על המשוב שלך! Help us improve this page by opening a <a href='https://discuss.privacyguides.net/'>discussion on our forum</a>." | ||||
|  | ||||
| extra_css: | ||||
|   - assets/stylesheets/extra.css?v=3.2.0 | ||||
|   - assets/stylesheets/lang-he.css?v=3.4.0 | ||||
|  | ||||
| theme: | ||||
|   language: he | ||||
|   logo: ../../theme/assets/brand/SVG/Logo/privacy-guides-logo-notext-colorbg.svg | ||||
|   font: | ||||
|     text: Open Sans | ||||
|     code: Cousine | ||||
|   palette: | ||||
|     - media: "(prefers-color-scheme)" | ||||
|       scheme: default | ||||
|       accent: deep purple | ||||
|       toggle: | ||||
|         icon: material/brightness-auto | ||||
|         name: "עבור למצב כהה" | ||||
|     - media: "(prefers-color-scheme: dark)" | ||||
|       scheme: slate | ||||
|       accent: amber | ||||
|       toggle: | ||||
|         icon: material/brightness-2 | ||||
|         name: "עבור למצב בהיר" | ||||
|     - media: "(prefers-color-scheme: light)" | ||||
|       scheme: default | ||||
|       accent: deep purple | ||||
|       toggle: | ||||
|         icon: material/brightness-5 | ||||
|         name: "עבור לערכת הנושא של המערכת" | ||||
|  | ||||
| plugins: | ||||
|   social: | ||||
|     cards: !ENV [NETLIFY, false] | ||||
|     cards_color: | ||||
|       fill: "#FFD06F" | ||||
|       text: "#2d2d2d" | ||||
|     cards_dir: assets/img/social | ||||
|     cards_font: Suez One | ||||
|     cache_dir: .cache/plugin/social-he | ||||
|  | ||||
| markdown_extensions: | ||||
|   pymdownx.snippets: | ||||
|     auto_append:  | ||||
|       - includes/abbreviations.he.txt | ||||
|  | ||||
| nav: | ||||
|   - "דף הבית": 'index.md' | ||||
|   - "ידע בסיסי": | ||||
|     - 'basics/threat-modeling.md' | ||||
|     - 'basics/common-threats.md' | ||||
|     - 'basics/common-misconceptions.md' | ||||
|     - 'basics/account-creation.md' | ||||
|     - 'basics/account-deletion.md' | ||||
|     - "יסודות הטכנולוגיה": | ||||
|       - 'basics/passwords-overview.md' | ||||
|       - 'basics/multi-factor-authentication.md' | ||||
|       - 'basics/email-security.md' | ||||
|       - 'basics/vpn-overview.md' | ||||
|     - "מערכות הפעלה": | ||||
|       - 'os/android-overview.md' | ||||
|       - 'os/linux-overview.md' | ||||
|       - 'os/qubes-overview.md' | ||||
|     - "נושאים מתקדמים": | ||||
|       - 'advanced/dns-overview.md' | ||||
|       - 'advanced/tor-overview.md' | ||||
|       - 'advanced/payments.md' | ||||
|       - 'advanced/communication-network-types.md' | ||||
|     - kb-archive.md | ||||
|   - "המלצות": | ||||
|     - 'tools.md' | ||||
|     - "גלישה באינטרנט": | ||||
|       - 'tor.md' | ||||
|       - 'desktop-browsers.md' | ||||
|       - 'mobile-browsers.md' | ||||
|     - "מערכות הפעלה": | ||||
|       - 'android.md' | ||||
|       - 'desktop.md' | ||||
|       - 'router.md' | ||||
|     - "ספקים": | ||||
|       - 'cloud.md' | ||||
|       - 'dns.md' | ||||
|       - 'email.md' | ||||
|       - 'financial-services.md' | ||||
|       - 'search-engines.md' | ||||
|       - 'vpn.md' | ||||
|     - "תוכנה": | ||||
|       - 'calendar.md' | ||||
|       - 'cryptocurrency.md' | ||||
|       - 'data-redaction.md' | ||||
|       - 'email-clients.md' | ||||
|       - 'encryption.md' | ||||
|       - 'file-sharing.md' | ||||
|       - 'frontends.md' | ||||
|       - 'multi-factor-authentication.md' | ||||
|       - 'news-aggregators.md' | ||||
|       - 'notebooks.md' | ||||
|       - 'passwords.md' | ||||
|       - 'productivity.md' | ||||
|       - 'real-time-communication.md' | ||||
|       - 'video-streaming.md' | ||||
|   - "על אודות": | ||||
|     - 'about/index.md' | ||||
|     - 'about/criteria.md' | ||||
|     - 'about/statistics.md' | ||||
|     - 'about/notices.md' | ||||
|     - 'about/privacy-policy.md' | ||||
|     - Community: | ||||
|       - 'about/donate.md' | ||||
|       - Online Services: 'about/services.md' | ||||
|       - Code of Conduct: 'CODE_OF_CONDUCT.md' | ||||
|       - 'about/privacytools.md' | ||||
|     - Contributing: | ||||
|       - Writing Guide: | ||||
|         - 'meta/writing-style.md' | ||||
|         - 'meta/brand.md' | ||||
|       - Technical Guides: | ||||
|         - 'meta/uploading-images.md' | ||||
|         - 'meta/git-recommendations.md' | ||||
|   - "יומן שינויים": 'https://github.com/privacyguides/privacyguides.org/releases' | ||||
|   - "פורום": 'https://discuss.privacyguides.net/' | ||||
|   - "בלוג": 'https://blog.privacyguides.org/' | ||||
							
								
								
									
										150
									
								
								config/mkdocs.nl.yml
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,150 @@ | ||||
| INHERIT: mkdocs.common.yml | ||||
| docs_dir: '../i18n/nl' | ||||
| site_url: "https://www.privacyguides.org/nl/" | ||||
| site_dir: '../site/nl' | ||||
|  | ||||
| site_name: Privacy Guides | ||||
| site_description: | | ||||
|   Privacy Guides is jouw centrale bron voor privacy en beveiliging om jezelf online te beschermen. | ||||
| copyright: | | ||||
|   <b>Privacy Guides</b> is een non-profit, sociaal gemotiveerde website die informatie biedt voor de bescherming van jouw gegevensbeveiliging en privacy.<br> | ||||
|   Wij verdienen geen geld met het aanbevelen van bepaalde producten, en wij maken geen gebruik van affiliate links.<br> | ||||
|   © 2022 Privacy Guides en medewerkers. | ||||
|   <span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="m245.83 214.87-33.22 17.28c-9.43-19.58-25.24-19.93-27.46-19.93-22.13 0-33.22 14.61-33.22 43.84 0 23.57 9.21 43.84 33.22 43.84 14.47 0 24.65-7.09 30.57-21.26l30.55 15.5c-6.17 11.51-25.69 38.98-65.1 38.98-22.6 0-73.96-10.32-73.96-77.05 0-58.69 43-77.06 72.63-77.06 30.72-.01 52.7 11.95 65.99 35.86zm143.05 0-32.78 17.28c-9.5-19.77-25.72-19.93-27.9-19.93-22.14 0-33.22 14.61-33.22 43.84 0 23.55 9.23 43.84 33.22 43.84 14.45 0 24.65-7.09 30.54-21.26l31 15.5c-2.1 3.75-21.39 38.98-65.09 38.98-22.69 0-73.96-9.87-73.96-77.05 0-58.67 42.97-77.06 72.63-77.06 30.71-.01 52.58 11.95 65.56 35.86zM247.56 8.05C104.74 8.05 0 123.11 0 256.05c0 138.49 113.6 248 247.56 248 129.93 0 248.44-100.87 248.44-248 0-137.87-106.62-248-248.44-248zm.87 450.81c-112.54 0-203.7-93.04-203.7-202.81 0-105.42 85.43-203.27 203.72-203.27 112.53 0 202.82 89.46 202.82 203.26-.01 121.69-99.68 202.82-202.84 202.82z"></path></svg></span><span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="M314.9 194.4v101.4h-28.3v120.5h-77.1V295.9h-28.3V194.4c0-4.4 1.6-8.2 4.6-11.3 3.1-3.1 6.9-4.7 11.3-4.7H299c4.1 0 7.8 1.6 11.1 4.7 3.1 3.2 4.8 6.9 4.8 11.3zm-101.5-63.7c0-23.3 11.5-35 34.5-35s34.5 11.7 34.5 35c0 23-11.5 34.5-34.5 34.5s-34.5-11.5-34.5-34.5zM247.6 8C389.4 8 496 118.1 496 256c0 147.1-118.5 248-248.4 248C113.6 504 0 394.5 0 256 0 123.1 104.7 8 247.6 8zm.8 44.7C130.2 52.7 44.7 150.6 44.7 256c0 109.8 91.2 202.8 203.7 202.8 103.2 0 202.8-81.1 202.8-202.8.1-113.8-90.2-203.3-202.8-203.3z"></path></svg></span><span class="twemoji"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 496 512"><!--! Font Awesome Free 6.2.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2022 Fonticons, Inc.--><path d="M247.6 8C389.4 8 496 118.1 496 256c0 147.1-118.5 248-248.4 248C113.6 504 0 394.5 0 256 0 123.1 104.7 8 247.6 8zm.8 44.7C130.2 52.7 44.7 150.6 44.7 256c0 109.8 91.2 202.8 203.7 202.8 103.2 0 202.8-81.1 202.8-202.8.1-113.8-90.2-203.3-202.8-203.3zm94 144.3v42.5H162.1V197h180.3zm0 79.8v42.5H162.1v-42.5h180.3z"></path></svg></span> | ||||
|   Inhoud gelicentieerd onder <a href="/about/"><strong>CC BY-ND 4.0</strong></a>. | ||||
| edit_uri: edit/main/docs/ | ||||
|  | ||||
| extra: | ||||
|   generator: false | ||||
|   analytics: | ||||
|     provider: plausible | ||||
|     property: privacyguides.org | ||||
|     feedback: | ||||
|       title: "Was deze pagina nuttig?" | ||||
|       ratings: | ||||
|         - icon: material/robot-happy-outline | ||||
|           name: "Deze pagina was nuttig" | ||||
|           data: Helpful | ||||
|           note: "Bedankt voor je feedback!" | ||||
|         - icon: material/robot-confused | ||||
|           name: "Deze pagina kan worden verbeterd" | ||||
|           data: Needs Improvement | ||||
|           note: "Bedankt voor jouw feedback! Help ons deze pagina te verbeteren door een <a href='https://discuss.privacyguides.net/'>discussie te openen op ons forum</a>." | ||||
|  | ||||
| theme: | ||||
|   language: nl | ||||
|   logo: ../../theme/assets/brand/SVG/Logo/privacy-guides-logo-notext-colorbg.svg | ||||
|   font: | ||||
|     text: Public Sans | ||||
|     code: DM Mono | ||||
|   palette: | ||||
|     - media: "(prefers-color-scheme)" | ||||
|       scheme: default | ||||
|       accent: deep purple | ||||
|       toggle: | ||||
|         icon: material/brightness-auto | ||||
|         name: "Verander naar donker thema" | ||||
|     - media: "(prefers-color-scheme: dark)" | ||||
|       scheme: slate | ||||
|       accent: amber | ||||
|       toggle: | ||||
|         icon: material/brightness-2 | ||||
|         name: "Verander naar licht thema" | ||||
|     - media: "(prefers-color-scheme: light)" | ||||
|       scheme: default | ||||
|       accent: deep purple | ||||
|       toggle: | ||||
|         icon: material/brightness-5 | ||||
|         name: "Verander naar systeem thema" | ||||
|  | ||||
| plugins: | ||||
|   social: | ||||
|     cards: !ENV [NETLIFY, false] | ||||
|     cards_color: | ||||
|       fill: "#FFD06F" | ||||
|       text: "#2d2d2d" | ||||
|     cards_dir: assets/img/social | ||||
|     cards_font: Public Sans | ||||
|     cache_dir: .cache/plugin/social-nl | ||||
|  | ||||
| markdown_extensions: | ||||
|   pymdownx.snippets: | ||||
|     auto_append:  | ||||
|       - includes/abbreviations.nl.txt | ||||
|  | ||||
| nav: | ||||
|   - Home: 'index.md' | ||||
|   - Kennisbank: | ||||
|     - 'basics/threat-modeling.md' | ||||
|     - 'basics/common-threats.md' | ||||
|     - 'basics/common-misconceptions.md' | ||||
|     - 'basics/account-creation.md' | ||||
|     - 'basics/account-deletion.md' | ||||
|     - Technologie essenties: | ||||
|       - 'basics/passwords-overview.md' | ||||
|       - 'basics/multi-factor-authentication.md' | ||||
|       - 'basics/email-security.md' | ||||
|       - 'basics/vpn-overview.md' | ||||
|     - Besturings systemen: | ||||
|       - 'os/android-overview.md' | ||||
|       - 'os/linux-overview.md' | ||||
|       - 'os/qubes-overview.md' | ||||
|     - Gevorderde onderwerpen: | ||||
|       - 'advanced/dns-overview.md' | ||||
|       - 'advanced/tor-overview.md' | ||||
|       - 'advanced/payments.md' | ||||
|       - 'advanced/communication-network-types.md' | ||||
|     - kb-archive.md | ||||
|   - Recommendaties: | ||||
|     - 'tools.md' | ||||
|     - Surfen op het internet: | ||||
|       - 'tor.md' | ||||
|       - 'desktop-browsers.md' | ||||
|       - 'mobile-browsers.md' | ||||
|     - Besturings systemen: | ||||
|       - 'android.md' | ||||
|       - 'desktop.md' | ||||
|       - 'router.md' | ||||
|     - Providers: | ||||
|       - 'cloud.md' | ||||
|       - 'dns.md' | ||||
|       - 'email.md' | ||||
|       - 'financial-services.md' | ||||
|       - 'search-engines.md' | ||||
|       - 'vpn.md' | ||||
|     - Software: | ||||
|       - 'calendar.md' | ||||
|       - 'cryptocurrency.md' | ||||
|       - 'data-redaction.md' | ||||
|       - 'email-clients.md' | ||||
|       - 'encryption.md' | ||||
|       - 'file-sharing.md' | ||||
|       - 'frontends.md' | ||||
|       - 'multi-factor-authentication.md' | ||||
|       - 'news-aggregators.md' | ||||
|       - 'notebooks.md' | ||||
|       - 'passwords.md' | ||||
|       - 'productivity.md' | ||||
|       - 'real-time-communication.md' | ||||
|       - 'video-streaming.md' | ||||
|   - Over ons: | ||||
|     - 'about/index.md' | ||||
|     - 'about/criteria.md' | ||||
|     - 'about/statistics.md' | ||||
|     - 'about/notices.md' | ||||
|     - 'about/privacy-policy.md' | ||||
|     - Community: | ||||
|       - 'about/donate.md' | ||||
|       - Online Services: 'about/services.md' | ||||
|       - Code of Conduct: 'CODE_OF_CONDUCT.md' | ||||
|       - 'about/privacytools.md' | ||||
|     - Contributing: | ||||
|       - Writing Guide: | ||||
|         - 'meta/writing-style.md' | ||||
|         - 'meta/brand.md' | ||||
|       - Technical Guides: | ||||
|         - 'meta/uploading-images.md' | ||||
|         - 'meta/git-recommendations.md' | ||||
|   - Changelog: 'https://github.com/privacyguides/privacyguides.org/releases' | ||||
|   - Forum: 'https://discuss.privacyguides.net/' | ||||
|   - Blog: 'https://blog.privacyguides.org/' | ||||
							
								
								
									
										19
									
								
								crowdin.yml
									
									
									
									
									
								
							
							
						
						| @@ -1,18 +1,17 @@ | ||||
| project_id_env: CROWDIN_PROJECT_ID | ||||
| api_token_env: CROWDIN_PERSONAL_TOKEN | ||||
| project_id: "509862" | ||||
| "preserve_hierarchy": true | ||||
| files: | ||||
| - source: "/docs/**/*.en.*" | ||||
|   translation: "/docs/**/%file_name%.%locale_with_underscore%.%file_extension%" | ||||
|   translation_replace: | ||||
|     "en.": "" | ||||
|   update_option: update_as_unapproved | ||||
| - source: "/docs/**/*.*" | ||||
|   translation: "/i18n/%two_letters_code%/**/%file_name%.%file_extension%" | ||||
|   skip_untranslated_files: false | ||||
| - source: "/theme/overrides/*.en.html" | ||||
|   translation: "/theme/overrides/%file_name%.%locale_with_underscore%.html" | ||||
|   translation: "/theme/overrides/%file_name%.%two_letters_code%.html" | ||||
|   translation_replace: | ||||
|     "en.": "" | ||||
| - source: "/includes/*.en.md" | ||||
|   translation: "/includes/%file_name%.%locale_with_underscore%.md" | ||||
|   skip_untranslated_files: false | ||||
| - source: "/includes/*.en.*" | ||||
|   translation: "/includes/%file_name%.%two_letters_code%.%file_extension%" | ||||
|   translation_replace: | ||||
|     "en.": "" | ||||
|   update_option: update_as_unapproved | ||||
|   skip_untranslated_files: false | ||||
|   | ||||
							
								
								
									
										18
									
								
								docs/404.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,18 @@ | ||||
| --- | ||||
| hide: | ||||
|   - feedback | ||||
| meta: | ||||
|   - property: "robots" | ||||
|     content: "noindex, nofollow" | ||||
| --- | ||||
|  | ||||
| # 404 - Not Found | ||||
|  | ||||
| We couldn't find the page you were looking for! Maybe you were looking for one of these? | ||||
|  | ||||
| - [Introduction to Threat Modeling](basics/threat-modeling.md) | ||||
| - [Recommended DNS Providers](dns.md) | ||||
| - [Best Desktop Web Browsers](desktop-browsers.md) | ||||
| - [Best VPN Providers](vpn.md) | ||||
| - [Privacy Guides Forum](https://discuss.privacyguides.net) | ||||
| - [Our Blog](https://blog.privacyguides.org) | ||||
							
								
								
									
										53
									
								
								docs/CODE_OF_CONDUCT.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,53 @@ | ||||
| # Community Code of Conduct | ||||
|  | ||||
| **We pledge** to make our community a harassment-free experience for everyone. | ||||
|  | ||||
| **We strive** to create a positive environment, using welcoming and inclusive language, and being respectful of the viewpoints of others. | ||||
|  | ||||
| **We do not allow** inappropriate or otherwise unacceptable behavior, such as sexualized language, trolling and insulting comments, or otherwise promoting intolerance or harassment. | ||||
|  | ||||
| ## Community Standards | ||||
|  | ||||
| What we expect from members of our communities: | ||||
|  | ||||
| 1. **Don't spread misinformation**   | ||||
|  | ||||
|       We are creating an evidence-based educational community around information privacy and security, not a home for conspiracy theories. For example, when making a claim that a certain piece of software is malicious or that certain telemetry data is privacy invasive, explain in detail what is collected and how it collected. Claims of this nature must be backed by technical evidence. | ||||
|  | ||||
| 1. **Don't abuse our willingness to help**   | ||||
|  | ||||
|       Our community members are not your free tech support. We are happy to help you with specific steps on your privacy journey if you are willing to put in effort on your end. We are not willing to answer endlessly repeated questions about generic computer problems you could have answered yourself with a 30-second internet search. Don't be a [help vampire](https://slash7.com/2006/12/22/vampires/). | ||||
|    | ||||
| 1. **Behave in a positive and constructive manner** | ||||
|  | ||||
|       Examples of behavior that contributes to a positive environment for our community include: | ||||
|  | ||||
|       - Demonstrating empathy and kindness toward other people | ||||
|       - Being respectful of differing opinions, viewpoints, and experiences | ||||
|       - Giving and gracefully accepting constructive feedback | ||||
|       - Accepting responsibility and apologizing to those affected by our mistakes, and learning from the experience | ||||
|       - Focusing on what is best not just for us as individuals, but for the overall community | ||||
|  | ||||
| ### Unacceptable Behavior | ||||
|  | ||||
| The following behaviors are considered harassment and are unacceptable within our community: | ||||
|  | ||||
| - The use of sexualized language or imagery, and sexual attention or advances of any kind | ||||
| - Trolling, insulting or derogatory comments, and personal or political attacks | ||||
| - Public or private harassment | ||||
| - Publishing others' private information, such as a physical or email address, without their explicit permission | ||||
| - Other conduct which could reasonably be considered inappropriate in a professional setting | ||||
|  | ||||
| ## Scope | ||||
|  | ||||
| Our Code of Conduct applies within all project spaces, as well as when an individual is representing the Privacy Guides project in other communities. | ||||
|  | ||||
| We are responsible for clarifying the standards of our community, and have the right to remove or alter the comments of those participating within our community, as necessary and at our discretion. | ||||
|  | ||||
| ### Contact | ||||
|  | ||||
| If you observe a problem on a platform like Matrix or Reddit, please contact our moderators on that platform in chat, via DM, or through any designated "Modmail" system. | ||||
|  | ||||
| If you have a problem elsewhere, or a problem our community moderators are unable to resolve, reach out to `jonah@privacyguides.org` and/or `dngray@privacyguides.org`. | ||||
|  | ||||
| All community leaders are obligated to respect the privacy and security of the reporter of any incident. | ||||
| @@ -1,11 +0,0 @@ | ||||
| --- | ||||
| title: "About Privacy Guides" | ||||
| --- | ||||
|  | ||||
| **Privacy Guides** is a socially motivated website that provides information for protecting your data security and privacy. We are a non-profit collective operated entirely by volunteer team members and contributors. | ||||
|  | ||||
| Our current list of team members can be found [here on GitHub](https://github.com/orgs/privacyguides/people). Additionally, [many people](https://github.com/privacyguides/privacyguides.org/graphs/contributors) have made contributions to the project. You can too, we're open sourced on GitHub! | ||||
|  | ||||
| Our team members review all changes made to the website and handle administrative duties such as web hosting and financials, however they do not personally profit from any contributions made to this site. Our financials are transparently hosted by the Open Collective Foundation 501(c)(3) at [opencollective.com/privacyguides](https://opencollective.com/privacyguides). Donations to Privacy Guides are generally tax deductible in the United States. | ||||
|  | ||||
| :fontawesome-brands-creative-commons: :fontawesome-brands-creative-commons-zero: Unless otherwise noted, the original content on this website is made available under a [CC0 1.0 Universal Public Domain Dedication](https://github.com/privacyguides/privacyguides.org/blob/main/LICENSE). This means that it is completely free of copyright and can be used or reshared as you wish. Though not strictly required, we do kindly request you attribute us by linking back to our homepage from your project. | ||||
							
								
								
									
										40
									
								
								docs/about/criteria.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,40 @@ | ||||
| --- | ||||
| title: General Criteria | ||||
| --- | ||||
|  | ||||
| !!! example "Work in Progress" | ||||
|  | ||||
|     The following page is a work in progress, and does not reflect the full criteria for our recommendations at this time. Past discussion on this topic: [#24](https://github.com/privacyguides/privacyguides.org/discussions/24) | ||||
|  | ||||
| Below are some things that must apply to all submissions to Privacy Guides. Each category will have additional requirements for inclusion. | ||||
|  | ||||
| ## Financial Disclosure | ||||
|  | ||||
| We do not make money from recommending certain products, we do not use affiliate links, and we do not provide special consideration to project donors. | ||||
|  | ||||
| ## General Guidelines | ||||
|  | ||||
| We apply these priorities when considering new recommendations: | ||||
|  | ||||
| - **Secure**: Tools should follow security best-practices wherever applicable. | ||||
| - **Source Availability**: Open source projects are generally preferred over equivalent proprietary alternatives. | ||||
| - **Cross-Platform**: We typically prefer recommendations to be cross-platform, to avoid vendor lock-in. | ||||
| - **Active Development**: The tools that we recommend should be actively developed, unmaintained projects will be removed in most cases. | ||||
| - **Usability**: Tools should be accessible to most computer users, an overly technical background should not be required. | ||||
| - **Documented**: Tools should have clear and extensive documentation for use. | ||||
|  | ||||
| ## Developer Self-Submissions | ||||
|  | ||||
| We have these requirements in regard to developers which wish to submit their project or software for consideration. | ||||
|  | ||||
| - Must disclose affiliation, i.e. your position within the project being submitted. | ||||
|  | ||||
| - Must have a security whitepaper if it is a project that involves handling of sensitive information like a messenger, password manager, encrypted cloud storage etc. | ||||
|     - Third party audit status. We want to know if you have one, or have one planned. If possible please mention who will be conducting the audit. | ||||
|  | ||||
| - Must explain what the project brings to the table in regard to privacy. | ||||
|     - Does it solve any new problem? | ||||
|     - Why should anyone use it over the alternatives? | ||||
|  | ||||
| - Must state what the exact threat model is with their project. | ||||
|     - It should be clear to potential users what the project can provide, and what it cannot. | ||||
| @@ -2,13 +2,13 @@ | ||||
| title: Supporting Us | ||||
| --- | ||||
| <!-- markdownlint-disable MD036 --> | ||||
| It takes a lot of [people](https://github.com/privacyguides/privacyguides.org/graphs/contributors) and [work](https://github.com/privacyguides/privacyguides.org/pulse/monthly) to keep Privacy Guides up to date and spreading the word about privacy and mass surveillance. If you like what we do, the best way to help out is by getting involved by [editing the site](https://github.com/privacyguides/privacyguides.org) or [contributing translations](https://crowdin.com/project/privacyguides). | ||||
| It takes a lot of [people](https://github.com/privacyguides/privacyguides.org/graphs/contributors) and [work](https://github.com/privacyguides/privacyguides.org/pulse/monthly) to keep Privacy Guides up to date and spreading the word about privacy and mass surveillance. If you like what we do, consider getting involved by [editing the site](https://github.com/privacyguides/privacyguides.org) or [contributing translations](https://crowdin.com/project/privacyguides). | ||||
| 
 | ||||
| If you want to support us financially, the most convenient method for us is contributing via Open Collective, a website operated by our fiscal host. Open Collective accepts payments via credit/debit card, PayPal, and bank transfers. | ||||
| 
 | ||||
| [Donate on OpenCollective.com](https://opencollective.com/privacyguides/donate){ .md-button .md-button--primary } | ||||
| 
 | ||||
| Donations made directly to us Open Collective are generally tax-deductible in the US, because our fiscal host (the Open Collective Foundation) is a registered 501(c)3 organization. You will receive a receipt from the Open Collective Foundation after donating. Privacy Guides does not provide financial advice, and you should contact your tax advisor to find out whether this is applicable to you. | ||||
| Donations made directly to us on Open Collective are generally tax-deductible in the US, because our fiscal host (the Open Collective Foundation) is a registered 501(c)3 organization. You will receive a receipt from the Open Collective Foundation after donating. Privacy Guides does not provide financial advice, and you should contact your tax advisor to find out whether this is applicable to you. | ||||
| 
 | ||||
| If you already make use of GitHub sponsorships, you can also sponsor our organization there. | ||||
| 
 | ||||
							
								
								
									
										88
									
								
								docs/about/index.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,88 @@ | ||||
| --- | ||||
| template: schema.html | ||||
| title: "About Privacy Guides" | ||||
| description: Privacy Guides is a socially motivated website that provides information for protecting your data security and privacy. | ||||
| --- | ||||
| { align=right } | ||||
|  | ||||
| **Privacy Guides** is a socially motivated website that provides [information](/kb) for protecting your data security and privacy. We are a non-profit collective operated entirely by volunteer [team members](https://discuss.privacyguides.net/g/team) and contributors. Our website is free of advertisements and not affiliated with any listed providers. | ||||
|  | ||||
| [:octicons-home-16:](https://www.privacyguides.org/){ .card-link title=Homepage } | ||||
| [:octicons-code-16:](https://github.com/privacyguides/privacyguides.org){ .card-link title="Source Code" } | ||||
| [:octicons-heart-16:](donate.md){ .card-link title=Contribute } | ||||
|  | ||||
| The purpose of Privacy Guides is to educate our community on the importance of privacy online and government programs internationally that are designed to monitor all of your online activities. | ||||
|  | ||||
| > To find [privacy-focused alternative] apps, check out sites like Good Reports and **Privacy Guides**, which list privacy-focused apps in a variety of categories, notably including email providers (usually on paid plans) that aren’t run by the big tech companies. | ||||
|  | ||||
| — [New York Times](https://www.nytimes.com/wirecutter/guides/online-security-social-media-privacy/) | ||||
|  | ||||
| > If you're looking for a new VPN, you can go to the discount code of just about any podcast. If you are looking for a **good** VPN, you need professional help. The same goes for email clients, browsers, operating systems and password managers. How do you know which of these is the best, most privacy-friendly option? For that there is **Privacy Guides**, a platform on which a number of volunteers search day in, day out for the best privacy-friendly tools to use on the internet. | ||||
|  | ||||
| — [Tweakers.net](https://tweakers.net/reviews/10568/op-zoek-naar-privacyvriendelijke-tools-niek-de-wilde-van-privacy-guides.html) [Translated from Dutch] | ||||
|  | ||||
| Also featured on: [Ars Technica](https://arstechnica.com/gadgets/2022/02/is-firefox-ok/), [Wirecutter](https://www.nytimes.com/wirecutter/guides/practical-guide-to-securing-windows-pc/) [[2](https://www.nytimes.com/wirecutter/guides/practical-guide-to-securing-your-mac/)], and [Wired](https://www.wired.com/story/firefox-mozilla-2022/). | ||||
|  | ||||
| ## History | ||||
|  | ||||
| Privacy Guides was launched in September 2021 as a continuation of the [defunct](privacytools.md) "PrivacyTools" open-source educational project. We recognized the importance of independent, criteria-focused product recommendations and general knowledge in the privacy space, which is why we needed to preserve the work that had been created by so many contributors since 2015 and make sure that information had a stable home on the web indefinitely. | ||||
|  | ||||
| In 2022, we completed the transition of our main website framework from Jekyll to MkDocs, using the `mkdocs-material` documentation software. This change made open-source contributions to our site significantly easier for outsiders, because instead of needing to know complicated syntax to write posts effectively, contributing is now as easy as writing a standard Markdown document. | ||||
|  | ||||
| We additionally launched our new discussion forum at [discuss.privacyguides.net](https://discuss.privacyguides.net/) as a community platform to share ideas and ask questions about our mission. This augments our existing community on Matrix, and replaced our previous GitHub Discussions platform, decreasing our reliance on proprietary discussion platforms. | ||||
|  | ||||
| So far in 2023 we've launched international translations of our website in [French](/fr/), [Hebrew](/he/), and [Dutch](/nl/), with more languages on the way, made possible by our excellent translation team on [Crowdin](https://crowdin.com/project/privacyguides). We plan to continue carrying forward our mission of outreach and education, and finding ways to more clearly highlight the dangers of a lack of privacy awareness in the modern digital age, and the prevalence and harms of security breaches across the technology industry. | ||||
|  | ||||
| ## Our Team | ||||
|  | ||||
| ??? person "@jonah" | ||||
|  | ||||
|     - [:simple-discourse: Discourse](https://discuss.privacyguides.net/u/jonah) | ||||
|     - [:simple-github: GitHub](https://github.com/jonaharagon "@jonaharagon") | ||||
|     - [:simple-mastodon: Mastodon](https://mastodon.neat.computer/@jonah "@jonah@neat.computer"){rel=me} | ||||
|     - [:fontawesome-solid-house: Homepage](https://www.jonaharagon.com) | ||||
|  | ||||
| ??? person "@niek-de-wilde" | ||||
|  | ||||
|     - [:simple-discourse: Discourse](https://discuss.privacyguides.net/u/Niek-de-Wilde) | ||||
|     - [:simple-github: GitHub](https://github.com/blacklight447 "@blacklight447") | ||||
|     - [:simple-mastodon: Mastodon](https://mastodon.social/@blacklight447 "@blacklight447@mastodon.social"){rel=me} | ||||
|  | ||||
| ??? person "@dngray" | ||||
|  | ||||
|     - [:simple-discourse: Discourse](https://discuss.privacyguides.net/u/dngray) | ||||
|     - [:simple-github: GitHub](https://github.com/dngray "@dngray") | ||||
|     - [:simple-mastodon: Mastodon](https://mastodon.social/@dngray "@dngray@mastodon.social"){rel=me} | ||||
|     - [:fontawesome-solid-envelope: Email](mailto:dngray@privacyguides.org) | ||||
|  | ||||
| ??? person "@freddy" | ||||
|  | ||||
|     - [:simple-discourse: Discourse](https://discuss.privacyguides.net/u/freddy) | ||||
|     - [:simple-github: GitHub](https://github.com/freddy-m "@freddy-m") | ||||
|     - [:simple-mastodon: Mastodon](https://social.lol/@freddy "@freddy@social.lol"){rel=me} | ||||
|     - [:fontawesome-solid-envelope: Email](mailto:freddy@privacyguides.org) | ||||
|     - [:fontawesome-solid-house: Homepage](https://freddy.omg.lol) | ||||
|  | ||||
| ??? person "@mfwmyfacewhen" | ||||
|  | ||||
|     - [:simple-discourse: Discourse](https://discuss.privacyguides.net/u/mfwmyfacewhen) | ||||
|     - [:simple-github: GitHub](https://github.com/mfwmyfacewhen "@mfwmyfacewhen") | ||||
|     - [:fontawesome-solid-house: Homepage](https://mfw.omg.lol) | ||||
|  | ||||
| ??? person "@olivia" | ||||
|  | ||||
|     - [:simple-discourse: Discourse](https://discuss.privacyguides.net/u/olivia) | ||||
|     - [:simple-github: GitHub](https://github.com/hook9 "@hook9") | ||||
|     - [:simple-mastodon: Mastodon](https://mastodon.neat.computer/@oliviablob "@oliviablob@neat.computer"){rel=me} | ||||
|  | ||||
| Additionally, [many people](https://github.com/privacyguides/privacyguides.org/graphs/contributors) have made contributions to the project. You can too, we're open sourced on GitHub, and accepting translation suggestions on [Crowdin](https://crowdin.com/project/privacyguides). | ||||
|  | ||||
| Our team members review all changes made to the website and handle administrative duties such as web hosting and financials, however they do not personally profit from any contributions made to this site. Our financials are transparently hosted by the Open Collective Foundation 501(c)(3) at [opencollective.com/privacyguides](https://opencollective.com/privacyguides). Donations to Privacy Guides are generally tax-deductible in the United States. | ||||
|  | ||||
| ## Site License | ||||
|  | ||||
| *The following is a human-readable summary of (and not a substitute for) the [license](https://github.com/privacyguides/privacyguides.org/blob/main/LICENSE):* | ||||
|  | ||||
| :fontawesome-brands-creative-commons: :fontawesome-brands-creative-commons-by: :fontawesome-brands-creative-commons-nd: Unless otherwise noted, the original content on this website is made available under the [Creative Commons Attribution-NoDerivatives 4.0 International Public License](https://github.com/privacyguides/privacyguides.org/blob/main/LICENSE). This means that you are free to copy and redistribute the material in any medium or format for any purpose, even commercially; as long as you give appropriate credit to `Privacy Guides (www.privacyguides.org)` and provide a link to the license. You may do so in any reasonable manner, but not in any way that suggests Privacy Guides endorses you or your use. If you remix, transform, or build upon the content of this website, you may not distribute the modified material. | ||||
|  | ||||
| This license is in place to prevent people from sharing our work without giving proper credit, and to prevent people from modifying our work in a way that could be used to mislead people. If you find the terms of this license too restrictive for the project you're working on, please reach out to us at `jonah@privacyguides.org`. We are happy to provide alternative licensing options for well-intentioned projects in the privacy space! | ||||
| @@ -16,7 +16,7 @@ Privacy Guides additionally does not warrant that this website will be constantl | ||||
| 
 | ||||
| ## Licenses | ||||
| 
 | ||||
| Unless otherwise noted, all content on this website is made freely available under the terms of the [Creative Commons CC0 1.0 Universal](https://github.com/privacyguides/privacyguides.org/blob/main/LICENSE). | ||||
| Unless otherwise noted, all content on this website is made available under the terms of the [Creative Commons Attribution-NoDerivatives 4.0 International Public License](https://github.com/privacyguides/privacyguides.org/blob/main/LICENSE). | ||||
| 
 | ||||
| This does not include third-party code embedded in this repository, or code where a superseding license is otherwise noted. The following are notable examples, but this list may not be all-inclusive: | ||||
| 
 | ||||
| @@ -24,17 +24,17 @@ This does not include third-party code embedded in this repository, or code wher | ||||
| 
 | ||||
| Portions of this notice itself were adopted from [opensource.guide](https://github.com/github/opensource.guide/blob/master/notices.md) on GitHub. That resource and this page itself are released under [CC-BY-4.0](https://github.com/github/opensource.guide/blob/master/LICENSE). | ||||
| 
 | ||||
| This means that you can use the human-readable content in this repository for your own project, per the terms outlined in the CC0 1.0 Universal text. You **may not** use the Privacy Guides branding in your own project without express approval from this project. Privacy Guides's brand trademarks include the "Privacy Guides" wordmark and shield logo. | ||||
| This means that you can use the human-readable content in this repository for your own project, per the terms outlined in the Creative Commons Attribution-NoDerivatives 4.0 International Public License text. You may do so in any reasonable manner, but not in any way that suggests Privacy Guides endorses you or your use. You **may not** use the Privacy Guides branding in your own project without express approval from this project. Privacy Guides's brand trademarks include the "Privacy Guides" wordmark and shield logo. | ||||
| 
 | ||||
| We believe that the logos and other images in `assets` obtained from third-party providers are either in the public domain or **fair use**. In a nutshell, legal [fair use doctrine](https://www.copyright.gov/fair-use/more-info.html) allows the use of copyrighted images in order to identify the subject matter for purposes of public comment. However, these logos and other images may still be subject to trademark laws in one or more jurisdictions. Before using this content, please ensure that it is used to identify the entity or organization that owns the trademark and that you have the right to use it under the laws which apply in the circumstances of your intended use. *When copying content from this website, you are solely responsible for ensuring that you do not infringe someone else's trademark or copyright.* | ||||
| 
 | ||||
| When you contribute to this repository you are doing so under the above licenses. | ||||
| When you contribute to this repository you are doing so under the above licenses, and you are granting Privacy Guides a perpetual, worldwide, non-exclusive, transferable, royalty-free, irrevocable license with the right to sublicense such rights through multiple tiers of sublicensees, to reproduce, modify, display, perform and distribute your contribution as part of our project. | ||||
| 
 | ||||
| ## Acceptable Use | ||||
| 
 | ||||
| You may not use this website in any way that causes or may cause damage to the website or impairment of the availability or accessibility of Privacy Guides, or in any way which is unlawful, illegal, fraudulent, harmful, or in connection with any unlawful, illegal, fraudulent, or harmful purpose or activity. | ||||
| 
 | ||||
| You must not conduct any systematic or automated data collection activities on or in relation to this website without express written consent from Aragon Ventures LLC, including: | ||||
| You must not conduct any systematic or automated data collection activities on or in relation to this website without express written consent, including: | ||||
| 
 | ||||
| * Excessive Automated Scans | ||||
| * Denial of Service Attacks | ||||
| @@ -8,13 +8,13 @@ Privacy Guides is a community project operated by a number of active volunteer c | ||||
| The privacy of our website visitors is important to us, so we do not track any individual people. As a visitor to our website: | ||||
| 
 | ||||
| - No personal information is collected | ||||
| - No information such as cookies is stored in the browser | ||||
| - No information such as cookies are stored in the browser | ||||
| - No information is shared with, sent to or sold to third-parties | ||||
| - No information is shared with advertising companies | ||||
| - No information is mined and harvested for personal and behavioral trends | ||||
| - No information is monetized | ||||
| 
 | ||||
| You can view the data we collect at [stats.privacyguides.net/privacyguides.org](https://stats.privacyguides.net/privacyguides.org). | ||||
| You can view the data we collect on our [statistics](statistics.md) page. | ||||
| 
 | ||||
| We run a self-hosted installation of [Plausible Analytics](https://plausible.io) to collect some anonymous usage data for statistical purposes. The goal is to track overall trends in our website traffic, it is not to track individual visitors. All the data is in aggregate only. No personal data is collected. | ||||
| 
 | ||||
| @@ -43,7 +43,7 @@ We will store your account data as long as your account remains open. After clos | ||||
| 
 | ||||
| The Privacy Guides team generally does not have access to personal data outside of limited access granted via some moderation panels. Inquiries regarding your personal information should be sent directly to: | ||||
| 
 | ||||
| ``` | ||||
| ```text | ||||
| Jonah Aragon | ||||
| Services Administrator | ||||
| jonah@privacyguides.org | ||||
| @@ -52,9 +52,10 @@ jonah@privacyguides.org | ||||
| For all other inquiries, you can contact any member of our team. | ||||
| 
 | ||||
| For complaints under GDPR more generally, you may lodge complaints with your local data protection supervisory authorities. | ||||
| In France it's the Commission Nationale de l'Informatique et des Libertés which take care and handle the complaints. They provide a [template of complaint letter](https://www.cnil.fr/en/plaintes) to use. | ||||
| 
 | ||||
| ## About This Policy | ||||
| 
 | ||||
| We will post any new versions of this statement [here](privacy-policy.en.md). We may change how we announce changes in future versions of this document. In the meantime we may update our contact information at any time without announcing a change. Please refer to the [Privacy Policy](privacy-policy.en.md) for the latest contact information at any time. | ||||
| We will post any new versions of this statement [here](privacy-policy.md). We may change how we announce changes in future versions of this document. In the meantime we may update our contact information at any time without announcing a change. Please refer to the [Privacy Policy](privacy-policy.md) for the latest contact information at any time. | ||||
| 
 | ||||
| A full revision [history](https://github.com/privacyguides/privacyguides.org/commits/main/docs/about/privacy-policy.en.md) of this page can be found on GitHub. | ||||
| A full revision [history](https://github.com/privacyguides/privacyguides.org/commits/main/docs/about/privacy-policy.md) of this page can be found on GitHub. | ||||
							
								
								
									
										117
									
								
								docs/about/privacytools.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,117 @@ | ||||
| --- | ||||
| title: "PrivacyTools FAQ" | ||||
| --- | ||||
| # Why we moved on from PrivacyTools | ||||
|  | ||||
| In September 2021, every active contributor unanimously agreed to move from PrivacyTools to work on this site: Privacy Guides. This decision was made because PrivacyTools’ founder and controller of the domain name had disappeared for an extended period of time and could not be contacted. | ||||
|  | ||||
| Having built a reputable site and set of services on PrivacyTools.io, this caused grave concerns for the future of PrivacyTools, as any future disruption could wipe out the entire organization with no recovery method. This transition was communicated to the PrivacyTools community many months in advance via a variety of channels including its blog, Twitter, Reddit, and Mastodon to ensure the entire process went as smoothly as possible. We did this to ensure nobody was kept in the dark, which has been our modus operandi since our team was created, and to make sure Privacy Guides was recognized as the same reliable organization that PrivacyTools was before the transition. | ||||
|  | ||||
| After the organizational move was completed, the founder of PrivacyTools returned and began to spread misinformation about the Privacy Guides project. They continue to spread misinformation in addition to operating a paid link farm on the PrivacyTools domain. We are creating this page to clear up any misconceptions. | ||||
|  | ||||
| ## What is PrivacyTools? | ||||
|  | ||||
| PrivacyTools was created in 2015 by "BurungHantu," who wanted to make a privacy information resource - helpful tools following the Snowden revelations. The site grew into a flourishing open-source project with [many contributors](https://github.com/privacytools/privacytools.io/graphs/contributors), some eventually given various organizational responsibilities, such as operating online services like Matrix and Mastodon, managing and reviewing changes to the site on GitHub, finding sponsors for the project, writing blog posts and operating social media outreach platforms like Twitter, etc. | ||||
|  | ||||
| Beginning in 2019, BurungHantu grew more and more distant from the active development of the website and communities, and began delaying payments he was responsible for related to the servers we operated. To avoid having our system administrator pay server costs out of their own pocket, we changed the donation methods listed on the site from BurungHantu's personal PayPal and crypto accounts to a new OpenCollective page on [October 31, 2019](https://web.archive.org/web/20210729184557/https://blog.privacytools.io/privacytools-io-joins-the-open-collective-foundation/). This had the added benefits of making our finances completely transparent, a value we strongly believe in, and tax-deductible in the United States, because they were being held by the Open Collective Foundation 501(c)3. This change was unanimously agreed upon by the team and went uncontested. | ||||
|  | ||||
| ## Why We Moved On | ||||
|  | ||||
| In 2020, BurungHantu's absence grew much more noticeable. At one point, we required the domain's nameservers to be changed to nameservers controlled by our system administrator to avoid future disruption, and this change was not completed for over a month after the initial request. He would disappear from the public chat and private team chat rooms on Matrix for months at a time, occasionally popping in to give some small feedback or promise to be more active before disappearing once again. | ||||
|  | ||||
| In October 2020, the PrivacyTools system administrator (Jonah) [left](https://web.archive.org/web/20210729190742/https://blog.privacytools.io/blacklight447-taking-over/) the project because of these difficulties, handing control to another long-time contributor. Jonah had been operating nearly every PrivacyTools service and acting as the *de facto* project lead for website development in BurungHantu's absence, thus his departure was a significant change to the organization. At the time, because of these significant organizational changes, BurungHantu promised the remaining team he would return to take control of the project going forward. ==The PrivacyTools team reached out via several communication methods over the following months, but did not receive any response.== | ||||
|  | ||||
| ## Domain Name Reliance | ||||
|  | ||||
| At the beginning of 2021, the PrivacyTools team grew worried about the future of the project, because the domain name was set to expire on 1st March 2021. The domain was ultimately renewed by BurungHantu with no comment. | ||||
|  | ||||
| The team’s concerns were not addressed, and we realized this would be a problem every year: If the domain expired it would have allowed it to be stolen by squatters or spammers, thus ruining the organization's reputation. We also would have had trouble reaching the community to inform them of what took place. | ||||
|  | ||||
| Without being in any contact with BurungHantu, we decided the best course of action would be to move to a new domain name while we still had guaranteed control over the old domain name, sometime before March 2022. This way, we would be able to cleanly redirect all PrivacyTools resources to the new site without any interruption in service. This decision was made many months in advance and communicated to the entire team in the hopes that BurungHantu would reach out and assure his continued support for the project, because with a recognizable brand name and large communities online, moving away from "PrivacyTools" was the least desirable possible outcome. | ||||
|  | ||||
| In mid-2021 the PrivacyTools team reached out to Jonah, who agreed to rejoin the team to help with the transition. | ||||
|  | ||||
| ## Community Call to Action | ||||
|  | ||||
| At the end of July 2021, we [informed](https://web.archive.org/web/20210729184422/https://blog.privacytools.io/the-future-of-privacytools/) the PrivacyTools community of our intention to choose a new name and continue the project on a new domain, to be [chosen](https://web.archive.org/web/20210729190935/https://aragon.cloud/apps/forms/cMPxG9KyopapBbcw) on 2nd August 2022. In the end, "Privacy Guides" was selected, with the `privacyguides.org` domain already owned by Jonah for a side-project from 2020 that went undeveloped. | ||||
|  | ||||
| ## Control of r/privacytoolsIO | ||||
|  | ||||
| Simultaneously with the ongoing website issues at privacytools.io, the r/privacytoolsIO moderation team was facing challenges with managing the subreddit. The subreddit had always been operated mostly independently of the website's development, but BurungHantu was the primary moderator of the subreddit as well, and he was the only moderator granted "Full Control" privileges. u/trai_dep was the only active moderator at the time, and [posted](https://www.reddit.com/r/redditrequest/comments/o9tllh/requesting_rprivacytoolsio_im_only_active_mod_top/) a request to Reddit's administrators on June 28, 2021, asking to be granted the primary moderator position and full control privileges, in order to make necessary changes to the Subreddit. | ||||
|  | ||||
| Reddit requires that subreddits have active moderators. If the primary moderator is inactive for a lengthy period of time (such as a year) the primary moderation position can be re-appointed to the next moderator in line. For this request to have been granted, BurungHantu had to have been completely absent from all Reddit activity for a long period of time, which was consistent with his behaviors on other platforms. | ||||
|  | ||||
| > If you were removed as moderator from a subreddit through Reddit request it is because your lack of response and lack of activity qualified the subreddit for an r/redditrequest transfer. | ||||
| > | ||||
| > r/redditrequest is Reddit's way of making sure communities have active moderators and is part of the [Moderator Code of Conduct](https://www.redditinc.com/policies/moderator-code-of-conduct). | ||||
|  | ||||
| ## Beginning the Transition | ||||
|  | ||||
| On September 14th, 2021, we [announced](https://www.privacyguides.org/blog/2021/09/14/welcome-to-privacy-guides/) the beginning of our migration to this new domain: | ||||
|  | ||||
| > [...] we found it necessary to make this switch sooner rather than later to ensure people would find out about this transition as soon as possible. This gives us adequate time to transition the domain name, which is currently redirecting to www.privacyguides.org, and it hopefully gives everyone enough time to notice the change, update bookmarks and websites, etc. | ||||
|  | ||||
| This change [entailed:](https://www.reddit.com/r/PrivacyGuides/comments/pnhn4a/rprivacyguides_privacyguidesorg_what_you_need_to/) | ||||
|  | ||||
| - Redirecting www.privacytools.io to [www.privacyguides.org](https://www.privacyguides.org). | ||||
| - Archiving the source code on GitHub to preserve our past work and issue tracker, which we continued to use for months of future development of this site. | ||||
| - Posting announcements to our subreddit and various other communities informing people of the official change. | ||||
| - Formally closing privacytools.io services, like Matrix and Mastodon, and encouraging existing users to migrate as soon as possible. | ||||
|  | ||||
| Things appeared to be going smoothly, and most of our active community made the switch to our new project exactly as we hoped. | ||||
|  | ||||
| ## Following Events | ||||
|  | ||||
| Roughly a week following the transition, BurungHantu returned online for the first time in nearly a year, however nobody on our team was willing to return to PrivacyTools because of his historic unreliability. Rather than apologize for his prolonged absence, he immediately went on the offensive and positioned the transition to Privacy Guides as an attack against him and his project. He subsequently [deleted](https://www.reddit.com/r/privacytoolsIO/comments/pp9yie/comment/hd49wbn) many of these posts when it was pointed out by the community that he had been absent and abandoned the project. | ||||
|  | ||||
| At this point, BurungHantu claimed he wanted to continue working on privacytools.io on his own and requested that we remove the redirect from www.privacytools.io to [www.privacyguides.org](https://www.privacyguides.org). We obliged and requested that he keep the subdomains for Matrix, Mastodon, and PeerTube active for us to run as a public service to our community for at least a few months, in order to allow users on those platforms to easily migrate to other accounts. Due to the federated nature of the services we provided, they were tied to specific domain names making it very difficult to migrate (and in some cases impossible). | ||||
|  | ||||
| Unfortunately, because control of the r/privacytoolsIO subreddit was not returned to BurungHantu at his demand (further information below), those subdomains were [cut off](https://www.reddit.com/r/PrivacyGuides/comments/pymthv/comment/hexwrps/) at the beginning of October, ending any migration possibilities to any users still using those services. | ||||
|  | ||||
| Following this, BurungHantu made false accusations about Jonah stealing donations from the project. BurungHantu had over a year since the alleged incident occurred, and yet he never made anyone aware of it until after the Privacy Guides migration. BurungHantu has been repeatedly asked for proof and to comment on the reason for his silence by the team [and the community](https://twitter.com/TommyTran732/status/1526153536962281474), and has not done so. | ||||
|  | ||||
| BurungHantu also made a [twitter post](https://twitter.com/privacytoolsIO/status/1510560676967710728) alleging that an "attorney" had reached out to him on Twitter and was providing advice, in another attempt to bully us into giving him control of our subreddit, and as part of his smear campaign to muddy the waters surrounding the launch of Privacy Guides while pretending to be a victim. | ||||
|  | ||||
| ## PrivacyTools.io Now | ||||
|  | ||||
| As of September 25th 2022 we are seeing BurungHantu's overall plans come to fruition on privacytools.io, and this is the very reason we decided to create this explainer page today. The website he is operating appears to be a heavily SEO-optimized version of the site which recommends tools in exchange for financial compensation. Very recently, IVPN and Mullvad, two VPN providers near-universally [recommended](../vpn.md) by the privacy community and notable for their stance against affiliate programs were removed from PrivacyTools. In their place? NordVPN, Surfshark, ExpressVPN, and hide.me; Giant VPN corporations with untrustworthy platforms and business practices, notorious for their aggressive marketing and affiliate programs. | ||||
|  | ||||
| ==**PrivacyTools has become exactly the type of site we [warned against](https://web.archive.org/web/20210729205249/https://blog.privacytools.io/the-trouble-with-vpn-and-privacy-reviews/) on the PrivacyTools blog in 2019.**== We've tried to keep our distance from PrivacyTools since the transition, but their continued harassment towards our project and now their absurd abuse of the credibility their brand gained over 6 years of open source contributions is extremely troubling to us. Those of us actually fighting for privacy are not fighting against each other, and are not getting our advice from the highest bidder. | ||||
|  | ||||
| ## r/privacytoolsIO Now | ||||
|  | ||||
| After the launch of [r/PrivacyGuides](https://www.reddit.com/r/privacyguides), it was impractical for u/trai_dep to continue moderating both subreddits, and with the community on-board with the transition, r/privacytoolsIO was [made](https://www.reddit.com/r/privacytoolsIO/comments/qk7qrj/a_new_era_why_rptio_is_now_a_restricted_sub/) a restricted sub in a post on November 1st, 2021: | ||||
|  | ||||
| > [...] The growth of this Sub was the result of great effort, across several years, by the PrivacyGuides.org team. And by every one of you. | ||||
| > | ||||
| > A Subreddit is a great deal of work to administer and moderate. Like a garden, it requires patient tending and daily care. It’s not a task for dilettantes or commitment-challenged people. It can’t thrive under a gardener who abandons it for several years, then shows up demanding this year’s harvest as their tribute. It’s unfair to the team formed years ago. It’s unfair to you. [...] | ||||
|  | ||||
| Subreddits do not belong to anybody, and they especially do not belong to brand-holders. They belong to their communities, and the community and its moderators made the decision to support the move to r/PrivacyGuides. | ||||
|  | ||||
| In the months since, BurungHantu has threatened and begged for returning subreddit control to his account in [violation](https://www.reddit.com/r/redditrequest/wiki/top_mod_removal/) of Reddit rules: | ||||
|  | ||||
| > Retaliation from any moderator with regards to removal requests is disallowed. | ||||
|  | ||||
| For a community with many thousands of remaining subscribers, we feel that it would be incredibly disrespectful to return control of that massive platform to the person who abandoned it for over a year, and who now operates a website that we feel provides very low-quality information. Preserving the years of past discussions in that community is more important to us, and thus u/trai_dep and the rest of the subreddit moderation team has made the decision to keep r/privacytoolsIO as-is. | ||||
|  | ||||
| ## OpenCollective Now | ||||
|  | ||||
| Our fundraising platform, OpenCollective, is another source of contention. Our position is that OpenCollective was put in place by our team and managed by our team to fund services we currently operate and which PrivacyTools no longer does. We [reached out](https://opencollective.com/privacyguides/updates/transitioning-to-privacy-guides) to all of our donors regarding our move to Privacy Guides, and we were unanimously supported by our sponsors and community. | ||||
|  | ||||
| Thus, the funds in OpenCollective belong to Privacy Guides, they were given to our project, and not the owner of a well known domain name. In the announcement made to donors on September 17th, 2021, we offered refunds to any donor who disagrees with the stance we took, but nobody has taken us up on this offer: | ||||
|  | ||||
| > If any sponsors or backers disagree with or feel misled by these recent events and would like to request a refund given these highly unusual circumstances, please get in touch with our project admin by emailing jonah@triplebit.net. | ||||
|  | ||||
| ## Further Reading | ||||
|  | ||||
| This topic has been discussed extensively within our communities in various locations, and it seems likely that most people reading this page will already be familiar with the events leading up to the move to Privacy Guides. Some of our previous posts on the matter may have extra detail we omitted here for brevity. They have been linked below for the sake of completion. | ||||
|  | ||||
| - [June 28, 2021 request for control of r/privacytoolsIO](https://www.reddit.com/r/redditrequest/comments/o9tllh/requesting_rprivacytoolsio_im_only_active_mod_top/) | ||||
| - [July 27, 2021 announcement of our intentions to move on the PrivacyTools blog, written by the team](https://web.archive.org/web/20210729184422/https://blog.privacytools.io/the-future-of-privacytools/) | ||||
| - [Sept 13, 2021 announcement of the beginning of our transition to Privacy Guides on r/privacytoolsIO](https://www.reddit.com/r/privacytoolsIO/comments/pnql46/rprivacyguides_privacyguidesorg_what_you_need_to/) | ||||
| - [Sept 17, 2021 announcement on OpenCollective from Jonah](https://opencollective.com/privacyguides/updates/transitioning-to-privacy-guides) | ||||
| - [Sept 30, 2021 Twitter thread detailing most of the events now described on this page](https://twitter.com/privacy_guides/status/1443633412800225280) | ||||
| - [Oct 1, 2021 post by u/dng99 noting subdomain failure](https://www.reddit.com/r/PrivacyGuides/comments/pymthv/comment/hexwrps/) | ||||
| - [Apr 2, 2022 response by u/dng99 to PrivacyTools' accusatory blog post](https://www.reddit.com/comments/tuo7mm/comment/i35kw5a/) | ||||
| - [May 16, 2022 response by @TommyTran732 on Twitter](https://twitter.com/TommyTran732/status/1526153497984618496) | ||||
| - [Sep 3, 2022 post on Techlore's forum by @dngray](https://discuss.techlore.tech/t/has-anyone-seen-this-video-wondering-your-thoughts/792/20) | ||||
							
								
								
									
										38
									
								
								docs/about/services.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,38 @@ | ||||
| # Privacy Guides Services | ||||
|  | ||||
| We run a number of web services to test out features and promote cool decentralized, federated, and/or open-source projects. Many of these services are available to the public and are detailed below. | ||||
|  | ||||
| [:material-comment-alert: Report an issue](https://discuss.privacyguides.net/c/services/2){ .md-button .md-button--primary } | ||||
|  | ||||
| ## Discourse | ||||
|  | ||||
| - Domain: [discuss.privacyguides.net](https://discuss.privacyguides.net) | ||||
| - Availability: Public | ||||
| - Source: [github.com/discourse/discourse](https://github.com/discourse/discourse) | ||||
|  | ||||
| ## Gitea | ||||
|  | ||||
| - Domain: [code.privacyguides.dev](https://code.privacyguides.dev) | ||||
| - Availability: Invite-Only   | ||||
| Access may be granted upon request to any team working on *Privacy Guides*-related development or content. | ||||
| - Source: [snapcraft.io/gitea](https://snapcraft.io/gitea) | ||||
|  | ||||
| ## Matrix | ||||
|  | ||||
| - Domain: [matrix.privacyguides.org](https://matrix.privacyguides.org) | ||||
| - Availability: Invite-Only   | ||||
| Access may be granted upon request to Privacy Guides team members, Matrix moderators, third-party Matrix community administrators, Matrix bot operators, and other individuals in need of a reliable Matrix presence. | ||||
| - Source: [github.com/spantaleev/matrix-docker-ansible-deploy](https://github.com/spantaleev/matrix-docker-ansible-deploy) | ||||
|  | ||||
| ## SearXNG | ||||
|  | ||||
| - Domain: [search.privacyguides.net](https://search.privacyguides.net) | ||||
| - Availability: Public | ||||
| - Source: [github.com/searxng/searxng-docker](https://github.com/searxng/searxng-docker) | ||||
|  | ||||
| ## Invidious | ||||
|  | ||||
| - Domain: [invidious.privacyguides.net](https://invidious.privacyguides.net) | ||||
| - Availability: Semi-Public   | ||||
| We host Invidious primarily to serve embedded YouTube videos on our website, this instance is not intended for general-purpose use and may be limited at any time. | ||||
| - Source: [github.com/iv-org/invidious](https://github.com/iv-org/invidious) | ||||
							
								
								
									
										60
									
								
								docs/about/statistics.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,60 @@ | ||||
| --- | ||||
| title: Traffic Statistics | ||||
| --- | ||||
| ## Website Statistics | ||||
|  | ||||
| <iframe plausible-embed src="https://stats.privacyguides.net/share/privacyguides.org?auth=IxTl2wRhi3uxF09rd1NSn&embed=true&theme=system&background=transparent" scrolling="no" frameborder="0" loading="lazy" style="width: 1px; min-width: 100%; height: 1600px;" id="plausibleFrame"></iframe> | ||||
| <div style="font-size: 14px; padding-bottom: 14px;">Stats powered by <a target="_blank" style="color: #4F46E5; text-decoration: underline;" href="https://plausible.io">Plausible Analytics</a></div> | ||||
| <script async src="https://stats.privacyguides.net/js/embed.host.js"></script> | ||||
|  | ||||
| <script> | ||||
|  | ||||
|     /* Set palette on initial load */ | ||||
|     var palette = __md_get("__palette") | ||||
|     if (palette && typeof palette.color === "object") { | ||||
|         var theme = palette.color.scheme === "slate" ? "dark" : "light" | ||||
|         document.getElementById('plausibleFrame').src = 'https://stats.privacyguides.net/share/privacyguides.org?auth=IxTl2wRhi3uxF09rd1NSn&embed=true&theme=' + theme + '&background=transparent'; | ||||
|     } | ||||
|  | ||||
|     /* Register event handlers after documented loaded */ | ||||
|     document.addEventListener("DOMContentLoaded", function() { | ||||
|         var ref = document.querySelector("[data-md-component=palette]") | ||||
|         ref.addEventListener("change", function() { | ||||
|         var palette = __md_get("__palette") | ||||
|         if (palette && typeof palette.color === "object") { | ||||
|             var theme = palette.color.scheme === "slate" ? "dark" : "light" | ||||
|  | ||||
|             document.getElementById('plausibleFrame').src = 'https://stats.privacyguides.net/share/privacyguides.org?auth=IxTl2wRhi3uxF09rd1NSn&embed=true&theme=' + theme + '&background=transparent'; | ||||
|         } | ||||
|         }) | ||||
|     }) | ||||
| </script> | ||||
|  | ||||
| ## Blog Statistics | ||||
|  | ||||
| <iframe plausible-embed src="https://stats.privacyguides.net/share/blog.privacyguides.org?auth=onWV76WWcsDifUqlaHEAg&embed=true&theme=system&background=transparent" scrolling="no" frameborder="0" loading="lazy" style="width: 1px; min-width: 100%; height: 1600px;" id="blogFrame"></iframe> | ||||
| <div style="font-size: 14px; padding-bottom: 14px;">Stats powered by <a target="_blank" style="color: #4F46E5; text-decoration: underline;" href="https://plausible.io">Plausible Analytics</a></div> | ||||
| <script async src="https://stats.privacyguides.net/js/embed.host.js"></script> | ||||
|  | ||||
| <script> | ||||
|  | ||||
|     /* Set palette on initial load */ | ||||
|     var palette = __md_get("__palette") | ||||
|     if (palette && typeof palette.color === "object") { | ||||
|         var theme = palette.color.scheme === "slate" ? "dark" : "light" | ||||
|         document.getElementById('blogFrame').src = 'https://stats.privacyguides.net/share/blog.privacyguides.org?auth=onWV76WWcsDifUqlaHEAg&embed=true&theme=' + theme + '&background=transparent'; | ||||
|     } | ||||
|  | ||||
|     /* Register event handlers after documented loaded */ | ||||
|     document.addEventListener("DOMContentLoaded", function() { | ||||
|         var ref = document.querySelector("[data-md-component=palette]") | ||||
|         ref.addEventListener("change", function() { | ||||
|         var palette = __md_get("__palette") | ||||
|         if (palette && typeof palette.color === "object") { | ||||
|             var theme = palette.color.scheme === "slate" ? "dark" : "light" | ||||
|  | ||||
|             document.getElementById('blogFrame').src = 'https://stats.privacyguides.net/share/blog.privacyguides.org?auth=onWV76WWcsDifUqlaHEAg&embed=true&theme=' + theme + '&background=transparent'; | ||||
|         } | ||||
|         }) | ||||
|     }) | ||||
| </script> | ||||
							
								
								
									
										102
									
								
								docs/advanced/communication-network-types.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,102 @@ | ||||
| --- | ||||
| title: "Types of Communication Networks" | ||||
| icon: 'material/transit-connection-variant' | ||||
| --- | ||||
|  | ||||
| There are several network architectures commonly used to relay messages between people. These networks can provide different privacy guarantees, which is why it's worth considering your [threat model](../basics/threat-modeling.md) when deciding which app to use. | ||||
|  | ||||
| [Recommended Instant Messengers](../real-time-communication.md){ .md-button } | ||||
|  | ||||
| ## Centralized Networks | ||||
|  | ||||
| { align=left } | ||||
|  | ||||
| Centralized messengers are those where all participants are on the same server or network of servers controlled by the same organization. | ||||
|  | ||||
| Some self-hosted messengers allow you to set up your own server. Self-hosting can provide additional privacy guarantees, such as no usage logs or limited access to metadata (data about who is talking to whom). Self-hosted centralized messengers are isolated and everyone must be on the same server to communicate. | ||||
|  | ||||
| **Advantages:** | ||||
|  | ||||
| - New features and changes can be implemented more quickly. | ||||
| - Easier to get started with and to find contacts. | ||||
| - Most mature and stable features ecosystems, as they are easier to program in a centralized software. | ||||
| - Privacy issues may be reduced when you trust a server that you're self-hosting. | ||||
|  | ||||
| **Disadvantages:** | ||||
|  | ||||
| - Can include [restricted control or access](https://drewdevault.com/2018/08/08/Signal.html). This can include things like: | ||||
| - Being [forbidden from connecting third-party clients](https://github.com/LibreSignal/LibreSignal/issues/37#issuecomment-217211165) to the centralized network that might provide for greater customization or a better experience. Often defined in Terms and Conditions of usage. | ||||
| - Poor or no documentation for third-party developers. | ||||
| - The [ownership](https://web.archive.org/web/20210729191953/https://blog.privacytools.io/delisting-wire/), privacy policy, and operations of the service can change easily when a single entity controls it, potentially compromising the service later on. | ||||
| - Self-hosting requires effort and knowledge of how to set up a service. | ||||
|  | ||||
| ## Federated Networks | ||||
|  | ||||
| { align=left } | ||||
|  | ||||
| Federated messengers use multiple, independent, decentralized servers that are able to talk to each other (email is one example of a federated service). Federation allows system administrators to control their own server and still be a part of the larger communications network. | ||||
|  | ||||
| When self-hosted, members of a federated server can discover and communicate with members of other servers, although some servers may choose to remain private by being non-federated (e.g., work team server). | ||||
|  | ||||
| **Advantages:** | ||||
|  | ||||
| - Allows for greater control over your own data when running your own server. | ||||
| - Allows you to choose whom to trust your data with by choosing between multiple "public" servers. | ||||
| - Often allows for third-party clients which can provide a more native, customized, or accessible experience. | ||||
| - Server software can be verified that it matches public source code, assuming you have access to the server or you trust the person who does (e.g., a family member). | ||||
|  | ||||
| **Disadvantages:** | ||||
|  | ||||
| - Adding new features is more complex because these features need to be standardized and tested to ensure they work with all servers on the network. | ||||
| - Due to the previous point, features can be lacking, or incomplete or working in unexpected ways compared to centralized platforms, such as message relay when offline or message deletion. | ||||
| - Some metadata may be available (e.g., information like "who is talking to whom," but not actual message content if E2EE is used). | ||||
| - Federated servers generally require trusting your server's administrator. They may be a hobbyist or otherwise not a "security professional," and may not serve standard documents like a privacy policy or terms of service detailing how your data is used. | ||||
| - Server administrators sometimes choose to block other servers, which are a source of unmoderated abuse or break general rules of accepted behavior. This will hinder your ability to communicate with members of those servers. | ||||
|  | ||||
| ## Peer-to-Peer Networks | ||||
|  | ||||
| { align=left } | ||||
|  | ||||
| P2P messengers connect to a [distributed network](https://en.wikipedia.org/wiki/Distributed_networking) of nodes to relay a message to the recipient without a third-party server. | ||||
|  | ||||
| Clients (peers) usually find each other through the use of a [distributed computing](https://en.wikipedia.org/wiki/Distributed_computing) network. Examples of this include [Distributed Hash Tables](https://en.wikipedia.org/wiki/Distributed_hash_table) (DHT), used by [torrents](https://en.wikipedia.org/wiki/BitTorrent_(protocol)) and [IPFS](https://en.wikipedia.org/wiki/InterPlanetary_File_System) for example. Another approach is proximity based networks, where a connection is established over WiFi or Bluetooth (for example, Briar or the [Scuttlebutt](https://www.scuttlebutt.nz) social network protocol). | ||||
|  | ||||
| Once a peer has found a route to its contact via any of these methods, a direct connection between them is made. Although messages are usually encrypted, an observer can still deduce the location and identity of the sender and recipient. | ||||
|  | ||||
| P2P networks do not use servers, as peers communicate directly between each other and hence cannot be self-hosted. However, some additional services may rely on centralized servers, such as user discovery or relaying offline messages, which can benefit from self-hosting. | ||||
|  | ||||
| **Advantages:** | ||||
|  | ||||
| - Minimal information is exposed to third-parties. | ||||
| - Modern P2P platforms implement E2EE by default. There are no servers that could potentially intercept and decrypt your transmissions, unlike centralized and federated models. | ||||
|  | ||||
| **Disadvantages:** | ||||
|  | ||||
| - Reduced feature set: | ||||
| - Messages can only be sent when both peers are online, however, your client may store messages locally to wait for the contact to return online. | ||||
| - Generally increases battery usage on mobile devices, because the client must stay connected to the distributed network to learn about who is online. | ||||
| - Some common messenger features may not be implemented or incompletely, such as message deletion. | ||||
| - Your IP address and that of the contacts you're communicating with may be exposed if you do not use the software in conjunction with a [VPN](../vpn.md) or [Tor](../tor.md). Many countries have some form of mass surveillance and/or metadata retention. | ||||
|  | ||||
| ## Anonymous Routing | ||||
|  | ||||
| { align=left } | ||||
|  | ||||
| A messenger using [anonymous routing](https://doi.org/10.1007/978-1-4419-5906-5_628) hides either the identity of the sender, the receiver, or evidence that they have been communicating. Ideally, a messenger should hide all three. | ||||
|  | ||||
| There are [many](https://doi.org/10.1145/3182658) different ways to implement anonymous routing. One of the most famous is [onion routing](https://en.wikipedia.org/wiki/Onion_routing) (i.e. [Tor](tor-overview.md)), which communicates encrypted messages through a virtual [overlay network](https://en.wikipedia.org/wiki/Overlay_network) that hides the location of each node as well as the recipient and sender of each message. The sender and recipient never interact directly and only meet through a secret rendezvous node so that there is no leak of IP addresses nor physical location. Nodes cannot decrypt messages, nor the final destination; only the recipient can. Each intermediary node can only decrypt a part that indicates where to send the still encrypted message next, until it arrives at the recipient who can fully decrypt it, hence the "onion layers." | ||||
|  | ||||
| Self-hosting a node in an anonymous routing network does not provide the hoster with additional privacy benefits, but rather contributes to the whole network's resilience against identification attacks for everyone's benefit. | ||||
|  | ||||
| **Advantages:** | ||||
|  | ||||
| - Minimal to no information is exposed to other parties. | ||||
| - Messages can be relayed in a decentralized manner even if one of the parties is offline. | ||||
|  | ||||
| **Disadvantages:** | ||||
|  | ||||
| - Slow message propagation. | ||||
| - Often limited to fewer media types, mostly text, since the network is slow. | ||||
| - Less reliable if nodes are selected by randomized routing, some nodes may be very far from the sender and receiver, adding latency or even failing to transmit messages if one of the nodes goes offline. | ||||
| - More complex to get started, as the creation and secured backup of a cryptographic private key is required. | ||||
| - Just like other decentralized platforms, adding features is more complex for developers than on a centralized platform. Hence, features may be lacking or incompletely implemented, such as offline message relaying or message deletion. | ||||
| @@ -1,5 +1,5 @@ | ||||
| --- | ||||
| title: "Introduction to DNS" | ||||
| title: "DNS Overview" | ||||
| icon: material/dns | ||||
| --- | ||||
| 
 | ||||
| @@ -79,7 +79,7 @@ Encrypted DNS can refer to one of a number of protocols, the most common ones be | ||||
| 
 | ||||
| [**DNS over HTTPS**](https://en.wikipedia.org/wiki/DNS_over_HTTPS) as defined in [RFC 8484](https://datatracker.ietf.org/doc/html/rfc8484) packages queries in the [HTTP/2](https://en.wikipedia.org/wiki/HTTP/2) protocol and provides security with HTTPS. Support was first added in web browsers such as Firefox 60 and Chrome 83. | ||||
| 
 | ||||
| Native implementation of DoH showed up in iOS 14, macOS 11, Microsoft Windows, and Android 13 (however, it won't be enabled [by default](https://android-review.googlesource.com/c/platform/packages/modules/DnsResolver/+/1833144)). General Linux desktop support is waiting on the systemd [implementation](https://github.com/systemd/systemd/issues/8639) so [installing third-party software is still required](../dns.md#linux). | ||||
| Native implementation of DoH showed up in iOS 14, macOS 11, Microsoft Windows, and Android 13 (however, it won't be enabled [by default](https://android-review.googlesource.com/c/platform/packages/modules/DnsResolver/+/1833144)). General Linux desktop support is waiting on the systemd [implementation](https://github.com/systemd/systemd/issues/8639) so [installing third-party software is still required](../dns.md#encrypted-dns-proxies). | ||||
| 
 | ||||
| ## What can an outside party see? | ||||
| 
 | ||||
| @@ -109,7 +109,7 @@ We can see the [connection establishment](https://en.wikipedia.org/wiki/Transmis | ||||
| 
 | ||||
| ## Why **shouldn't** I use encrypted DNS? | ||||
| 
 | ||||
| In locations where there is internet filtering (or censorship), visiting forbidden resources may have its own consequences which you should consider in your [threat model](threat-modeling.md). We do **not** suggest the use of encrypted DNS for this purpose. Use [Tor](https://torproject.org) or a [VPN](../vpn.md) instead. If you're using a VPN, you should use your VPN's DNS servers. When using a VPN, you are already trusting them with all your network activity. | ||||
| In locations where there is internet filtering (or censorship), visiting forbidden resources may have its own consequences which you should consider in your [threat model](../basics/threat-modeling.md). We do **not** suggest the use of encrypted DNS for this purpose. Use [Tor](https://torproject.org) or a [VPN](../vpn.md) instead. If you're using a VPN, you should use your VPN's DNS servers. When using a VPN, you are already trusting them with all your network activity. | ||||
| 
 | ||||
| When we do a DNS lookup, it's generally because we want to access a resource. Below, we will discuss some of the methods that may disclose your browsing activities even when using encrypted DNS: | ||||
| 
 | ||||
| @@ -304,5 +304,3 @@ The [EDNS Client Subnet](https://en.wikipedia.org/wiki/EDNS_Client_Subnet) is a | ||||
| It's intended to "speed up" delivery of data by giving the client an answer that belongs to a server that is close to them such as a [content delivery network](https://en.wikipedia.org/wiki/Content_delivery_network), which are often used in video streaming and serving JavaScript web apps. | ||||
| 
 | ||||
| This feature does come at a privacy cost, as it tells the DNS server some information about the client's location. | ||||
| 
 | ||||
| --8<-- "includes/abbreviations.en.md" | ||||
| @@ -1,38 +0,0 @@ | ||||
| --- | ||||
| title: "Secure Data Erasure" | ||||
| icon: 'material/harddisk-remove' | ||||
| --- | ||||
| **Erasing data** from your computer may seem like a simple task, but if you want to make sure the data is truly unrecoverable, there are some things you should consider. | ||||
|  | ||||
| !!! tip | ||||
|     You should use [full disk encryption](../encryption.md#os-full-disk-encryption) on your storage devices. If your device is stolen or needs to be returned under warranty your privacy may be at risk. | ||||
|  | ||||
| To erase a storage device **thoroughly**, you should securely erase the whole device and not individual files. | ||||
|  | ||||
| ## Erasing Your Entire Drive | ||||
|  | ||||
| When you delete a file, the operating system marks the space where the deleted file was as "empty." That "empty" space can be fairly easily undeleted, yielding the original file. | ||||
|  | ||||
| ### Magnetic storage | ||||
|  | ||||
| If the disk is a magnetic storage device, such as a spinning hard disk, we suggest using [`nwipe`](https://en.wikipedia.org/wiki/Nwipe). `nwipe` can be installed in most Linux distributions. If you wish to use a complete boot environment on a system, consider using [ShredOS Disk Eraser](https://github.com/PartialVolume/shredos.x86_64). ShredOS boots straight into `nwipe` and allows you to erase available disks. To install it to a flash USB stick see the [installation methods](https://github.com/PartialVolume/shredos.x86_64/blob/master/README.md#obtaining-and-writing-shredos-to-a-usb-flash-drive-the-easy-way-). | ||||
|  | ||||
| Once you have your boot media, enter your system's UEFI settings and boot from the USB stick. Commonly used keys to access UEFI are ++f2++, ++f12++, or ++del++. Follow the on-screen prompts to wipe your data. | ||||
|  | ||||
|  | ||||
|  | ||||
| ### Flash Storage | ||||
|  | ||||
| For [flash memory](https://en.wikipedia.org/wiki/Flash_memory) (SSD, NVMe, etc) devices we suggest the ATA Secure Erase command. Methods such as `nwipe` should not be used on flash storage devices as it may damage their performance. The "Secure Erase" feature is often accessible through the UEFI setup menu. | ||||
|  | ||||
| It is also possible to complete a Secure Erase using the [`hdparm`](https://ata.wiki.kernel.org/index.php/ATA_Secure_Erase) command, or [Microsoft Secure Group Commands](https://docs.microsoft.com/en-us/windows-hardware/drivers/storage/security-group-commands). | ||||
|  | ||||
| Physical destruction may be necessary to securely erase devices such as memory cards, USB sticks and unusable hard disks. | ||||
|  | ||||
| ## Erasing Specific Files | ||||
|  | ||||
| Securely shredding **individual files** is difficult if not impossible. Copies can exist in a variety of ways such as through manual, or automatic backups, [wear leveling](https://en.wikipedia.org/wiki/Wear_leveling) (on modern [flash storage](https://en.wikipedia.org/wiki/Solid-state_drive)), caching and filesystem [journaling](https://en.wikipedia.org/wiki/Journaling_file_system). | ||||
|  | ||||
| Wear leveled devices do not guarantee a fixed relationship between [logical blocks addressed](https://en.wikipedia.org/wiki/Logical_block_addressing) through the interface. This means that the physical locations in which the data is stored may be different to where it is actually located, so shredding may not provide adequate security. | ||||
|  | ||||
| --8<-- "includes/abbreviations.en.md" | ||||
| @@ -1,164 +0,0 @@ | ||||
| --- | ||||
| title: "Integrating Metadata Removal" | ||||
| icon: 'material/data-matrix-remove' | ||||
| --- | ||||
|  | ||||
| When sharing files, it's important to remove associated metadata. Image files commonly include [Exif](https://en.wikipedia.org/wiki/Exif) data, and sometimes photos even include GPS coordinates within its metadata. | ||||
|  | ||||
| While there are plenty of metadata removal tools, they typically aren't convenient to use. The guides featured here aim to detail how to integrate metadata removal tools in a simple fashion by utilizing easy-to-access system features. | ||||
|  | ||||
| - [Recommended metadata removal tools :hero-arrow-circle-right-fill:](../metadata-removal-tools.md) | ||||
|  | ||||
| ## macOS | ||||
|  | ||||
| This guide uses the [Shortcuts](https://support.apple.com/guide/shortcuts-mac/intro-to-shortcuts-apdf22b0444c/mac) app to add an [ExifTool](../metadata-removal-tools.md#exiftool) script to the *Quick Actions* context menu within Finder. Shortcuts is developed by Apple and bundled in with macOS by default. | ||||
|  | ||||
| Shortcuts is quite intuitive to work with, so if you don't like the behavior demoed here then experiment with your own solution. For example, you could set the shortcut to take a clipboard input instead. The sky's the limit. | ||||
|  | ||||
|  | ||||
|  | ||||
| ### Prerequisites | ||||
|  | ||||
| 1. [Homebrew](https://brew.sh): a package manager. | ||||
|  | ||||
|     ```bash | ||||
|     /bin/bash -c "$(curl -fsSL https://raw.githubusercontent.com/Homebrew/install/HEAD/install.sh)" | ||||
|     ``` | ||||
|  | ||||
| 2. ExifTool is a tool for viewing and manipulating image, audio, video, and PDF metadata. | ||||
|  | ||||
|     ```bash | ||||
|     brew install exiftool | ||||
|     ``` | ||||
|  | ||||
| !!! note | ||||
|     You can check if ExifTool is installed by running `exiftool -ver`. You should see a version number. | ||||
|  | ||||
| ### Creating the Shortcut | ||||
|  | ||||
| 1. Open **Shortcuts.app** and create a new shortcut | ||||
|  | ||||
| 2. In the shortcut's options, check **Use as Quick Action** and **Finder** | ||||
|  | ||||
| 3. Set up the retrieval options: | ||||
|  | ||||
|     - Receive **Images, Media, and PDFs** input from **Quick Actions** | ||||
|     - If there is no input select **Continue** | ||||
|  | ||||
| 4. Add the **Run Shell Script** action to the shortcut. You may need to enable **Allow Running Scripts** in Shortcut.app's settings | ||||
|  | ||||
| 5. Set up the shell script action: | ||||
|      - Select **zsh** from the shell list | ||||
|      - Set the input to **Shortcut Input** | ||||
|      - Select **as arguments** for the pass input | ||||
|      - Leave **Run as administrator** unchecked | ||||
|  | ||||
| 6. Use the following as the body of the script: | ||||
|  | ||||
|     ```bash | ||||
|     for f in "$@" | ||||
|     do | ||||
|         exiftool -all= "$f"; | ||||
|     done | ||||
|     ``` | ||||
|  | ||||
|  | ||||
|  | ||||
| !!! tip "Worth Mentioning" | ||||
|     The open-source [ImageOptim](https://imageoptim.com/mac) app integrates into Finder's *Services* context menu by default. While it is primarily an image optimization app, it also removes metadata. | ||||
|  | ||||
| ### Enabling & using the Shortcut | ||||
|  | ||||
| 1. The shortcut will be accessible through **Quick Actions** context menu within Finder. | ||||
|  | ||||
| 2. If you want to reposition the shortcut within the context menu, go to:<br> | ||||
|    **System Preferences** → **Extensions** → **Finder and drag the shortcut's position**. | ||||
|  | ||||
| ## iOS and iPadOS | ||||
|  | ||||
| [Shortcuts](https://support.apple.com/guide/shortcuts/welcome/ios) can be made accessible through the system Share Sheet, making accessing those shortcuts very convenient. This guide will show you how to build a metadata removal shortcut and integrate it into the system *Share Sheet*. | ||||
|  | ||||
| !!! warning | ||||
|     This method of metadata removal is not as comprehensive at removing metadata as utilities like [ExifTool](../metadata-removal-tools.md#exiftool) and [mat2](../metadata-removal-tools.md#mat2) are. | ||||
|  | ||||
| The lack of *good* metadata removal apps on the App Store is what makes this solution worthwhile. | ||||
|  | ||||
|  | ||||
|  | ||||
| ### Prerequisites | ||||
|  | ||||
| 1. [Shortcuts](https://apps.apple.com/us/app/shortcuts/id915249334) via the App Store. | ||||
|  | ||||
| ### Creating the Shortcut | ||||
|  | ||||
| 1. Create a new Shortcut | ||||
|  | ||||
| 2. Enter the Shortcut's settings and check **Show in Share Sheet** | ||||
|  | ||||
| 3. Add a **Receive** action and set it to receive **Images** from **Share Sheet** | ||||
|  | ||||
| 4. Add an **If** action | ||||
|  | ||||
| 5. Set the **If** action to **Shortcut Input** and **has any value** | ||||
|  | ||||
| 6. Add an **Otherwise** action | ||||
|  | ||||
| 7. Add an **End If** action | ||||
|  | ||||
| 8. Add a **Convert** action and set it to **If Result** and **Match Input** | ||||
|  | ||||
| 9. Finally, add a **Share** action and set that to **Converted Image** | ||||
|  | ||||
| 10. Make sure that you uncheck **preserve metadata** | ||||
|  | ||||
|  | ||||
|  | ||||
| ### Enabling & using the Shortcut | ||||
|  | ||||
| 1. The shortcut should be available through the system Share Sheet. If it is not, then a device restart may be required. | ||||
| 2. Optionally, you can add the shortcut to your home screen. | ||||
|  | ||||
| ## Windows | ||||
|  | ||||
| Windows allows you to place files in a **SendTo** folder which then appear in the *Send to* context menu. This guide will show you how to add an [ExifTool](../metadata-removal-tools.md#exiftool) batch script to this menu. | ||||
|  | ||||
|  | ||||
|  | ||||
| ### Prerequisites | ||||
|  | ||||
| 1. ExifTool is a tool for viewing and manipulating image, audio, video, and PDF metadata. We suggest you read the [Installation instructions](https://exiftool.org/install.html#Windows) on the official website. | ||||
|  | ||||
| !!! note | ||||
|     You can check if ExifTool is present in your [PATH](https://www.computerhope.com/issues/ch000549.htm) by running `exiftool -ver` in Command Prompt. You should see a version number. | ||||
|  | ||||
| ### Creating the shortcut | ||||
|  | ||||
| 1. Navigate to `%appdata%\Microsoft\Windows\SendTo` | ||||
|  | ||||
| 2. Right click in the **SendTo** folder and create a new **Text Document** | ||||
|  | ||||
| 3. Name the file `ExifTool.bat` (any name works, however it must end in `.bat`) | ||||
|  | ||||
|     !!! note | ||||
|         You may need to check if [file name extensions](https://support.microsoft.com/en-us/windows/common-file-name-extensions-in-windows-da4a4430-8e76-89c5-59f7-1cdbbc75cb01) are enabled. | ||||
|  | ||||
| 4. Open **ExifTool.bat** in Notepad | ||||
|  | ||||
| 5. Copy the following into the document: | ||||
|  | ||||
|     ```bat | ||||
|     exiftool -fast4 -if "$filepermissions =~ /^.w/" %* | ||||
|     if not errorlevel 0 ( | ||||
|         echo Some files are write protected | ||||
|         exit /b %errorlevel% | ||||
|     ) | ||||
|     exiftool -all= %* | ||||
|     ``` | ||||
|  | ||||
| 6. Save | ||||
|  | ||||
| ### Using the shortcut | ||||
|  | ||||
| 1. Right click a supported file and choose **ExifTool.bat** within the *Send to* context menu. | ||||
|  | ||||
| --8<-- "includes/abbreviations.en.md" | ||||
							
								
								
									
										83
									
								
								docs/advanced/payments.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,83 @@ | ||||
| --- | ||||
| title: Private Payments | ||||
| icon: material/hand-coin | ||||
| --- | ||||
| There's a reason data about your buying habits is considered the holy grail of ad targeting: your purchases can leak a veritable treasure trove of data about you. Unfortunately, the current financial system is anti-privacy by design, enabling banks, other companies, and governments to easily trace transactions. Nevertheless, you have plenty of options when it comes to making payments privately. | ||||
|  | ||||
| ## Cash | ||||
|  | ||||
| For centuries, **cash** has functioned as the primary form of private payment. Cash has excellent privacy properties in most cases, is widely accepted in most countries, and is **fungible**, meaning it is non-unique and completely interchangable. | ||||
|  | ||||
| Cash payment laws vary by country. In the United States, special disclosure is required for cash payments over $10,000 to the IRS on [Form 8300](https://www.irs.gov/businesses/small-businesses-self-employed/form-8300-and-reporting-cash-payments-of-over-10000). The receiving business is required to ID verify the payee’s name, address, occupation, date of birth, and Social Security Number or other TIN (with some exceptions). Lower limits without ID such as $3,000 or less exist for exchanges and money transmission. Cash also contains serial numbers. These are almost never tracked by merchants, but they can be used by law enforcement in targeted investigations. | ||||
|  | ||||
| Despite this, it’s typically the best option. | ||||
|  | ||||
| ## Prepaid Cards & Gift Cards | ||||
|  | ||||
| It’s relatively simple to purchase gift cards and prepaid cards at most grocery stores and convenience stores with cash. Gift cards usually don’t have a fee, though prepaid cards often do, so pay close attention to these fees and expiry dates. Some stores may ask to see your ID at checkout to reduce fraud. | ||||
|  | ||||
| Gift cards usually have limits of up to $200 per card, but some offer limits of up to $2,000 per card. Prepaid cards (eg: from Visa or Mastercard) usually have limits of up to $1,000 per card. | ||||
|  | ||||
| Gift cards have the downside of being subject to merchant policies, which can have terrible terms and restrictions. For example, some merchants don’t accept payment in gift cards exclusively, or they may cancel the value of the card if they consider you to be a high-risk user. Once you have merchant credit, the merchant has a strong degree of control over this credit. | ||||
|  | ||||
| Prepaid cards don’t allow cash withdrawals from ATMs or “peer-to-peer” payments in Venmo and similar apps. | ||||
|  | ||||
| Cash remains the best option for in-person purchases for most people. Gift cards can be useful for the savings they bring. Prepaid cards can be useful for places that don’t accept cash. Gift cards and prepaid cards are easier to use online than cash, and they are easier to acquire with cryptocurrencies than cash. | ||||
|  | ||||
| ### Online Marketplaces | ||||
|  | ||||
| If you have [cryptocurrency](../cryptocurrency.md), you can purchase gift cards with an online gift card marketplace. Some of these services offer ID verification options for higher limits, but they also allow accounts with just an email address. Basic limits start at $5,000-10,000 a day for basic accounts, and significantly higher limits for ID verified accounts (if offered). | ||||
|  | ||||
| When buying gift cards online, there is usually a slight discount. Prepaid cards are usually sold online at face value or with a fee. If you buy prepaid cards and gift cards with cryptocurrencies, you should strongly prefer to pay with Monero which provides strong privacy, more on this below. Paying for a gift card with a traceable payment method negates the benefits a gift card can provide when purchased with cash or Monero. | ||||
|  | ||||
| - [Online Gift Card Marketplaces :material-arrow-right-drop-circle:](../financial-services.md#gift-card-marketplaces) | ||||
|  | ||||
| ## Virtual Cards | ||||
|  | ||||
| Another way to protect your information from merchants online is to use virtual, single-use cards which mask your actual banking or billing information. This is primarily useful for protecting you from merchant data breaches, less sophisticated tracking or purchase correlation by marketing agencies, and online data theft. They do **not** assist you in making a purchase completely anonymously, nor do they hide any information from the banking institution themselves. Regular financial institutions which offer virtual cards are subject to "Know Your Customer" (KYC) laws, meaning they may require your ID or other identifying information. | ||||
|  | ||||
| - [Recommended Payment Masking Services :material-arrow-right-drop-circle:](../financial-services.md#payment-masking-services) | ||||
|  | ||||
| These tend to be good options for recurring/subscription payments online, while prepaid gift cards are preferred for one-time transactions. | ||||
|  | ||||
| ## Cryptocurrency | ||||
|  | ||||
| Cryptocurrencies are a digital form of currency designed to work without central authorities such as a government or bank. While *some* cryptocurrency projects can allow you to make private transactions online, many use a public blockchain which does not provide any transaction privacy. Cryptocurrencies also tend to be very volatile assets, meaning their value can change rapidly and significantly at any time. As such, we generally don't recommend using cryptocurrency as a long-term store of value. If you decide to use cryptocurrency online, make sure you have a full understanding of its privacy aspects beforehand, and only invest amounts which would not be disastrous to lose. | ||||
|  | ||||
| !!! danger | ||||
|  | ||||
|     The vast majority of cryptocurrencies operate on a **public** blockchain, meaning that every transaction is public knowledge. This includes even most well-known cryptocurrencies like Bitcoin and Ethereum. Transactions with these cryptocurrencies should not be considered private and will not protect your anonymity. | ||||
|  | ||||
|     Additionally, many if not most cryptocurrencies are scams. Make transactions carefully with only projects you trust. | ||||
|  | ||||
| ### Privacy Coins | ||||
|  | ||||
| There are a number of cryptocurrency projects which purport to provide privacy by making transactions anonymous. We recommend using one which provides transaction anonymity **by default** to avoid operational errors. | ||||
|  | ||||
| - [Recommended Cryptocurrency :material-arrow-right-drop-circle:](../cryptocurrency.md#coins) | ||||
|  | ||||
| Privacy coins have been subject to increasing scrutiny by government agencies. In 2020, [the IRS published a $625,000 bounty](https://www.forbes.com/sites/kellyphillipserb/2020/09/14/irs-will-pay-up-to-625000-if-you-can-crack-monero-other-privacy-coins/?sh=2e9808a085cc) for tools which can break Bitcoin Lightning Network and/or Monero's transaction privacy. They ultimately [paid two companies](https://sam.gov/opp/5ab94eae1a8d422e88945b64181c6018/view) (Chainalysis and Integra Fec) a combined $1.25 million for tools which purport to do so (it is unknown which cryptocurrency network these tools target). Due to the secrecy surrounding tools like these, ==none of these methods of tracing cryptocurrencies have been independently confirmed.== It is quite likely that tools which assist targeted investigations into private coin transactions exist, and that privacy coins only succeed in thwarting mass surveillance. | ||||
|  | ||||
| ### Other Coins (Bitcoin, Ethereum, etc.) | ||||
|  | ||||
| The vast majority of cryptocurrency projects use a public blockchain, meaning that all transactions are both easily traceable and permanent. As such, we strongly discourage the use of most cryptocurrency for privacy-related reasons. | ||||
|  | ||||
| Anonymous transactions on a public blockchain are *theoretically* possible, and the Bitcoin wiki [gives one example of a "completely anonymous" transaction](https://en.bitcoin.it/wiki/Privacy#Example_-_A_perfectly_private_donation). However, doing so requires a complicated setup involving Tor and "solo-mining" a block to generate completely independent cryptocurrency, a practice which has not been practical for nearly any enthusiast for many years. | ||||
|  | ||||
| ==Your best option is to avoid these cryptocurrencies entirely and stick with one which provides privacy by default.== Attempting to use other cryptocurrency is outside the scope of this site and strongly discouraged. | ||||
|  | ||||
| ### Wallet Custody | ||||
|  | ||||
| With cryptocurrency there are two forms of wallets: custodial wallets and noncustodial wallets. Custodial wallets are operated by centralized companies/exchanges, where the private key for your wallet is held by that company, and you can access them anywhere typically with a regular username and password. Noncustodial wallets are wallets where you control and manage the private keys to access it. Assuming you keep your wallet's private keys secured and backed up, noncustodial wallets provide greater security and censorship-resistance over custodial wallets, because your cryptocurrency can't be stolen or frozen by a company with custody over your private keys. Key custody is especially important when it comes to privacy coins: Custodial wallets grant the operating company the ability to view your transactions, negating the privacy benefits of those cryptocurrencies. | ||||
|  | ||||
| ### Acquisition | ||||
|  | ||||
| Acquiring [cryptocurrencies](../cryptocurrency.md) like Monero privately can be difficult. P2P marketplaces like [LocalMonero](https://localmonero.co/), a platform which facilitates trades between people, are one option that can be used. If using an exchange which requires KYC is an acceptable risk for you as long as subsequent transactions can't be traced, a much easier option is to purchase Monero on an exchange like [Kraken](https://kraken.com/), or purchase Bitcoin/Litecoin from a KYC exchange which can then be swapped for Monero. Then, you can withdraw the purchased Monero to your own noncustodial wallet to use privately from that point forward. | ||||
|  | ||||
| If you go this route, make sure to purchase Monero at different times and in different amounts than where you will spend it. If you purchase $5000 of Monero at an exchange and make a $5000 purchase in Monero an hour later, those actions could potentially be correlated by an outside observer regardless of which path the Monero took. Staggering purchases and purchasing larger amounts of Monero in advance to later spend on multiple smaller transactions can avoid this pitfall. | ||||
|  | ||||
| ## Additional Considerations | ||||
|  | ||||
| When you're making a payment in-person with cash, make sure to keep your in-person privacy in mind. Security cameras are ubiquitous. Consider wearing non-distinct clothing and a face mask (such as a surgical mask or N95). Don’t sign up for rewards programs or provide any other information about yourself. | ||||
|  | ||||
| When purchasing online, ideally you should do so over [Tor](tor-overview.md). However, many merchants don’t allow purchases with Tor. You can consider using a [recommended VPN](../vpn.md) (paid for with cash, gift card, or Monero), or making the purchase from a coffee shop or library with free Wi-Fi. If you are ordering a physical item that needs to be delivered, you will need to provide a delivery address. You should consider using a PO box, private mailbox, or work address. | ||||
| @@ -1,260 +0,0 @@ | ||||
| --- | ||||
| title: "Signal Configuration and Hardening" | ||||
| icon: 'material/chat-processing' | ||||
| --- | ||||
|  | ||||
| [Signal](../real-time-communication.md#signal) is a widely regarded instant messaging service that is not only easy to use but is also private and secure. Signal's strong E2EE implementation and metadata protections provide a level of assurance that only you and your intended recipients are able to read communications. | ||||
|  | ||||
| This guide details actions you can take to configure and harden Signal in accordance with your [threat model](../basics/threat-modeling.md). | ||||
|  | ||||
| ## Signal Configuration | ||||
|  | ||||
| ### Signal PIN | ||||
|  | ||||
| When you register for Signal with your phone number, you will be asked to set up a Signal PIN. This PIN can be used to recover your profile, settings, contacts and who you've blocked in case you ever lose or switch devices. | ||||
|  | ||||
| Additionally, your Signal PIN can also double as a registration lock that prevents others from registering with your number. | ||||
|  | ||||
| !!! attention "Registration Lock" | ||||
|  | ||||
|     The server will not enforce the registration lock after 7 days of inactivity. After that, someone will be able to reset the PIN at registration and register with your phone number. This will wipe the data stored in your Signal account, as it is encrypted by the PIN, but it won't prevent someone from registering with your number provided that they can receive a text on it. | ||||
|  | ||||
| If you haven't set up a Signal PIN, or have previously opted out of setting one up, follow these steps on Android/iOS: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Account** > **Signal PIN** | ||||
| - Select **Create new PIN** | ||||
|  | ||||
| Signal will prompt you to enter a PIN. We suggest using a strong alphanumeric PIN that can be stored in a [password manager](../passwords.md). | ||||
|  | ||||
| Once you have done that, or if you already have set up a PIN, make sure that **Registration Lock** is also enabled. | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Account** > **Signal PIN** | ||||
| - [x] Turn on **Registration Lock** | ||||
|  | ||||
| !!! Important | ||||
|  | ||||
|     If you forget the PIN and have enabled a registration lock, you may be locked out of your account for up to 7 days. | ||||
|  | ||||
| You can learn more about Signal PIN on [Signal's website](https://support.signal.org/hc/en-us/articles/360007059792-Signal-PIN). | ||||
|  | ||||
| ### Safety Numbers | ||||
|  | ||||
| Safety numbers are a feature in Signal that allows you to ensure that messages are delivered securely between verified devices. | ||||
|  | ||||
| It is best practice to always compare safety numbers with your contacts. This can be done in a couple of ways: | ||||
|  | ||||
| - Scanning your contact's QR code while viewing their safety number. | ||||
| - Comparing the safety numbers on both ends, be it visually or audibly. | ||||
|  | ||||
| !!! Important | ||||
|  | ||||
|     In order for safety numbers to also verify that the intended recipient has access to the device you're verifying, you need a secondary communication channel where you can authenticate the person that is holding the device. For example, an in-person meeting or during a video call. | ||||
|  | ||||
| To view the safety number for a particular contact, you need to follow these steps within Signal: | ||||
|  | ||||
| - Go to a chat with a contact. | ||||
| - Select the chat header or :material-dots-vertical: > **View Safety Number** | ||||
|  | ||||
| Once you've compared the safety numbers on both devices, you can mark that contact as **Verified**. | ||||
|  | ||||
| A checkmark will appear in the chat header by your contact's name when the safety number is marked as verified. It will remain verified unless the safety number changes or you manually change the verification status. | ||||
|  | ||||
| After doing that, any time the safety number changes, you'll be notified. | ||||
|  | ||||
| If the safety number with one of your contacts changes, we recommend asking the contact what happened (if they switched to a new device or re-installed Signal, for example) and verify the safety numbers again. | ||||
|  | ||||
| For more demanding threat models, you should agree on a protocol with your contacts in advance on what to do in case the safety number ever changes. | ||||
|  | ||||
| You can learn more about safety numbers on [Signal's website](https://support.signal.org/hc/en-us/articles/360007060632-What-is-a-safety-number-and-why-do-I-see-that-it-changed-). | ||||
|  | ||||
| ### Disappearing Messages | ||||
|  | ||||
| While communication in Signal is E2EE, the messages are still available on the devices, unless they are manually deleted. | ||||
|  | ||||
| It is good practice to set up disappearing messages in Signal's settings so that any chats you start will disappear after a specified amount of time has passed. | ||||
|  | ||||
| On Android/iOS: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Privacy** | ||||
| - Under **Disappearing messages**, select **Default timer for new chats** | ||||
| - Select the desired amount of time and select **Save** | ||||
|  | ||||
| !!! tip "Override the global default for specific contacts" | ||||
|  | ||||
|     - Go to a chat with a contact | ||||
|     - Select :material-dots-vertical: on the top right | ||||
|     - Select **Disappearing messages** | ||||
|     - Select the desired amount of time and select **Save** | ||||
|  | ||||
| We recommend setting up a reasonable timer by default, such as one week, and adjusting it per contact as you see fit. | ||||
|  | ||||
| !!! tip "Snapchat-like Functionality" | ||||
|  | ||||
|     Signal allows you to send "view-once" media that are automatically removed from the conversation after they have been viewed. | ||||
|  | ||||
| ### Disable Link Previews | ||||
|  | ||||
| Signal offers the ability to retrieve previews of webpages linked within a conversation. | ||||
|  | ||||
| This means that when you send a link, a request will be sent to that website so that a preview of the website can be displayed alongside the link. Thus, we recommend disabling link previews. | ||||
|  | ||||
| Your recipient doesn't make any requests unless they open the link on their end. | ||||
|  | ||||
| On Android/iOS: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Chats** | ||||
| - [ ] Turn off **Generate link previews** | ||||
|  | ||||
| ### Screen Security | ||||
|  | ||||
| Signal allows you to prevent a preview of the app being shown (i.e., in the app switcher) unless you explicitly open it. | ||||
|  | ||||
| On Android: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Privacy** | ||||
| - [x] Turn on **Screen Security** | ||||
|  | ||||
| On iOS: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Privacy** | ||||
| - [x] Turn on **Hide Screen in App Switcher** | ||||
|  | ||||
| ### Screen Lock | ||||
|  | ||||
| If someone gets a hold of your device while it is unlocked, you run the risk of them being able to open the Signal app and look at your conversations. | ||||
|  | ||||
| To mitigate this, you can leverage the Screen Lock option to require additional authentication before Signal can be accessed. | ||||
|  | ||||
| On Android/iOS: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Privacy** | ||||
| - [x] Turn on **Screen Lock** | ||||
|  | ||||
| ### Notification Privacy | ||||
|  | ||||
| Even when your phone is locked, anyone who can lay eyes on the device can read messages and sender names from your lock screen. | ||||
|  | ||||
| On Signal, you have the ability to hide message content and sender name, or just the message content itself. | ||||
|  | ||||
| On Android: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Notifications** | ||||
| - Select **Show** | ||||
| - Select **No name or message** or **Name only** respectively. | ||||
|  | ||||
| On iOS: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Notifications** | ||||
| - Select **Show** | ||||
| - Select **No name or Content** or **Name Only** respectively. | ||||
|  | ||||
| ### Call Relaying | ||||
|  | ||||
| Signal allows you to relay all calls (including video calls) through the Signal server to avoid revealing your IP address to your contact. This may reduce call quality. | ||||
|  | ||||
| On Android/iOS: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Privacy** > **Advanced** | ||||
| - [x] Turn on **Always Relay Calls** | ||||
|  | ||||
| For incoming calls from people who are not in your Contacts app, the call will be relayed through the Signal server regardless of how you've set it up. | ||||
|  | ||||
| ### Proxy Support | ||||
|  | ||||
| If Signal is blocked in your country, Signal allows you to set up a proxy to bypass it. | ||||
|  | ||||
| !!! Warning | ||||
|  | ||||
|     All traffic remains opaque to the proxy operator. However, the censoring party could learn that you are using Signal through a proxy because the app [fails to route all the IP connections to the proxy](https://community.signalusers.org/t/traffic-not-routed-to-tls-proxies-can-expose-users-to-censors/27479). | ||||
|  | ||||
| You can learn more about Signal's proxy support on their [website](https://support.signal.org/hc/en-us/articles/360056052052-Proxy-Support). | ||||
|  | ||||
| ### Keep Your Signal Call History off iCloud (iOS only) | ||||
|  | ||||
| Signal allows you to see your call history from your regular phone app. This allows your iOS device to sync your call history with iCloud, including who you spoke to, when, and for how long. | ||||
|  | ||||
| If you use iCloud and you don’t want to share call history on Signal, confirm it’s turned off: | ||||
|  | ||||
| - Select :material-dots-vertical: **Settings** > **Privacy** | ||||
| - [ ] Turn off **Show Calls in Recents** | ||||
|  | ||||
| ## Signal Hardening | ||||
|  | ||||
| ### Avoid Linking Your Signal Account to a Desktop Device | ||||
|  | ||||
| While it may be tempting to link your Signal account to your desktop device for convenience, keep in mind that this extends your trust to an additional and potentially less secure operating system. | ||||
|  | ||||
| If your threat model calls for it, avoid linking your Signal account to a desktop device to reduce your attack surface. | ||||
|  | ||||
| ### Endpoint Security | ||||
|  | ||||
| Signal takes security very seriously, however there is only so much an app can do to protect you. | ||||
|  | ||||
| It is very important to take device security on both ends into account to ensure that your conversations are kept private. | ||||
|  | ||||
| We recommend an up-to-date [GrapheneOS](/android/#grapheneos) or iOS device. | ||||
|  | ||||
| ### Hardening Signal with Molly on Android | ||||
|  | ||||
| !!! recommendation | ||||
|  | ||||
|     { align=right } | ||||
|  | ||||
|     **Molly** is a security-focused [Signal](../real-time-communication/#signal) fork that aims to provide extensive hardening and anti-forensic features to people who use Signal. | ||||
|  | ||||
|     [:octicons-home-16: Homepage](https://molly.im/){ .md-button .md-button--primary } | ||||
|     [:octicons-eye-16:](https://signal.org/legal/#privacy-policy){ .card-link title="Privacy Policy" } | ||||
|     [:octicons-info-16:](https://github.com/mollyim/mollyim-android/wiki){ .card-link title=Documentation} | ||||
|     [:octicons-code-16:](https://github.com/mollyim/mollyim-android){ .card-link title="Source Code" } | ||||
|     [:octicons-heart-16:](https://opencollective.com/mollyim){ .card-link title=Contribute } | ||||
|  | ||||
|     ??? downloads | ||||
|  | ||||
|          - [:pg-f-droid: F-Droid](https://molly.im/download/fdroid/) | ||||
|          - [:fontawesome-brands-github: GitHub](https://github.com/mollyim/mollyim-android/releases) | ||||
|  | ||||
| Molly offers two variants of the app: **Molly** and **Molly-FOSS**. | ||||
|  | ||||
| The former is identical to Signal with the addition of Molly's improvements and security features. The latter, Molly-FOSS, removes Google's proprietary code, which is used for some key features (e.g., [FCM](https://en.wikipedia.org/wiki/Firebase_Cloud_Messaging) and Google Maps integration), in an effort to make it fully open-source. | ||||
|  | ||||
| A comparison of the two versions is available in the [project's repository](https://github.com/mollyim/mollyim-android#readme). | ||||
|  | ||||
| Both versions of Molly support [reproducible builds](https://github.com/mollyim/mollyim-android/tree/main/reproducible-builds), meaning it's possible to confirm that the compiled APKs match the source code. | ||||
|  | ||||
| #### Features | ||||
|  | ||||
| Molly has implemented database encryption at rest, which means that you can encrypt the app's database with a passphrase to ensure that none of its data is accessible without it. | ||||
|  | ||||
| !!! note | ||||
|  | ||||
|     As long as Molly is locked, you will not receive notifications for any incoming messages or calls until you unlock it again. | ||||
|  | ||||
| Once enabled, a configurable lock timer can be set, after which point Molly will lock itself if you haven't unlocked your device for that specific time period. Alternatively, you can manually lock the app whenever you want. | ||||
|  | ||||
| For the database encryption feature to be useful, two conditions must be met: | ||||
|  | ||||
| 1. Molly has to be locked at the time an attacker gains access to the device. This can include a physical attack in which the attacker seizes your device and manages to unlock the device itself, or a remote attack, in which the device is compromised and manages to elevate privileges to root. | ||||
| 1. If you become aware that your device has been compromised, you should not unlock Molly's database. | ||||
|  | ||||
| If both of the above conditions are met, the data within Molly is safe as long as the passphrase is not accessible to the attacker. | ||||
|  | ||||
| To supplement the database encryption feature, Molly securely wipes your device's RAM once the database is locked to defend against forensic analysis. | ||||
|  | ||||
| While Molly is running, your data is kept in RAM. When any app closes, its data remains in RAM until another app takes the same physical memory pages. That can take seconds or days, depending on many factors. To prevent anyone from dumping the RAM to disk and extracting your data after Molly is locked, the app overrides all free RAM memory with random data when you lock the database. | ||||
|  | ||||
| There is also the ability to configure a SOCKS proxy in Molly to route its traffic through the proxy or Tor (via [Orbot](/android/#orbot)). When enabled, all traffic is routed through the proxy and there are no known IP or DNS leaks. When using this feature, [call relaying](#call-relaying) will always be enabled, regardless of the setting. | ||||
|  | ||||
| Signal adds everyone who you have communicated with to its database. Molly allows you to delete those contacts and stop sharing your profile with them. | ||||
|  | ||||
| To supplement the feature above, as well as for additional security and to fight spam, Molly offers the ability to block unknown contacts that you've never been in contact with or those that are not in your contact list without you having to manually block them. | ||||
|  | ||||
| You can find a full list of Molly's [features](https://github.com/mollyim/mollyim-android#features) on the project's repository. | ||||
|  | ||||
| #### Caveats | ||||
|  | ||||
| - Molly does not support SMS messages within the app, unlike the official Signal app. | ||||
| - Molly removes Signal's Mobilecoin integration. | ||||
| - Molly is updated every two weeks to include the latest features and bug fixes from Signal. The exception is security issues, that are patched as soon as possible. That said, you should be aware that there might be a slight delay compared to upstream. | ||||
| - By using Molly, you are extending your trust to another party, as you now need to trust the Signal team, as well as the Molly team. | ||||
|  | ||||
| --8<-- "includes/abbreviations.en.md" | ||||
| @@ -1,6 +1,6 @@ | ||||
| --- | ||||
| title: "Tor Overview" | ||||
| icon: 'pg/tor' | ||||
| icon: 'simple/torproject' | ||||
| --- | ||||
| 
 | ||||
| Tor is a free to use, decentralized network designed for using the internet with as much privacy as possible. If used properly, the network enables private and anonymous browsing and communications. | ||||
| @@ -65,15 +65,15 @@ Tor allows us to connect to a server without any single party knowing the entire | ||||
| 
 | ||||
| Though Tor does provide strong privacy guarantees, one must be aware that Tor is not perfect: | ||||
| 
 | ||||
| - Well-funded adversaries with the capability to passively watch most network traffic over the globe have a chance of deanonymizing Tor users by means of advanced traffic analysis. Nor Tor does not protect you from exposing yourself by mistake, such as if you share to much information about your real identity. | ||||
| - Well-funded adversaries with the capability to passively watch most network traffic over the globe have a chance of deanonymizing Tor users by means of advanced traffic analysis. Nor does Tor protect you from exposing yourself by mistake, such as if you share too much information about your real identity. | ||||
| - Tor exit nodes can also monitor traffic that passes through them. This means traffic which is not encrypted, such as plain HTTP traffic, can be recorded and monitored. If such traffic contains personally identifiable information, then it can deanonymize you to that exit node. Thus, we recommend using HTTPS over Tor where possible. | ||||
| 
 | ||||
| If you wish to use Tor for browsing the web, we only recommend the **official** Tor Browser—it is designed to prevent fingerprinting. | ||||
| 
 | ||||
| - [Browsers: Tor Browser :hero-arrow-circle-right-fill:](../browsers.md#tor-browser) | ||||
| - [Tor Browser :material-arrow-right-drop-circle:](../tor.md#tor-browser) | ||||
| 
 | ||||
| ## Additional Resources | ||||
| 
 | ||||
| - [Tor Browser User Manual](https://tb-manual.torproject.org) | ||||
| - [How Tor Works - Computerphile](https://www.youtube-nocookie.com/embed/QRYzre4bf7I) <small>(YouTube)</small> | ||||
| - [Tor Onion Services - Computerphile](https://www.youtube-nocookie.com/embed/lVcbq_a5N9I) <small>(YouTube)</small> | ||||
| - [How Tor Works - Computerphile](https://invidious.privacyguides.net/embed/QRYzre4bf7I?local=true) <small>(YouTube)</small> | ||||
| - [Tor Onion Services - Computerphile](https://invidious.privacyguides.net/embed/lVcbq_a5N9I?local=true) <small>(YouTube)</small> | ||||
| @@ -1,12 +1,21 @@ | ||||
| --- | ||||
| title: "Android" | ||||
| icon: 'fontawesome/brands/android' | ||||
| icon: 'simple/android' | ||||
| --- | ||||
| 
 | ||||
| These are the Android operating systems, devices, and apps we recommend to maximize your mobile device's security and privacy. We also have additional Android-related information: | ||||
| { align=right } | ||||
| 
 | ||||
| - [General Android Overview and Recommendations :hero-arrow-circle-right-fill:](android/overview.md) | ||||
| - [Why we recommend GrapheneOS over CalyxOS :hero-arrow-circle-right-fill:](android/grapheneos-vs-calyxos.md) | ||||
| The **Android Open Source Project** is an open-source mobile operating system led by Google which powers the majority of the world's mobile devices. Most phones sold with Android are modified to include invasive integrations and apps such as Google Play Services, so you can significantly improve your privacy on your mobile device by replacing your phone's default installation with a version of Android without these invasive features. | ||||
| 
 | ||||
| [:octicons-home-16:](https://source.android.com/){ .card-link title=Homepage } | ||||
| [:octicons-info-16:](https://source.android.com/docs){ .card-link title=Documentation} | ||||
| [:octicons-code-16:](https://cs.android.com/android/platform/superproject/){ .card-link title="Source Code" } | ||||
| 
 | ||||
| These are the Android operating systems, devices, and apps we recommend to maximize your mobile device's security and privacy. To learn more about Android: | ||||
| 
 | ||||
| [General Android Overview :material-arrow-right-drop-circle:](os/android-overview.md){ .md-button } | ||||
| 
 | ||||
| [Why we recommend GrapheneOS over CalyxOS :material-arrow-right-drop-circle:](https://blog.privacyguides.org/2022/04/21/grapheneos-or-calyxos/){ .md-button } | ||||
| 
 | ||||
| ## AOSP Derivatives | ||||
| 
 | ||||
| @@ -33,7 +42,7 @@ We recommend installing one of these custom Android operating systems on your de | ||||
|     [:octicons-code-16:](https://grapheneos.org/source){ .card-link title="Source Code" } | ||||
|     [:octicons-heart-16:](https://grapheneos.org/donate){ .card-link title=Contribute } | ||||
| 
 | ||||
| GrapheneOS supports [Sandboxed Google Play](https://grapheneos.org/usage#sandboxed-google-play), which runs [Google Play Services](https://en.wikipedia.org/wiki/Google_Play_Services) fully sandboxed like any other regular app. This means you can take advantage of most Google Play Services, such as [push notifications](https://firebase.google.com/docs/cloud-messaging/), while giving you full control over their permissions and access, and while containing them to a specific work profile or user [profile](android/overview.md#user-profiles) of your choice. | ||||
| GrapheneOS supports [Sandboxed Google Play](https://grapheneos.org/usage#sandboxed-google-play), which runs [Google Play Services](https://en.wikipedia.org/wiki/Google_Play_Services) fully sandboxed like any other regular app. This means you can take advantage of most Google Play Services, such as [push notifications](https://firebase.google.com/docs/cloud-messaging/), while giving you full control over their permissions and access, and while containing them to a specific [work profile](os/android-overview.md#work-profile) or [user profile](os/android-overview.md#user-profiles) of your choice. | ||||
| 
 | ||||
| Google Pixel phones are the only devices that currently meet GrapheneOS's [hardware security requirements](https://grapheneos.org/faq#device-support). | ||||
| 
 | ||||
| @@ -47,17 +56,18 @@ Google Pixel phones are the only devices that currently meet GrapheneOS's [hardw | ||||
|     DivestOS inherits many [supported devices](https://divestos.org/index.php?page=devices&base=LineageOS) from LineageOS. It has signed builds, making it possible to have [verified boot](https://source.android.com/security/verifiedboot) on some non-Pixel devices. | ||||
| 
 | ||||
|     [:octicons-home-16: Homepage](https://divestos.org){ .md-button .md-button--primary } | ||||
|     [:pg-tor:](http://divestoseb5nncsydt7zzf5hrfg44md4bxqjs5ifcv4t7gt7u6ohjyyd.onion){ .card-link title=Onion } | ||||
|     [:simple-torbrowser:](http://divestoseb5nncsydt7zzf5hrfg44md4bxqjs5ifcv4t7gt7u6ohjyyd.onion){ .card-link title="Onion Service" } | ||||
|     [:octicons-eye-16:](https://divestos.org/index.php?page=privacy_policy){ .card-link title="Privacy Policy" } | ||||
|     [:octicons-info-16:](https://divestos.org/index.php?page=faq){ .card-link title=Documentation} | ||||
|     [:octicons-code-16:](https://github.com/divested-mobile){ .card-link title="Source Code" } | ||||
|     [:octicons-heart-16:](https://divested.dev/index.php?page=donate){ .card-link title=Contribute } | ||||
| 
 | ||||
| DivestOS has automated kernel vulnerability ([CVE](https://en.wikipedia.org/wiki/Common_Vulnerabilities_and_Exposures)) [patching](https://gitlab.com/divested-mobile/cve_checker), fewer proprietary blobs, a custom [hosts](https://divested.dev/index.php?page=dnsbl) file, and [F-Droid](https://www.f-droid.org) as the app store. Its hardened WebView, [Mulch](https://gitlab.com/divested-mobile/mulch), enables [CFI](https://en.wikipedia.org/wiki/Control-flow_integrity) for all architectures and [network state partitioning](https://developer.mozilla.org/en-US/docs/Web/Privacy/State_Partitioning), and receives out-of-band updates. | ||||
| 
 | ||||
| DivestOS has automated kernel vulnerability ([CVE](https://en.wikipedia.org/wiki/Common_Vulnerabilities_and_Exposures)) [patching](https://gitlab.com/divested-mobile/cve_checker), fewer proprietary blobs, and a custom [hosts](https://divested.dev/index.php?page=dnsbl) file. Its hardened WebView, [Mulch](https://gitlab.com/divested-mobile/mulch), enables [CFI](https://en.wikipedia.org/wiki/Control-flow_integrity) for all architectures and [network state partitioning](https://developer.mozilla.org/en-US/docs/Web/Privacy/State_Partitioning), and receives out-of-band updates. | ||||
| DivestOS also includes kernel patches from GrapheneOS and enables all available kernel security features via [defconfig hardening](https://github.com/Divested-Mobile/DivestOS-Build/blob/master/Scripts/Common/Functions.sh#L758). All kernels newer than version 3.4 include full page [sanitization](https://lwn.net/Articles/334747/) and all ~22 Clang-compiled kernels have [`-ftrivial-auto-var-init=zero`](https://reviews.llvm.org/D54604?id=174471) enabled. | ||||
| 
 | ||||
| DivestOS implements some system hardening patches originally developed for GrapheneOS. DivestOS 16.0 and higher implements GrapheneOS's [`INTERNET`](https://developer.android.com/training/basics/network-ops/connecting) and SENSORS permission toggle, [hardened memory allocator](https://github.com/GrapheneOS/hardened_malloc), [exec-spawning](android/grapheneos-vs-calyxos.md#additional-hardening), [JNI](https://en.wikipedia.org/wiki/Java_Native_Interface) [constification](https://en.wikipedia.org/wiki/Const_(computer_programming)), and partial [bionic](https://en.wikipedia.org/wiki/Bionic_(software)) hardening patchsets. 17.1 and higher features GrapheneOS's per-network full [MAC randomization](https://en.wikipedia.org/wiki/MAC_address#Randomization) option, [`ptrace_scope`](https://www.kernel.org/doc/html/latest/admin-guide/LSM/Yama.html) control, and automatic reboot/Wi-Fi/Bluetooth [timeout options](https://grapheneos.org/features). | ||||
| DivestOS implements some system hardening patches originally developed for GrapheneOS. DivestOS 16.0 and higher implements GrapheneOS's [`INTERNET`](https://developer.android.com/training/basics/network-ops/connecting) and SENSORS permission toggle, [hardened memory allocator](https://github.com/GrapheneOS/hardened_malloc), [exec-spawning](https://blog.privacyguides.org/2022/04/21/grapheneos-or-calyxos/#additional-hardening), [JNI](https://en.wikipedia.org/wiki/Java_Native_Interface) [constification](https://en.wikipedia.org/wiki/Const_(computer_programming)), and partial [bionic](https://en.wikipedia.org/wiki/Bionic_(software)) hardening patchsets. 17.1 and higher features GrapheneOS's per-network full [MAC randomization](https://en.wikipedia.org/wiki/MAC_address#Randomization) option, [`ptrace_scope`](https://www.kernel.org/doc/html/latest/admin-guide/LSM/Yama.html) control, and automatic reboot/Wi-Fi/Bluetooth [timeout options](https://grapheneos.org/features). | ||||
| 
 | ||||
| DivestOS uses F-Droid as its default app store. Normally, we would recommend avoiding F-Droid due to its numerous [security issues](#f-droid). However, doing so on DivestOS isn't viable; the developers update their apps via their own F-Droid repositories ([DivestOS Official](https://divestos.org/fdroid/official/?fingerprint=E4BE8D6ABFA4D9D4FEEF03CDDA7FF62A73FD64B75566F6DD4E5E577550BE8467) and [DivestOS WebView](https://divestos.org/fdroid/webview/?fingerprint=FB426DA1750A53D7724C8A582B4D34174E64A84B38940E5D5A802E1DFF9A40D2)). We recommend disabling the official F-Droid app and using [Neo Store](https://github.com/NeoApplications/Neo-Store/) with the DivestOS repositories enabled to keep those components up to date. For other apps, our recommended methods of obtaining them still apply. | ||||
| 
 | ||||
| !!! warning | ||||
| 
 | ||||
| @@ -77,7 +87,7 @@ A few more tips regarding Android devices and operating system compatibility: | ||||
| 
 | ||||
| - Do not buy devices that have reached or are near their end-of-life, additional firmware updates must be provided by the manufacturer. | ||||
| - Do not buy preloaded LineageOS or /e/ OS phones or any Android phones without proper [Verified Boot](https://source.android.com/security/verifiedboot) support and firmware updates. These devices also have no way for you to check whether they've been tampered with. | ||||
| - In short, if a device or Android distribution is not listed here, there is probably a good reason, so check our [discussions](https://github.com/privacyguides/privacyguides.org/discussions) page. | ||||
| - In short, if a device or Android distribution is not listed here, there is probably a good reason. Check out our [forum](https://discuss.privacyguides.net/) to find details! | ||||
| 
 | ||||
| ### Google Pixel | ||||
| 
 | ||||
| @@ -102,40 +112,13 @@ The installation of GrapheneOS on a Pixel phone is easy with their [web installe | ||||
| A few more tips for purchasing a Google Pixel: | ||||
| 
 | ||||
| - If you're after a bargain on a Pixel device, we suggest buying an "**a**" model, just after the next flagship is released. Discounts are usually available because Google will be trying to clear their stock. | ||||
| - Consider price beating options and specials offered at brick and mortar stores. | ||||
| - Consider price beating options and specials offered at physical stores. | ||||
| - Look at online community bargain sites in your country. These can alert you to good sales. | ||||
| - Google provides a list showing the [support cycle](https://support.google.com/nexus/answer/4457705) for each one of their devices. The price per day for a device can be calculated as: $\text{Cost} \over \text {EOL Date }-\text{ Current Date}$, meaning that the longer use of the device the lower cost per day. | ||||
| - Google provides a list showing the [support cycle](https://support.google.com/nexus/answer/4457705) for each one of their devices. The price per day for a device can be calculated as: $\text{Cost} \over \text {EOL Date}-\text{Current Date}$, meaning that the longer use of the device the lower cost per day. | ||||
| 
 | ||||
| ## General Apps | ||||
| 
 | ||||
| ### Orbot | ||||
| 
 | ||||
| !!! recommendation | ||||
| 
 | ||||
|     { align=right } | ||||
| 
 | ||||
|     **Orbot** is a free proxy app that routes your connections through the Tor Network. | ||||
| 
 | ||||
|     [:octicons-home-16: Homepage](https://orbot.app/){ .md-button .md-button--primary } | ||||
|     [:octicons-eye-16:](https://orbot.app/privacy-policy){ .card-link title="Privacy Policy" } | ||||
|     [:octicons-info-16:](https://orbot.app/faqs){ .card-link title=Documentation} | ||||
|     [:octicons-code-16:](https://github.com/guardianproject/orbot){ .card-link title="Source Code" } | ||||
|     [:octicons-heart-16:](https://orbot.app/donate){ .card-link title=Contribute } | ||||
| 
 | ||||
|     ??? downloads | ||||
| 
 | ||||
|         - [:fontawesome-brands-google-play: Google Play](https://play.google.com/store/apps/details?id=org.torproject.android) | ||||
|         - [:pg-f-droid: F-Droid](https://guardianproject.info/fdroid) | ||||
| 
 | ||||
| Orbot can proxy individual apps if they support SOCKS or HTTP proxying. It can also proxy all your network connections using [VpnService](https://developer.android.com/reference/android/net/VpnService) and can be used with the VPN killswitch in :gear: **Settings** → **Network & internet** → **VPN** → :gear: → **Block connections without VPN**. | ||||
| 
 | ||||
| For resistance against traffic analysis attacks, consider enabling *Isolate Destination Address* in :material-menu: → **Settings** → **Connectivity**. This will use a completely different Tor Circuit (different middle relay and exit nodes) for every domain you connect to. | ||||
| 
 | ||||
| !!! tip | ||||
| 
 | ||||
|     Orbot is often outdated on the Guardian Project's [F-Droid repository](https://guardianproject.info/fdroid) and [Google Play](https://play.google.com/store/apps/details?id=org.torproject.android) so consider downloading directly from the [GitHub repository](https://github.com/guardianproject/orbot) instead. | ||||
| 
 | ||||
|     All versions are signed using the same signature so they should be compatible with each other. | ||||
| We recommend a wide variety of Android apps throughout this site. The apps listed here are Android-exclusive and specifically enhance or replace key system functionality. | ||||
| 
 | ||||
| ### Shelter | ||||
| 
 | ||||
| @@ -143,7 +126,7 @@ For resistance against traffic analysis attacks, consider enabling *Isolate Dest | ||||
| 
 | ||||
|     { align=right } | ||||
| 
 | ||||
|     **Shelter** is an app that helps you leverage the Android work profile to isolate other apps. | ||||
|     **Shelter** is an app that helps you leverage Android's Work Profile functionality to isolate or duplicate apps on your device. | ||||
| 
 | ||||
|     Shelter supports blocking contact search cross profiles and sharing files across profiles via the default file manager ([DocumentsUI](https://source.android.com/devices/architecture/modular-system/documentsui)). | ||||
| 
 | ||||
| @@ -153,16 +136,13 @@ For resistance against traffic analysis attacks, consider enabling *Isolate Dest | ||||
| 
 | ||||
|     ??? downloads | ||||
| 
 | ||||
|         - [:fontawesome-brands-google-play: Google Play](https://play.google.com/store/apps/details?id=net.typeblog.shelter) | ||||
|         - [:pg-f-droid: F-Droid](https://f-droid.org/en/packages/net.typeblog.shelter) | ||||
|         - [:simple-googleplay: Google Play](https://play.google.com/store/apps/details?id=net.typeblog.shelter) | ||||
| 
 | ||||
| !!! warning | ||||
| 
 | ||||
|     As CalyxOS includes a device controller, we recommend using their built-in work profile instead. | ||||
| 
 | ||||
|     Shelter is recommended over [Insular](https://secure-system.gitlab.io/Insular/) and [Island](https://github.com/oasisfeng/island) as it supports [contact search blocking](https://secure-system.gitlab.io/Insular/faq.html). | ||||
| 
 | ||||
|     When using Shelter, you are placing complete trust in its developer as Shelter would be acting as a [Device Admin](https://developer.android.com/guide/topics/admin/device-admin) for the work profile and has extensive access to the data stored within it. | ||||
|     When using Shelter, you are placing complete trust in its developer, as Shelter acts as a [Device Admin](https://developer.android.com/guide/topics/admin/device-admin) to create the Work Profile, and it has extensive access to the data stored within the Work Profile. | ||||
| 
 | ||||
| ### Auditor | ||||
| 
 | ||||
| @@ -181,20 +161,21 @@ For resistance against traffic analysis attacks, consider enabling *Isolate Dest | ||||
| 
 | ||||
|     ??? downloads | ||||
| 
 | ||||
|         - [:fontawesome-brands-google-play: Google Play](https://play.google.com/store/apps/details?id=app.attestation.auditor) | ||||
|         - [:fontawesome-brands-github: GitHub](https://github.com/GrapheneOS/Auditor/releases) | ||||
|         - [:simple-googleplay: Google Play](https://play.google.com/store/apps/details?id=app.attestation.auditor.play) | ||||
|         - [:simple-github: GitHub](https://github.com/GrapheneOS/Auditor/releases) | ||||
|         - [:material-cube-outline: GrapheneOS App Store](https://github.com/GrapheneOS/Apps/releases) | ||||
| 
 | ||||
| Auditor performs attestation and intrusion detection by: | ||||
| 
 | ||||
| - Using a [Trust On First Use (TOFU)](https://en.wikipedia.org/wiki/Trust_on_first_use) model between an *auditor* and *auditee*, the pair establish a private key in the [hardware-backed keystore](https://source.android.com/security/keystore/) of the *Auditor*. | ||||
| - The *auditor* can either be another instance of the Auditor app or the [Remote Attestation Service](https://attestation.app). | ||||
| - The *auditor* records the current state and configuration of the *auditee*. | ||||
| - Should tampering with the operating system of the *auditee* after the pairing is complete, the auditor will be aware of the change in the device state and configurations. | ||||
| - Should tampering with the operating system of the *auditee* happen after the pairing is complete, the auditor will be aware of the change in the device state and configurations. | ||||
| - You will be alerted to the change. | ||||
| 
 | ||||
| No personally identifiable information is submitted to the attestation service. We recommend that you sign up with an anonymous account and enable remote attestation for continuous monitoring. | ||||
| 
 | ||||
| If your [threat model](basics/threat-modeling.md) requires privacy, you could consider using Orbot or a VPN to hide your IP address from the attestation service. | ||||
| If your [threat model](basics/threat-modeling.md) requires privacy, you could consider using [Orbot](tor.md#orbot) or a VPN to hide your IP address from the attestation service. | ||||
| To make sure that your hardware and operating system is genuine, [perform local attestation](https://grapheneos.org/install/web#verifying-installation) immediately after the device has been installed and prior to any internet connection. | ||||
| 
 | ||||
| ### Secure Camera | ||||
| @@ -204,7 +185,7 @@ To make sure that your hardware and operating system is genuine, [perform local | ||||
|     { align=right } | ||||
|     { align=right } | ||||
| 
 | ||||
|       **Secure Camera** is a camera app focused on privacy and security which can capture images, videos and QR codes. CameraX vendor extensions (Portrait, HDR, Night Sight, Face Retouch, and Auto) are also supported on available devices. | ||||
|     **Secure Camera** is a camera app focused on privacy and security which can capture images, videos and QR codes. CameraX vendor extensions (Portrait, HDR, Night Sight, Face Retouch, and Auto) are also supported on available devices. | ||||
| 
 | ||||
|     [:octicons-repo-16: Repository](https://github.com/GrapheneOS/Camera){ .md-button .md-button--primary } | ||||
|     [:octicons-info-16:](https://grapheneos.org/usage#camera){ .card-link title=Documentation} | ||||
| @@ -213,8 +194,9 @@ To make sure that your hardware and operating system is genuine, [perform local | ||||
| 
 | ||||
|     ??? downloads | ||||
| 
 | ||||
|         - [:fontawesome-brands-google-play: Google Play](https://play.google.com/store/apps/details?id=app.grapheneos.camera.play) | ||||
|         - [:fontawesome-brands-github: GitHub](https://github.com/GrapheneOS/Camera/releases) | ||||
|         - [:simple-googleplay: Google Play](https://play.google.com/store/apps/details?id=app.grapheneos.camera.play) | ||||
|         - [:simple-github: GitHub](https://github.com/GrapheneOS/Camera/releases) | ||||
|         - [:material-cube-outline: GrapheneOS App Store](https://github.com/GrapheneOS/Apps/releases) | ||||
| 
 | ||||
| Main privacy features include: | ||||
| 
 | ||||
| @@ -226,7 +208,7 @@ Main privacy features include: | ||||
| 
 | ||||
|     Metadata is not currently deleted from video files but that is planned. | ||||
| 
 | ||||
|     The image orientation metadata is not deleted. If you enable location (in Secure Camera) that **won't** be deleted either. If you want to delete that later you will need to use an external app such as [Scrambled Exif](https://gitlab.com/juanitobananas/scrambled-exif/). | ||||
|     The image orientation metadata is not deleted. If you enable location (in Secure Camera) that **won't** be deleted either. If you want to delete that later you will need to use an external app such as [ExifEraser](data-redaction.md#exiferaser). | ||||
| 
 | ||||
| ### Secure PDF Viewer | ||||
| 
 | ||||
| @@ -245,30 +227,9 @@ Main privacy features include: | ||||
| 
 | ||||
|     ??? downloads | ||||
| 
 | ||||
|         - [:fontawesome-brands-google-play: Google Play](https://play.google.com/store/apps/details?id=app.grapheneos.pdfviewer.play) | ||||
|         - [:fontawesome-brands-github: GitHub](https://github.com/GrapheneOS/PdfViewer/releases) | ||||
| 
 | ||||
| ### PrivacyBlur | ||||
| 
 | ||||
| !!! recommendation | ||||
| 
 | ||||
|     { align=right } | ||||
| 
 | ||||
|     **PrivacyBlur** is a free app which can blur sensitive portions of pictures before sharing them online. | ||||
| 
 | ||||
|     [:octicons-home-16: Homepage](https://privacyblur.app/){ .md-button .md-button--primary } | ||||
|     [:octicons-eye-16:](https://privacyblur.app/privacy.html){ .card-link title="Privacy Policy" } | ||||
|     [:octicons-info-16:](https://github.com/MATHEMA-GmbH/privacyblur#readme){ .card-link title=Documentation} | ||||
|     [:octicons-code-16:](https://github.com/MATHEMA-GmbH/privacyblur){ .card-link title="Source Code" } | ||||
| 
 | ||||
|     ??? downloads | ||||
| 
 | ||||
|         - [:fontawesome-brands-google-play: Google Play](https://play.google.com/store/apps/details?id=de.mathema.privacyblur) | ||||
|         - [:pg-f-droid: F-Droid](https://f-droid.org/en/packages/de.mathema.privacyblur/) | ||||
| 
 | ||||
| !!! warning | ||||
| 
 | ||||
|     You should **never** use blur to redact [text in images](https://bishopfox.com/blog/unredacter-tool-never-pixelation). If you want to redact text in an image, draw a box over the text. For this we suggest [Pocket Paint](https://github.com/Catrobat/Paintroid) or [Imagepipe](https://codeberg.org/Starfish/Imagepipe). | ||||
|         - [:simple-googleplay: Google Play](https://play.google.com/store/apps/details?id=app.grapheneos.pdfviewer.play) | ||||
|         - [:simple-github: GitHub](https://github.com/GrapheneOS/PdfViewer/releases) | ||||
|         - [:material-cube-outline: GrapheneOS App Store](https://github.com/GrapheneOS/Apps/releases) | ||||
| 
 | ||||
| ## Obtaining Applications | ||||
| 
 | ||||
| @@ -278,54 +239,40 @@ GrapheneOS's app store is available on [GitHub](https://github.com/GrapheneOS/Ap | ||||
| 
 | ||||
| ### Aurora Store | ||||
| 
 | ||||
| The Google Play Store requires a Google account to login which is not great for privacy. The [Aurora Store](https://auroraoss.com/download/AuroraStore/) (a Google Play Store proxy) does not and works most of the time. | ||||
| 
 | ||||
| ### F-Droid | ||||
| 
 | ||||
| F-Droid is often recommended as an alternative to Google Play, particularly in the privacy community. The option to add third-party repositories and not be confined to Google's walled garden has led to its popularity. F-Droid additionally has [reproducible builds](https://f-droid.org/en/docs/Reproducible_Builds/) for some applications and is dedicated to free and open-source software. However, there are problems with the official F-Droid client, their quality control, and how they build, sign and deliver packages, outlined in this [post](https://wonderfall.dev/fdroid-issues/). | ||||
| 
 | ||||
| Sometimes the official F-Droid repository may fall behind on updates. F-Droid maintainers reuse package IDs while signing apps with their own keys, which is not ideal as it does give the F-Droid team ultimate trust. The Google Play version of some apps may contain unwanted telemetry or lack features that are available in the F-Droid version. | ||||
| 
 | ||||
| We have these general tips: | ||||
| 
 | ||||
| - Check if the app developers have their own F-Droid repository first, e.g. [Bitwarden](https://bitwarden.com/), [Samourai Wallet](https://www.samouraiwallet.com/), or [Newpipe](https://newpipe.net/), which have their own repositories with less telemetry, additional features or faster updates. This is the ideal situation and you should be using these repositories if possible. | ||||
| - Check if an app is available on the [IzzyOnDroid](https://apt.izzysoft.de/fdroid/) repository. The IzzyOnDroid repository pulls builds directly from GitHub and is the next best thing to the developers' own repositories. We recommend that you download the GitHub builds and install them manually first, then use IzzyOnDroid for any subsequent updates. This will ensure that the signature of the applications you get from IzzyOnDroid matches that of the developer and the packages have not been tampered with. | ||||
| - Check if there are any differences between the F-Droid version and the Google Play Store version. Some applications like [IVPN](https://www.ivpn.net/) do not include certain features (eg [AntiTracker](https://www.ivpn.net/knowledgebase/general/antitracker-faq/)) in their Google Play Store build out of fear of censorship by Google. | ||||
| 
 | ||||
| Evaluate whether the additional features in the F-Droid build are worth the slower updates. Also think about whether faster updates from the Google Play Store are worth the potential privacy issues in your [threat model](basics/threat-modeling.md). | ||||
| 
 | ||||
| #### Neo Store | ||||
| 
 | ||||
| <small><i>Neo Store is a recent rebrand of Droid-ify.</i></small> | ||||
| 
 | ||||
| The official F-Droid client targets a [low API level](https://wonderfall.dev/fdroid-issues/#3-low-target-api-level-sdk-for-client--apps) and does not utilize the [seamless updates](https://www.androidcentral.com/google-will-finally-bring-seamless-app-updates-alternative-app-stores-android-12) feature introduced in Android 12. Targeting lower API levels means that the F-Droid client cannot take advantage of the new improvements in the application sandboxes that comes with higher API levels. For automatic updates to work, the F-Droid client requires that the [Privileged Extension](https://f-droid.org/en/packages/org.fdroid.fdroid.privileged/) be included in the operating system, granting it more privileges than what a normal app would have, which is not great for security. | ||||
| 
 | ||||
| To mitigate these problems, we recommend [Neo Store](https://github.com/NeoApplications/Neo-Store) as it supports seamless updates on Android 12 and above without needing any special privileges and targets a higher API level. | ||||
| The Google Play Store requires a Google account to login which is not great for privacy. You can get around this by using an alternative client, such as Aurora Store. | ||||
| 
 | ||||
| !!! recommendation | ||||
| 
 | ||||
|     { align=right } | ||||
|     { align=right } | ||||
| 
 | ||||
|     **Neo Store** is a modern F-Droid client made with MaterialUI, forked from [Foxy Droid](https://github.com/kitsunyan/foxy-droid). | ||||
|     **Aurora Store** is a Google Play Store client which does not require a Google Account, Google Play Services, or microG to download apps. | ||||
| 
 | ||||
|     Unlike the official F-Droid client, Neo Store supports seamless updates on Android 12 and above without the need for a privileged extension. If your Android distribution is on Android 12 or above and does not include the [F-Droid privileged extension](https://f-droid.org/en/packages/org.fdroid.fdroid.privileged/), it is highly recommended that you use Neo Store instead of the official client. | ||||
| 
 | ||||
|     [:octicons-repo-16: Repository](https://github.com/NeoApplications/Neo-Store){ .md-button .md-button--primary } | ||||
|     [:octicons-code-16:](https://github.com/NeoApplications/Neo-Store){ .card-link title="Source Code" } | ||||
|     [:octicons-home-16: Homepage](https://auroraoss.com/){ .md-button .md-button--primary } | ||||
|     [:octicons-code-16:](https://gitlab.com/AuroraOSS/AuroraStore){ .card-link title="Source Code" } | ||||
| 
 | ||||
|     ??? downloads | ||||
| 
 | ||||
|         - [:fontawesome-brands-android: IzzyOnDroid (APK)](https://android.izzysoft.de/repo/apk/com.looker.droidify) | ||||
|         - [:fontawesome-brands-github: GitHub](https://github.com/NeoApplications/Neo-Store/releases) | ||||
|         - [:simple-gitlab: GitLab](https://gitlab.com/AuroraOSS/AuroraStore/-/releases) | ||||
| 
 | ||||
| Aurora Store does not allow you to download paid apps with their anonymous account feature. You can optionally log in with your Google account with Aurora Store to download apps you have purchased, which does give access to the list of apps you've installed to Google, however you still benefit from not requiring the full Google Play client and Google Play Services or microG on your device. | ||||
| 
 | ||||
| ### Manually with RSS Notifications | ||||
| 
 | ||||
| If an app is released on a platform like GitHub, you may be able to add an RSS feed to your [news aggregator](/news-aggregators) that will help you be aware of new releases. Using [Secure Camera](#secure-camera) as an example, you would navigate to its [releases page](https://github.com/GrapheneOS/Camera/releases) on GitHub and append `.atom` to the URL: | ||||
| For apps that are released on platforms like GitHub and GitLab, you may be able to add an RSS feed to your [news aggregator](/news-aggregators) that will help you keep track of new releases. | ||||
| 
 | ||||
|     | ||||
| 
 | ||||
| #### GitHub | ||||
| 
 | ||||
| On GitHub, using [Secure Camera](#secure-camera) as an example, you would navigate to its [releases page](https://github.com/GrapheneOS/Camera/releases) and append `.atom` to the URL: | ||||
| 
 | ||||
| `https://github.com/GrapheneOS/Camera/releases.atom` | ||||
| 
 | ||||
|  | ||||
|  | ||||
| #### GitLab | ||||
| 
 | ||||
| On GitLab, using [Aurora Store](#aurora-store) as an example, you would navigate to its [project repository](https://gitlab.com/AuroraOSS/AuroraStore) and append `/-/tags?format=atom` to the URL: | ||||
| 
 | ||||
| `https://gitlab.com/AuroraOSS/AuroraStore/-/tags?format=atom` | ||||
| 
 | ||||
| #### Verifying APK Fingerprints | ||||
| 
 | ||||
| @@ -358,4 +305,50 @@ If you download APK files to install manually, you can verify their signature wi | ||||
|     Signer #1 certificate MD5 digest: dbbcd0cac71bd6fa2102a0297c6e0dd3 | ||||
|     ``` | ||||
| 
 | ||||
| --8<-- "includes/abbreviations.en.md" | ||||
| ### F-Droid | ||||
| 
 | ||||
| { align=right width=120px } | ||||
| 
 | ||||
| ==We do **not** currently recommend F-Droid as a way to obtain apps.== F-Droid is often recommended as an alternative to Google Play, particularly in the privacy community. The option to add third-party repositories and not be confined to Google's walled garden has led to its popularity. F-Droid additionally has [reproducible builds](https://f-droid.org/en/docs/Reproducible_Builds/) for some applications and is dedicated to free and open-source software. However, there are [notable problems](https://privsec.dev/posts/android/f-droid-security-issues/) with the official F-Droid client, their quality control, and how they build, sign, and deliver packages. | ||||
| 
 | ||||
| Due to their process of building apps, apps in the official F-Droid repository often fall behind on updates. F-Droid maintainers also reuse package IDs while signing apps with their own keys, which is not ideal as it gives the F-Droid team ultimate trust. | ||||
| 
 | ||||
| Other popular third-party repositories such as [IzzyOnDroid](https://apt.izzysoft.de/fdroid/) alleviate some of these concerns. The IzzyOnDroid repository pulls builds directly from GitHub and is the next best thing to the developers' own repositories. However, it is not something that we can recommend, as apps are typically [removed](https://github.com/vfsfitvnm/ViMusic/issues/240#issuecomment-1225564446) from that respository when they make it to the main F-Droid repository. While that makes sense (since the goal of that particular repository is to host apps before they're accepted into the main F-Droid repository), it can leave you with installed apps which no longer receive updates. | ||||
| 
 | ||||
| That said, the [F-Droid](https://f-droid.org/en/packages/) and [IzzyOnDroid](https://apt.izzysoft.de/fdroid/) repositories are home to countless apps, so they can be a useful tool to search for and discover open-source apps that you can then download through Play Store, Aurora Store, or by getting the APK directly from the developer. It is important to keep in mind that some apps in these repositories have not been updated in years and may rely on unsupported libraries, among other things, posing a potential security risk. You should use your best judgement when looking for new apps via this method. | ||||
| 
 | ||||
| !!! note | ||||
| 
 | ||||
|     In some rare cases, the developer of an app will only distribute it through F-Droid ([Gadgetbridge](https://gadgetbridge.org/) is one example of this). If you really need an app like that, we recommend using [Neo Store](https://github.com/NeoApplications/Neo-Store/) instead of the official F-Droid app to obtain it. | ||||
| 
 | ||||
| ## Criteria | ||||
| 
 | ||||
| **Please note we are not affiliated with any of the projects we recommend.** In addition to [our standard criteria](about/criteria.md), we have developed a clear set of requirements to allow us to provide objective recommendations. We suggest you familiarize yourself with this list before choosing to use a project, and conduct your own research to ensure it's the right choice for you. | ||||
| 
 | ||||
| !!! example "This section is new" | ||||
| 
 | ||||
|     We are working on establishing defined criteria for every section of our site, and this may be subject to change. If you have any questions about our criteria, please [ask on our forum](https://discuss.privacyguides.net/latest) and don't assume we didn't consider something when making our recommendations if it is not listed here. There are many factors considered and discussed when we recommend a project, and documenting every single one is a work-in-progress. | ||||
| 
 | ||||
| ### Operating Systems | ||||
| 
 | ||||
| - Must be open-source software. | ||||
| - Must support bootloader locking with custom AVB key support. | ||||
| - Must receive major Android updates within 0-1 months of release. | ||||
| - Must receive Android feature updates (minor version) within 0-14 days of release. | ||||
| - Must receive regular security patches within 0-5 days of release. | ||||
| - Must **not** be "rooted" out of the box. | ||||
| - Must **not** enable Google Play Services by default. | ||||
| - Must **not** require system modification to support Google Play Services. | ||||
| 
 | ||||
| ### Devices | ||||
| 
 | ||||
| - Must support at least one of our recommended custom operating systems. | ||||
| - Must be currently sold new in stores. | ||||
| - Must receive a minimum of 5 years of security updates. | ||||
| - Must have dedicated secure element hardware. | ||||
| 
 | ||||
| ### Applications | ||||
| 
 | ||||
| - Applications on this page must not be applicable to any other software category on the site. | ||||
| - General applications should extend or replace core system functionality. | ||||
| - Applications should receive regular updates and maintenance. | ||||
| @@ -1,59 +0,0 @@ | ||||
| --- | ||||
| title: "Why we recommend GrapheneOS over CalyxOS" | ||||
| icon: 'material/cellphone-cog' | ||||
| --- | ||||
|  | ||||
| GrapheneOS and CalyxOS are commonly compared as similar options for people looking for an alternative Android OS for their Pixel devices. Below are some of the reasons why we recommend GrapheneOS over CalyxOS. | ||||
|  | ||||
| ## Profiles | ||||
|  | ||||
| CalyxOS includes a device controller app so there is no need to install a third-party app like Shelter. | ||||
|  | ||||
| GrapheneOS extends the user profile feature, allowing you to end a current session. To do this, select *End Session* which will clear the encryption key from memory. GrapheneOS also provides [cross-profile notification forwarding](https://grapheneos.org/features#notification-forwarding). GrapheneOS plans to introduce nested profile support with better isolation in the future. | ||||
|  | ||||
| ## Sandboxed Google Play vs Privileged microG | ||||
|  | ||||
| When Google Play services are used on GrapheneOS, they run as a user app and are contained within a user or work profile. Sandboxed Google Play is confined using the highly restrictive, default [`untrusted_app`](https://source.android.com/security/selinux/concepts) domain provided by [SELinux](https://en.wikipedia.org/wiki/Security-Enhanced_Linux). Permissions for apps to use Google Play Services can be revoked at any time. | ||||
|  | ||||
| microG is a partially open-source re-implementation of Google Play Services.[^1] On CalyxOS, it runs in the highly privileged [`system_app`](https://source.android.com/security/selinux/concepts) SELinux domain like regular Google Play Services, and it uses [signature spoofing](https://github.com/microg/GmsCore/wiki/Signature-Spoofing) to masquerade as Google Play Services. This is less secure than Sandboxed Google Play's approach, which does not need access to sensitive system APIs. | ||||
|  | ||||
| When using Sandboxed Play Services, you have the option to reroute location requests to the Play Services API back to the OS location API, which uses satellite based location services. With microG, you have the option to choose between different backend location providers, including *shifting trust* to another location backend, like Mozilla; using [DejaVu](https://github.com/n76/DejaVu), a location backend that locally collects and saves RF-based location data to an offline database which can be used when GPS is not available; or to simply not use a network location backend at all. | ||||
|  | ||||
| Network location providers like Play Services or Mozilla rely the on the MAC addresses of surrounding WiFi access points and Bluetooth devices being submitted for location approximation. Choosing a network location like Mozilla to use with microG provides little to no privacy benefit over Google because you are still submitting the same data and trusting them to not profile you. | ||||
|  | ||||
| Local RF location backends like DejaVu require that the phone has a working GPS first for the local RF data collected to be useful. This makes them less effective as location providers, as the job of a location provider is to assist location approximation when satellite based services are not working. | ||||
|  | ||||
| If your threat model requires protecting your location or the MAC addresses of nearby devices, rerouting location requests to the OS location API is probably the best option. The benefit brought by microG's custom location backend is minimal at best when compared to Sandboxed Play Services. | ||||
|  | ||||
| In terms of application compatibility, Sandboxed Google Play on GrapheneOS is always going to be more compatible as it is the same code as what is released by Google. microG is a reimplementation of these services. As a result of that it only supports the various parts that have been reimplemented, meaning some things such as [Google Play Games](https://play.google.com/googleplaygames) and [In-app Billing API](https://android-doc.github.io/google/play/billing/api.html) are not yet supported. | ||||
|  | ||||
| Larger apps, especially games, require Play Delivery to be installed, which is currently not implemented in microG. Authentication using [FIDO](../basics/multi-factor-authentication.md#fido-fast-identity-online) with online services on Android also relies on Play Services, and does not currently work with microG. | ||||
|  | ||||
| [^1]: It should be noted that microG still uses proprietary Google binaries for some of its components such as DroidGuard. Push notifications, if enabled, still go through Google's servers just like with Play Services. Outside of default microG setups like on CalyxOS, it is possible to run microG in the unprivileged [`untrusted app`](https://source.android.com/security/selinux/concepts) SELinux domain and without the signature spoofing patch. However, microG's functionality and compatibility, which is already not nearly as broad as Sandboxed Play Services, will greatly diminish. | ||||
|  | ||||
| ## Privileged eSIM Activation Application | ||||
|  | ||||
| Currently, eSIM activation is tied to a privileged proprietary application by Google. The app has the `READ_PRIVILEGED_PHONE_STATE` permission, giving Google access to your hardware identifiers such as the IMEI. | ||||
|  | ||||
| On GrapheneOS, the app comes disabled and can be *optionally* enabled by the user after they have installed Sandboxed Play Services. | ||||
|  | ||||
| On CalyxOS, the app comes installed by default (regardless of whether you choose to have microG or not) and cannot be opted out. This means Google still has access to your hardware identifiers regardless of whether or not you need eSIM activation and can be accessed persistently. | ||||
|  | ||||
| ## Privileged App Extensions | ||||
|  | ||||
| Android 12 comes with special support for seamless app updates with [third-party app stores](https://android-developers.googleblog.com/2020/09/listening-to-developer-feedback-to.html). The popular Free and Open-Source Software (FOSS) repository [F-Droid](https://f-droid.org) doesn't implement this feature and requires a [privileged extension](https://f-droid.org/en/packages/org.fdroid.fdroid.privileged) to be included with the Android distribution in order to have unattended app installation. | ||||
|  | ||||
| GrapheneOS does not include F-Droid, because all updates have to be manually installed, which poses a security risk. However, you can use the [Neo Store](../android.md#neo-store) client for F-Droid which does support seamless (background) app updates in Android 12. GrapheneOS officially recommends [Sandboxed Google Play](https://grapheneos.org/usage#sandboxed-google-play) instead. Many FOSS Android apps are also in Google Play but sometimes they are not (like [NewPipe](../video-streaming.md)). | ||||
|  | ||||
| CalyxOS includes the [privileged extension](https://f-droid.org/en/packages/org.fdroid.fdroid.privileged), which may lower device security. Seamless app updates should be possible with [Aurora Store](https://auroraoss.com) in Android 12. | ||||
|  | ||||
| ## Additional Hardening | ||||
|  | ||||
| GrapheneOS improves upon [AOSP](https://source.android.com/) security with: | ||||
|  | ||||
| - **Hardened WebView:** Vanadium WebView requires [64-bit](https://en.wikipedia.org/wiki/64-bit_computing) processes on the [WebView](https://developer.android.com/reference/android/webkit/WebView) process and disables legacy [32-bit](https://en.wikipedia.org/wiki/32-bit_computing) processes. It uses hardened compiler options such as [`-fwrapv`](https://gcc.gnu.org/onlinedocs/gcc/Code-Gen-Options.html) and [`-fstack-protector-strong`](https://gcc.gnu.org/onlinedocs/gcc-4.9.3/gcc/Optimize-Options.html), which can help protect against [stack buffer overflows](https://en.wikipedia.org/wiki/Stack_buffer_overflow). [API](https://en.wikipedia.org/wiki/API)s such as the [battery status API](https://chromestatus.com/feature/4537134732017664) are disabled for privacy reasons. All system apps on GrapheneOS use the Vanadium WebView which means that apps which use WebView will also benefit from Vanadium's hardening. The [Vanadium patch set](https://github.com/GrapheneOS/Vanadium) is a lot more comprehensive than CalyxOS's [Chromium patch set](https://gitlab.com/CalyxOS/chromium-patches) which is derived from it. | ||||
| - **Hardened Kernel:** GrapheneOS kernel includes some hardening from the [linux-hardened](https://github.com/GrapheneOS/linux-hardened) project and the [Kernel Self Protection Project (KSPP)](https://kernsec.org/wiki/index.php/Kernel_Self_Protection_Project). CalyxOS uses the [same kernel](https://calyxos.org/docs/development/build/kernel/) as regular Android with some minor modifications. | ||||
| - **Hardened Memory Allocator:** GrapheneOS uses the [hardened malloc](https://github.com/GrapheneOS/hardened_malloc) subproject as its memory allocator. This focuses on hardening against [memory heap corruption](https://en.wikipedia.org/wiki/Memory_corruption). CalyxOS uses the default AOSP [Scudo Malloc](https://source.android.com/devices/tech/debug/scudo), which is generally [less effective](https://twitter.com/danielmicay/status/1033671709197398016). Hardened Malloc has uncovered vulnerabilities in AOSP which have been [fixed](https://github.com/GrapheneOS/platform_system_core/commit/be11b59725aa6118b0e1f0712572e835c3d50746) by GrapheneOS such as [CVE-2021-0703](https://nvd.nist.gov/vuln/detail/CVE-2021-0703). | ||||
| - **Secure Exec Spawning:** GrapheneOS [spawns](https://en.wikipedia.org/wiki/Spawn_(computing)) fresh processes as opposed to using the [Zygote model](https://ayusch.com/android-internals-the-android-os-boot-process) used by AOSP and CalyxOS. The Zygote model weakens [Address Space Layout Randomization](https://en.wikipedia.org/wiki/Address_space_layout_randomization) (ASLR) and is considered [less secure](https://wenke.gtisc.gatech.edu/papers/morula.pdf). Creating [fresh processes](https://grapheneos.org/usage#exec-spawning) is safer but will have some performance penalty when launching a new application. These penalties are not really noticeable unless you have an [old device](https://support.google.com/nexus/answer/4457705) with slow storage such as the Pixel 3a/3a XL as it has [eMMC](https://en.wikipedia.org/wiki/MultiMediaCard#eMMC). | ||||
|  | ||||
| **Please note that these are just a few examples and are not an extensive list of GrapheneOS's hardening**. For a more complete list, please read GrapheneOS' [official documentation](https://grapheneos.org/features). | ||||
| Before Width: | Height: | Size: 141 KiB | 
| Before Width: | Height: | Size: 145 KiB | 
| Before Width: | Height: | Size: 12 KiB | 
							
								
								
									
										
											BIN
										
									
								
								docs/assets/img/android/rss-apk-dark.png
									
									
									
									
									
										Normal file
									
								
							
							
						
						| After Width: | Height: | Size: 50 KiB | 
							
								
								
									
										
											BIN
										
									
								
								docs/assets/img/android/rss-apk-light.png
									
									
									
									
									
										Normal file
									
								
							
							
						
						| After Width: | Height: | Size: 47 KiB | 
							
								
								
									
										
											BIN
										
									
								
								docs/assets/img/android/rss-changes-dark.png
									
									
									
									
									
										Normal file
									
								
							
							
						
						| After Width: | Height: | Size: 96 KiB | 
							
								
								
									
										
											BIN
										
									
								
								docs/assets/img/android/rss-changes-light.png
									
									
									
									
									
										Normal file
									
								
							
							
						
						| After Width: | Height: | Size: 93 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg fill="#ffffff" version="1.1" viewBox="0 0 128 128" xmlns="http://www.w3.org/2000/svg"><g transform="scale(5.3333)"><path d="m0 0h24v24h-24z" fill="none"/><circle cx="12" cy="12" r="3"/><path d="m20 4h-3.17l-1.24-1.35c-0.37-0.41-0.91-0.65-1.47-0.65h-4.24c-0.56 0-1.1 0.24-1.48 0.65l-1.23 1.35h-3.17c-1.1 0-2 0.9-2 2v12c0 1.1 0.9 2 2 2h16c1.1 0 2-0.9 2-2v-12c0-1.1-0.9-2-2-2zm-8 13c-2.76 0-5-2.24-5-5s2.24-5 5-5 5 2.24 5 5-2.24 5-5 5z"/></g></svg> | ||||
| Before Width: | Height: | Size: 490 B | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg version="1.1" viewBox="0 0 128 128" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink"><defs><linearGradient id="a" x2="235.8" y1="119.6" y2="119.6" gradientTransform="scale(.9229 1.084)" gradientUnits="userSpaceOnUse"><stop stop-color="#F50" offset="0"/><stop stop-color="#F50" offset=".4099"/><stop stop-color="#FF2000" offset=".582"/><stop stop-color="#FF2000" offset="1"/></linearGradient><linearGradient id="c" x1="11.3" x2="100.5" y1="46.23" y2="46.23" gradientTransform="scale(1.981 .5049)" gradientUnits="userSpaceOnUse"><stop stop-color="#FF452A" offset="0"/><stop stop-color="#FF2000" offset="1"/></linearGradient><path id="b" d="m170.3 25.34-22.3-25.34h-78.34l-22.3 25.34s-19.58-5.447-28.83 3.813c0 0 26.11-2.36 35.09 12.26 0 0 24.21 4.63 27.47 4.63s10.34-2.724 16.86-4.902c6.528-2.179 10.88-2.195 10.88-2.195s4.352 0.016 10.88 2.195c6.528 2.178 13.6 4.902 16.86 4.902s27.47-4.63 27.47-4.63c8.976-14.62 35.09-12.26 35.09-12.26-9.248-9.26-28.83-3.813-28.83-3.813"/></defs><g transform="matrix(.50101 0 0 .50101 9.4745 .0060121)" fill-rule="evenodd"><path d="m210 61.28 5.984-14.71s-7.616-8.17-16.86-17.43c-9.248-9.259-28.83-3.812-28.83-3.812l-22.3-25.34h-78.34l-22.3 25.34s-19.58-5.447-28.83 3.813-16.86 17.43-16.86 17.43l5.984 14.71-7.616 21.79s22.4 84.95 25.02 95.32c5.168 20.42 8.704 28.32 23.39 38.67s41.34 28.32 45.7 31.05c4.352 2.724 9.792 7.363 14.69 7.363s10.34-4.64 14.69-7.363 31.01-20.7 45.7-31.05 18.22-18.25 23.39-38.67c2.624-10.37 25.02-95.32 25.02-95.32z" fill="url(#a)"/><path d="m164 41.4s28.69 34.72 28.69 42.14c0 7.421-3.608 9.38-7.237 13.24l-21.51 22.87c-2.036 2.164-6.273 5.445-3.78 11.35 2.492 5.905 6.168 13.42 2.08 21.04-4.089 7.62-11.09 12.71-15.58 11.87-4.489-0.842-15.03-6.357-18.9-8.876-3.876-2.52-16.16-12.66-16.16-16.54s12.7-10.85 15.04-12.43c2.347-1.583 13.05-7.712 13.27-10.12 0.219-2.406 0.136-3.111-3.022-9.055s-8.845-13.88-7.898-19.15c0.946-5.277 10.12-8.02 16.66-10.5 6.545-2.474 19.15-7.148 20.72-7.875 1.575-0.727 1.168-1.42-3.601-1.872-4.768-0.452-18.3-2.251-24.4-0.548-6.1 1.702-16.52 4.293-17.37 5.667-0.844 1.373-1.589 1.42-0.722 6.158 0.867 4.739 5.33 27.48 5.764 31.52 0.433 4.039 1.28 6.709-3.068 7.705-4.35 0.995-11.67 2.724-14.19 2.724s-9.838-1.729-14.19-2.724c-4.35-0.996-3.503-3.666-3.07-7.705 0.434-4.039 4.898-26.78 5.765-31.52s0.122-4.785-0.722-6.158c-0.844-1.374-11.27-3.965-17.37-5.667-6.1-1.703-19.63 0.096-24.4 0.548-4.769 0.453-5.176 1.145-3.602 1.872 1.575 0.727 14.18 5.4 20.72 7.875 6.546 2.475 15.72 5.22 16.66 10.5 0.946 5.278-4.741 13.21-7.899 19.15-3.158 5.944-3.241 6.65-3.022 9.055s10.92 8.534 13.27 10.12 15.04 8.552 15.04 12.43c0 3.882-12.28 14.03-16.16 16.54-3.876 2.52-14.42 8.034-18.9 8.876-4.488 0.84-11.49-4.246-15.58-11.87-4.089-7.621-0.412-15.14 2.08-21.04 2.491-5.905-1.745-9.186-3.78-11.35l-21.51-22.87c-3.629-3.858-7.237-5.817-7.237-13.24 0-7.422 28.69-42.14 28.69-42.14s24.21 4.63 27.47 4.63 10.34-2.724 16.86-4.902c6.528-2.179 10.88-2.195 10.88-2.195s4.352 0.016 10.88 2.195c6.528 2.178 13.6 4.902 16.86 4.902s27.47-4.63 27.47-4.63zm-21.51 132.8c1.775 1.113 0.692 3.212-0.925 4.357-1.618 1.145-23.36 18-25.47 19.86-2.11 1.864-5.21 4.94-7.318 4.94s-5.209-3.076-7.318-4.94c-2.11-1.863-23.85-18.72-25.47-19.86s-2.7-3.244-0.925-4.357c1.777-1.113 7.333-3.922 15-7.894 7.665-3.972 17.22-7.349 18.71-7.349s11.04 3.377 18.71 7.349 13.22 6.781 15 7.894z" fill="#fff"/><use width="100%" height="100%" fill="url(#c)" xlink:href="#b"/></g></svg> | ||||
| Before Width: | Height: | Size: 3.4 KiB | 
| Before Width: | Height: | Size: 7.8 KiB | 
| Before Width: | Height: | Size: 7.8 KiB | 
| @@ -1 +0,0 @@ | ||||
| <svg xmlns="http://www.w3.org/2000/svg" width="128" height="128" version="1.1" viewBox="0 0 33.866 33.866"><path fill="#46a546" stroke-width=".275" d="m3.2563 0.90164h27.353c1.804 0 3.2563 1.4523 3.2563 3.2563v1.001e-4c0 1.804-1.4523 3.2563-3.2563 3.2563h-27.353c-1.804 0-3.2563-1.4523-3.2563-3.2563v-1.001e-4c0-1.804 1.4523-3.2563 3.2563-3.2563z"/><path fill="#f89406" stroke-width=".259" d="m3.2563 9.4185h23.546c1.804 0 3.2563 1.4523 3.2563 3.2563v1e-4c0 1.804-1.4523 3.2563-3.2563 3.2563h-23.546c-1.804 0-3.2563-1.4523-3.2563-3.2563v-1e-4c0-1.804 1.4523-3.2563 3.2563-3.2563z"/><path fill="#c43c35" stroke-width=".269" d="m3.2563 17.935h25.95c1.804 0 3.2563 1.4523 3.2563 3.2563v1.01e-4c0 1.804-1.4523 3.2563-3.2563 3.2563h-25.95c-1.804 0-3.2563-1.4523-3.2563-3.2563v-1.01e-4c0-1.804 1.4523-3.2563 3.2563-3.2563z"/><path fill="#999" stroke-width=".212" d="m3.2563 26.452h13.726c1.804 0 3.2563 1.4523 3.2563 3.2563v1e-4c0 1.804-1.4523 3.2563-3.2563 3.2563h-13.726c-1.804 0-3.2563-1.4523-3.2563-3.2563v-1e-4c0-1.804 1.4523-3.2563 3.2563-3.2563z"/></svg> | ||||
| Before Width: | Height: | Size: 1.0 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867" xmlns="http://www.w3.org/2000/svg"><defs><filter id="filter4510-5" color-interpolation-filters="sRGB"><feFlood flood-color="rgb(0,0,0)" flood-opacity=".49804" result="flood"/><feComposite in="flood" in2="SourceGraphic" operator="in" result="composite1"/><feGaussianBlur in="composite1" result="blur" stdDeviation="4"/><feOffset dx="0" dy="4" result="offset"/><feComposite in="SourceGraphic" in2="offset" result="composite2"/></filter><filter id="filter4498-9" color-interpolation-filters="sRGB"><feFlood flood-color="rgb(0,0,0)" flood-opacity=".49804" result="flood"/><feComposite in="flood" in2="SourceGraphic" operator="in" result="composite1"/><feGaussianBlur in="composite1" result="blur" stdDeviation="4"/><feOffset dx="0" dy="4" result="offset"/><feComposite in="SourceGraphic" in2="offset" result="composite2"/></filter></defs><g transform="translate(0 -263.13)"><g transform="matrix(.072143 0 0 .072143 -44.234 303.31)"><path d="m616.42-553.5h460.75v460.75h-460.75z" fill="none" stroke-width="19.198"/><path d="m616.42-553.5h460.75v460.75h-460.75z" fill="none" stroke-width="19.198"/><path transform="matrix(2.4096 0 0 2.3916 493.87 -784.51)" d="m210.91 166.8v-37.52h-37.52l-26.48-26.48-26.48 26.48h-37.52v37.52l-26.48 26.48 26.48 26.48v37.52h37.52l26.48 26.48 26.48-26.48h37.52v-37.52l26.48-26.48z" fill="#ffc107" filter="url(#filter4498-9)" stroke-width="8"/><g transform="matrix(3.4337 0 0 3.196 364.57 -621.88)"><path d="m73.384 21.914h134.74v143.68h-134.74z" fill="none" stroke-width="5.7972"/><ellipse cx="140.78" cy="93.719" rx="11.3" ry="12.05" fill="#ffd740" stroke="#ffd740" stroke-linecap="round" stroke-linejoin="round" stroke-width="44.182"/><path transform="matrix(.71931 0 0 .73752 35.063 302.34)" d="m146.91-329.25v-17.45l-23.295 23.266 23.295 23.266v-17.45c19.276 0 34.942 15.647 34.942 34.9 0 5.8748-1.4559 11.459-4.0766 16.287l8.5026 8.4923c4.5425-7.1544 7.2214-15.647 7.2214-24.779 0-25.709-20.849-46.533-46.59-46.533zm0 81.433c-19.277 0-34.942-15.647-34.942-34.9 0-5.8748 1.4559-11.459 4.0766-16.287l-8.5026-8.4923c-4.5425 7.1544-7.2214 15.647-7.2214 24.779 0 25.709 20.849 46.533 46.59 46.533v17.45l23.295-23.266-23.295-23.266z" fill="#448aff" filter="url(#filter4510-5)" stroke-width="5.8202"/><path d="m73.384 21.914h134.74v143.68h-134.74z" fill="none" stroke-width="5.7972"/></g></g></g></svg> | ||||
| Before Width: | Height: | Size: 2.4 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867" xmlns="http://www.w3.org/2000/svg"><defs><linearGradient id="SVGID_00000094620430057427565900000015311327790582914980_" x1="796.82" x2="203.77" y1="249.42" y2="1067.3" gradientTransform="matrix(.035694 0 0 -.035694 5.0337e-7 30.979)" gradientUnits="userSpaceOnUse"><stop stop-color="#C8E8FF" offset="0"/><stop stop-color="#BDAEFF" offset=".3075"/><stop stop-color="#6D4AFF" offset="1"/></linearGradient><radialGradient id="SVGID_1_" cx="169.05" cy="788.91" r="1" gradientTransform="matrix(-16.88 45.338 60.416 22.494 -44786 -25421)" gradientUnits="userSpaceOnUse"><stop stop-color="#54B7FF" stop-opacity="0" offset=".5561"/><stop stop-color="#54B7FF" offset=".9944"/></radialGradient></defs><g stroke-width=".035694"><path class="st0" d="m5.0337e-7 6.425c0-1.9346 1.567-3.5016 3.5016-3.5016h26.853c1.9346 0 3.5016 1.567 3.5016 3.5016v21.017c0 1.9346-1.567 3.5016-3.5016 3.5016h-26.853c-1.9346 0-3.5016-1.567-3.5016-3.5016z" fill="#6851f6"/><path class="st1" d="m0.0071394 6.425c0-1.9346 1.5705-3.5016 3.5052-3.5016h26.853c1.9346 0 3.5016 1.567 3.5016 3.5016v21.017c0 1.9346-1.567 3.5016-3.5016 3.5016h-26.853c-1.9346 0-3.5016-1.567-3.5016-3.5016v-21.017z" fill="url(#SVGID_1_)"/><path class="st2" d="m15.373 29.312c0-0.83168 0.29626-1.6384 0.83524-2.2702l6.168-7.2388 0.19632 11.14h-7.1995z" fill="#bfd8ff"/><path d="m3.5016 2.9234c-1.9346 0-3.5016 1.567-3.5016 3.5016v0.68176h23.933c1.5063 0 2.7235 1.2207 2.7235 2.7235v13.914h7.1995v-17.319c0-1.9346-1.567-3.5016-3.5016-3.5016z" clip-rule="evenodd" fill="url(#SVGID_00000094620430057427565900000015311327790582914980_)" fill-rule="evenodd"/><path class="st4" d="m21.406 22.38c0-2.1488 1.7419-3.8907 3.8907-3.8907h8.563v12.454h-12.454z" fill="#fff"/><path class="st5" d="m24.811 26.496h1.2315c0.04997 0.21416 0.1749 0.40334 0.35337 0.53541 0.1749 0.13207 0.39264 0.19989 0.61394 0.18918 0.55683 0 0.92448-0.30697 0.92448-0.75672s-0.38193-0.69961-1.1386-0.69961h-0.48901v-1.0137h0.42476c0.73173 0 1.0316-0.26771 1.0316-0.67462 0-0.40334-0.32482-0.68176-0.77456-0.68176-0.19989-0.01071-0.39978 0.05354-0.54969 0.18561-0.15348 0.13207-0.24629 0.31768-0.26414 0.51757h-1.1886c0.04283-0.70674 0.59966-1.7205 1.9953-1.7205 1.1208 0 1.8954 0.63893 1.8954 1.5384 0 0.28912-0.08924 0.57111-0.26057 0.80312-0.17133 0.23201-0.41048 0.40691-0.68533 0.49258v0.01785c0.32125 0.05711 0.61037 0.22844 0.81383 0.48187 0.20346 0.25343 0.31054 0.57111 0.29983 0.89949 0 0.97445-0.89236 1.6169-2.0453 1.6169-1.2243 0.0071-2.0988-0.6889-2.1881-1.7312z" fill="#6d4aff"/><path class="st5" d="m31.197 22.473h0.89592v5.6718h-1.1565v-4.3511l-1.1137 0.75672v-1.1458z" fill="#6d4aff"/></g></svg> | ||||
| Before Width: | Height: | Size: 2.7 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867" xmlns="http://www.w3.org/2000/svg"><defs><linearGradient id="SVGID_00000019652434788841659490000008021016220503567533_" x1="-12.632" x2="1173" y1="1195.6" y2="-107.33" gradientTransform="matrix(.035706 0 0 -.035706 -1.6667e-6 30.985)" gradientUnits="userSpaceOnUse"><stop stop-color="#6D4AFF" offset="0"/><stop stop-color="#AE8CFF" offset=".3593"/><stop stop-color="#F8CCFF" offset="1"/></linearGradient><radialGradient id="SVGID_1_" cx="169.06" cy="788.93" r="1" gradientTransform="matrix(-21.468 43.868 68.249 33.399 -50186 -33775)" gradientUnits="userSpaceOnUse"><stop stop-color="#FF62C0" stop-opacity="0" offset=".5561"/><stop stop-color="#FF62C0" offset=".9944"/></radialGradient></defs><g stroke-width=".035705"><path class="st0" d="m-1.6667e-6 27.447v-21.023c0-1.9352 1.5675-3.5027 3.5027-3.5027h6.5698c0.66412 0 1.3104 0.21066 1.8424 0.60342l2.1994 1.6139c0.53559 0.39276 1.1819 0.60343 1.8424 0.60343h14.404c1.9352 0 3.5027 1.5675 3.5027 3.5027v18.199c0 1.9352-1.5675 3.5027-3.5027 3.5027h-26.858c-1.9352 4e-3 -3.5027-1.5639-3.5027-3.4991z" fill="#6851f6"/><path class="st1" d="m-1.6667e-6 27.447v-21.023c0-1.9352 1.5675-3.5027 3.5027-3.5027h6.5698c0.66412 0 1.3104 0.21066 1.8424 0.60342l2.1994 1.6139c0.53559 0.39276 1.1819 0.60343 1.8424 0.60343h14.404c1.9352 0 3.5027 1.5675 3.5027 3.5027v18.199c0 1.9352-1.5675 3.5027-3.5027 3.5027h-26.858c-1.9352 4e-3 -3.5027-1.5639-3.5027-3.4991z" fill="url(#SVGID_1_)"/><path d="m15.96 5.7414h14.404c1.9352 0 3.5027 1.5675 3.5027 3.5027v18.199c0 1.9352-1.5675 3.5027-3.5027 3.5027h-3.6991v-18.278c0-1.5103-1.2283-2.735-2.7422-2.7243l-13.265 0.075c-0.57129 4e-3 -1.1283-0.17138-1.596-0.50344l-2.9528-2.0995c-0.4606-0.32849-1.014-0.50345-1.5782-0.50345h-4.531v-0.48916c0-1.9352 1.5675-3.5027 3.5027-3.5027h6.5698c0.66412 0 1.3104 0.21066 1.8424 0.60342l2.1994 1.6139c0.53559 0.39276 1.1819 0.60343 1.846 0.60343z" clip-rule="evenodd" fill="url(#SVGID_00000019652434788841659490000008021016220503567533_)" fill-rule="evenodd"/></g></svg> | ||||
| Before Width: | Height: | Size: 2.0 KiB | 
| Before Width: | Height: | Size: 8.1 KiB | 
| @@ -1,15 +0,0 @@ | ||||
| <svg width="979" height="785" viewBox="0 0 979 785" fill="none" xmlns="http://www.w3.org/2000/svg"> | ||||
| <path d="M0 22.5541C0 3.48617 22.2124 -6.94596 36.8738 5.23613L424.677 327.46C462.177 358.619 516.546 358.619 554.046 327.46L941.85 5.23618C956.511 -6.94591 978.723 3.48621 978.723 22.5541V683.7C978.723 739.646 933.393 785 877.476 785H101.247C45.3299 785 0 739.646 0 683.7V22.5541Z" fill="#6D4AFF"/> | ||||
| <path fill-rule="evenodd" clip-rule="evenodd" d="M621.492 271.42L621.546 271.464L426.244 444.071C392.975 473.475 343.246 474.216 309.116 445.817L0 188.604V22.5541C0 3.48617 22.2124 -6.94596 36.8738 5.23613L424.677 327.46C462.177 358.619 516.546 358.619 554.046 327.46L621.492 271.42Z" fill="url(#paint0_linear_6150_150885)"/> | ||||
| <path fill-rule="evenodd" clip-rule="evenodd" d="M770.604 147.526V785H877.476C933.393 785 978.723 739.642 978.723 683.699V22.5548C978.723 3.4868 956.51 -6.94715 941.849 5.23724L770.604 147.526Z" fill="url(#paint1_linear_6150_150885)"/> | ||||
| <defs> | ||||
| <linearGradient id="paint0_linear_6150_150885" x1="738.261" y1="384.02" x2="514.95" y2="-568.829" gradientUnits="userSpaceOnUse"> | ||||
| <stop stop-color="#E2DBFF"/> | ||||
| <stop offset="1" stop-color="#6D4AFF"/> | ||||
| </linearGradient> | ||||
| <linearGradient id="paint1_linear_6150_150885" x1="1276.84" y1="1301.35" x2="514.868" y2="-325.532" gradientUnits="userSpaceOnUse"> | ||||
| <stop offset="0.271019" stop-color="#E2DBFF"/> | ||||
| <stop offset="1" stop-color="#6D4AFF"/> | ||||
| </linearGradient> | ||||
| </defs> | ||||
| </svg> | ||||
| Before Width: | Height: | Size: 1.4 KiB | 
| Before Width: | Height: | Size: 3.9 KiB | 
| Before Width: | Height: | Size: 5.5 KiB | 
| Before Width: | Height: | Size: 135 KiB | 
| Before Width: | Height: | Size: 590 KiB | 
| Before Width: | Height: | Size: 70 KiB | 
| Before Width: | Height: | Size: 114 KiB | 
| Before Width: | Height: | Size: 93 KiB | 
| Before Width: | Height: | Size: 18 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="127.99" height="128" version="1.1" viewBox="0 0 33.864 33.867" xmlns="http://www.w3.org/2000/svg"><g transform="translate(-48.383 -89.279)"><g transform="matrix(.083544 0 0 .083551 36.799 77.694)"><path d="m220.51 504.06 120.82 39.937 1.2e-4 4e-5 -143.92-5e-5zm323.49-162.73c0 111.93-90.737 202.67-202.67 202.67-111.93-1e-5 -202.67-90.737-202.67-202.67s90.737-202.67 202.67-202.67c111.93 0 202.67 90.737 202.67 202.67z" fill="#7663f0"/><g transform="translate(-5.1601e-6,-4.0973)"><circle cx="341" cy="433.47" r="23.536" fill="#f9f8fe" stroke-width=".64448"/><circle cx="439.19" cy="375.64" r="23.536" fill="#aaa4ce" stroke-width=".64448"/><circle cx="242.81" cy="375.64" r="23.536" fill="#cba1fe" stroke-width=".64447"/><g stroke-width=".64448"><circle cx="439.19" cy="433.47" r="23.536" fill="#f9f8fe"/><circle cx="439.19" cy="317.82" r="23.536" fill="#aacdf4"/><circle cx="242.81" cy="260" r="23.536" fill="#4b0f9f"/></g><circle cx="242.81" cy="317.82" r="23.536" fill="#aaa4ce" stroke-width=".64447"/><g stroke-width=".64448"><circle cx="242.81" cy="433.47" r="23.536" fill="#f9f8fe"/><circle cx="341" cy="317.82" r="23.536" fill="#4b0f9f"/><circle cx="341" cy="375.64" r="23.536" fill="#aacdf4"/></g><circle cx="439.19" cy="260" r="23.536" fill="#4b0f9f" stroke-width=".64447"/></g></g></g></svg> | ||||
| Before Width: | Height: | Size: 1.3 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867" xmlns="http://www.w3.org/2000/svg"><g transform="translate(0 -263.13)"><g transform="matrix(.25 0 0 .25 -75.421 228.27)"><circle cx="369.42" cy="207.2" r="67.733" fill="#521737" stroke-width=".71866"/><path transform="matrix(.26458 0 0 .26458 301.69 139.47)" d="m265.99 65.18v0.0078c1.8901 2.438 3.0273 5.5806 3.0273 9.0215v195.24c19.426 3.3884 50.314 16.138 55.404 62.422l0.26367 2.377 1.9512 17.611h-2e-3l10.252 92.566h-161.81l64.785 67.07c5.4118 0.44356 10.702 0.40924 16.131 0.50781 6.0422 3e-4 12.082-0.21339 18.109-0.64062 8.5134-0.60344 16.992-1.6336 25.402-3.084 8.4107-1.4512 16.743-3.3219 24.967-5.6055 8.2243-2.2825 16.33-4.9742 24.285-8.0664 7.9553-3.0931 15.751-6.5833 23.357-10.455 7.6063-3.8716 15.013-8.1208 22.195-12.732 7.1823-4.6114 14.13-9.5793 20.816-14.885 6.6858-5.3055 13.102-10.942 19.225-16.889 6.1225-5.9464 11.945-12.195 17.443-18.723 5.4986-6.528 10.667-13.327 15.486-20.371 4.8192-7.0443 9.2831-14.324 13.375-21.814 4.0921-7.4904 7.8071-15.181 11.131-23.043 3.3233-7.8616 6.2497-15.885 8.7715-24.039 2.5223-8.154 4.6364-16.428 6.332-24.793 0.0435-0.28271 0.12174-0.53757 0.16407-0.82032zm-119.28 111.21c-3e-3 20.217 16.387 36.607 36.604 36.605zm36.604 36.605c-20.216-1e-3 -36.605 16.387-36.604 36.604 9.4e-4 -4.2e-4 50.205 51.017 50.205 51.017 12.099-18.158 28.866-28.067 41.949-30.349zm-36.604 36.604c1e-3 -20.216-16.387-36.605-36.604-36.604z" fill="#351228" stroke-width=".98462"/><g transform="matrix(.98462 0 0 .98462 4.6413 4.2297)" fill="#fff"><path d="m370.47 153.51c-1.9408 0-3.5026 1.6846-3.5026 3.777v54.445c0 2.0925 1.5618 3.777 3.5026 3.777s3.5026-1.6846 3.5026-3.777v-54.445c0-2.0924-1.5618-3.777-3.5026-3.777z" stroke-width=".62166"/><path d="m341.11 184.75a9.8353 9.8353 0 0 1-9.836 9.836 9.8353 9.8353 0 0 1 9.836 9.836 9.8353 9.8353 0 0 1 9.836-9.836 9.8353 9.8353 0 0 1-9.836-9.836z" fill="#fff" stroke-width=".63312"/><path d="m401.71 203.66a8.3455 8.3455 0 0 1-8.3461 8.3461 8.3455 8.3455 0 0 1 8.3461 8.3461 8.3455 8.3455 0 0 1 8.3461-8.3461 8.3455 8.3455 0 0 1-8.3461-8.3461z" fill="#fff" stroke-width=".53722"/><path d="m370.47 153.51v62c-1.9408 0-3.5026-1.6846-3.5026-3.777v-54.445c0-2.0924 1.5618-3.777 3.5026-3.777z" stroke-width=".62166"/></g><path d="m369.42 155.38v61.046c1.911 0 3.4488-1.6587 3.4488-3.7189v-53.608c0-2.0602-1.5378-3.7189-3.4488-3.7189z" fill="#dfdfe0" stroke-width=".61209"/><path d="m369.42 210.44c-3.3202 0-16.374 1.0601-18.108 16.828l-3.2974 29.78h42.811l-3.2974-29.78c-1.7341-15.768-14.788-16.828-18.108-16.828z" fill="#f8d057" stroke-width=".56531"/><path d="m351.31 227.27c1.7341-15.768 14.788-16.828 18.108-16.828v46.608h-21.406z" fill="#f8d057" stroke-width=".56531"/><path d="m351.24 227.9 18.178-3e-5 1e-5 4.6596h-18.694z" fill="#e97043" stroke-width=".25734"/><path d="m387.52 227.27c-1.7341-15.768-14.788-16.828-18.108-16.828v46.608h21.406z" fill="#f2b55a" stroke-width=".56531"/><path d="m387.59 227.9h-18.178v4.6596h18.694z" fill="#a15439" stroke-width=".25734"/></g></g></svg> | ||||
| Before Width: | Height: | Size: 3.0 KiB | 
| @@ -1,8 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg id="vector" version="1.1" viewBox="0 0 128 128" xmlns="http://www.w3.org/2000/svg"> | ||||
|  <g id="group" transform="matrix(2.5666 0 0 2.5666 -73.625 -74.595)"> | ||||
|   <path id="path" d="m28.686 54c0-6.611 2.629-12.958 7.304-17.632 4.674-4.675 11.021-7.304 17.632-7.304s12.958 2.629 17.633 7.304c4.674 4.674 7.303 11.021 7.303 17.632s-2.629 12.958-7.303 17.632c-4.675 4.675-11.022 7.304-17.633 7.304s-12.958-2.629-17.632-7.304c-4.675-4.674-7.304-11.021-7.304-17.632" fill="#fff"/> | ||||
|   <path d="m48.42 40.201v21.793h21.795v-21.793zm2.8184 2.8184h16.156v11.051l-4.1621-4.0703-4.9883 5.3047-3.1465-3.0469-3.8594 4.1738zm6.4609 1.9727c-1.1964 0.01026-2.4063 1.0128-2.334 2.2812-0.0012 0.186 0.02158 0.37225 0.06641 0.55273 0.27682 1.4976 2.226 2.1821 3.4512 1.3633 1.3815-0.81242 1.3037-3.0455-0.04102-3.8496-0.34791-0.2441-0.74378-0.35108-1.1426-0.34766z" fill="#009688"/> | ||||
|   <path d="m43.2 48.735c-0.807 0-1.461-0.654-1.461-1.461v-6.667c0-3.679 2.993-6.673 6.672-6.673s6.7339 2.5864 6.7339 6.2654l-2.9045 0.01627c0-2.068-1.7614-3.3587-3.8294-3.3587s-3.75 1.682-3.75 3.75v6.667c0 0.807-0.654 1.461-1.461 1.461zm0-6.787-7.013 6.818v20.141h14.026v-20.141zm0 7.429c-1.143 0-2.07-0.927-2.07-2.07s0.927-2.07 2.07-2.07 2.07 0.927 2.07 2.07-0.927 2.07-2.07 2.07z" fill="#00675b"/> | ||||
|  </g> | ||||
| </svg> | ||||
| Before Width: | Height: | Size: 1.3 KiB | 
| Before Width: | Height: | Size: 130 KiB After Width: | Height: | Size: 130 KiB | 
| Before Width: | Height: | Size: 115 KiB After Width: | Height: | Size: 115 KiB | 
| Before Width: | Height: | Size: 78 KiB | 
| Before Width: | Height: | Size: 6.8 KiB | 
| Before Width: | Height: | Size: 6.6 KiB | 
							
								
								
									
										
											BIN
										
									
								
								docs/assets/img/qubes/qubes-trust-level-architecture.png
									
									
									
									
									
										Normal file
									
								
							
							
						
						| After Width: | Height: | Size: 111 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="128" height="128" version="1.1" viewBox="0 0 33.866 33.866" xmlns="http://www.w3.org/2000/svg"><g transform="matrix(.52916 0 0 .52916 .0017986 -523)"><g transform="matrix(.40296 0 0 .40296 360.66 978.2)"><path d="m-816.29 25.214a15.882 15.918 0 0 0-8.3171 2.135l-53.648 31.034a15.882 15.918 0 0 0-7.9452 13.784v62.1a15.882 15.918 0 0 0 7.9452 13.768l53.648 31.058a15.882 15.918 0 0 0 15.882 0l53.656-31.058a15.882 15.918 0 0 0 7.9371-13.768v-62.1a15.882 15.918 0 0 0-7.9371-13.784l-53.656-31.034a15.882 15.918 0 0 0-7.5652-2.135zm-0.17228 35.101a8.7349 8.755 0 0 1 4.1636 1.169l29.512 17.071a8.7349 8.755 0 0 1 4.3663 7.582v34.159a8.7349 8.755 0 0 1-4.3663 7.5656l-29.512 17.088a8.7349 8.755 0 0 1-8.7305 0l-29.513-17.088a8.7349 8.755 0 0 1-4.3653-7.5656v-34.159a8.7349 8.755 0 0 1 4.3653-7.582l29.513-17.071a8.7349 8.755 0 0 1 4.5669-1.169z" fill="#63a0ff"/><path d="m-749.26 64.233-30.34 17.551a8.7349 8.755 0 0 1 1.1738 4.375v34.15a8.7349 8.755 0 0 1-4.3652 7.5742l-29.504 17.08a8.7349 8.755 0 0 1-4.3496 1.1602v35.102a15.882 15.918 0 0 0 7.9219-2.1191l11.936-6.9082 15.23 8.8633c6.8122 3.9643 17.78 3.9643 24.592 0l6.8106-3.9629c6.8122-3.9643 6.8122-10.348 0-14.312l-15.146-8.8144 10.234-5.9238a15.882 15.918 0 0 0 7.9375-13.768v-62.092a15.882 15.918 0 0 0-2.1309-7.9551z" fill="#3874d8"/><path d="m-884.06 64.207 30.334 17.56a8.7349 8.755 0 0 1 3.1929-3.2071l29.508-17.075a8.7349 8.755 0 0 1 8.7265 3e-3l29.51 17.071a8.7349 8.755 0 0 1 3.1777 3.1948l30.328-17.55a15.882 15.918 0 0 0-5.791-5.8162l-53.664-31.045a15.882 15.918 0 0 0-15.864-5e-3l-53.649 31.046a15.882 15.918 0 0 0-5.8092 5.8265z" fill="#99bfff"/></g></g></svg> | ||||
| Before Width: | Height: | Size: 1.6 KiB | 
							
								
								
									
										
											BIN
										
									
								
								docs/assets/img/qubes/r4.0-xfce-three-domains-at-work.png
									
									
									
									
									
										Normal file
									
								
							
							
						
						| After Width: | Height: | Size: 1.4 MiB | 
| @@ -1 +0,0 @@ | ||||
| <svg xmlns="http://www.w3.org/2000/svg" width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867"><g fill="#fff" stroke-width=".437"><path d="m9.7887 23.904c1.2673 0 2.3598-0.3933 3.2775-1.1362 0.91769-0.74289 1.5732-1.748 1.9228-2.9716s0.2622-2.2287-0.2185-2.9716c-0.48069-0.74289-1.3984-1.1362-2.6657-1.1362s-2.3598 0.39329-3.2775 1.1362c-0.91768 0.74289-1.5295 1.748-1.8791 2.9716s-0.3059 2.2287 0.2185 2.9716c0.43699 0.78659 1.311 1.1362 2.622 1.1362" class="pf0"/><path d="m20.626 15.688 1.1362-4.0203h2.0102l0.78659-2.8842c0.2622-0.87399 0.56809-1.748 0.96138-2.5346 0.34959-0.78659 0.87399-1.4858 1.4858-2.0976 0.61179-0.61179 1.3984-1.0925 2.3161-1.4421 0.91769-0.34959 2.0976-0.52439 3.4522-0.52439 0.3496 0 0.65549 0 1.0051 0.0437-0.3059-1.2673-1.4421-2.185-2.7531-2.2287h-28.186c-1.5732 0-2.8405 1.311-2.8405 2.8842v25.083l4.5884-16.3h4.6321l-0.61179 2.1413h0.0874c0.2622-0.3059 0.61179-0.56809 1.0488-0.87399 0.43699-0.3059 0.87399-0.56809 1.3547-0.83029 0.48069-0.2622 1.0051-0.43699 1.5732-0.61179 0.56809-0.1748 1.1362-0.2185 1.7043-0.2185 1.2236 0 2.2287 0.2185 3.1027 0.61179 0.87399 0.3933 1.5295 1.0051 2.0539 1.748 0.43699 0.65549 0.69919 1.4421 0.83029 2.3598l0.34959-0.2622h-0.0874z" class="pf1"/><path d="m33.517 6.5112c-0.2185-0.043702-0.48069-0.087403-0.78659-0.087403-0.78659 0-1.4421 0.1748-1.9665 0.52439-0.48069 0.34959-0.91768 1.0488-1.2236 2.1413l-0.74289 2.5783h2.8405l0.69919 2.2287-1.8354 1.7917h-2.8405l-3.4522 12.236h-4.9817l3.4522-12.236h-1.9228l-0.39329 0.2622c0 0.0874 0.0437 0.2185 0.0437 0.3059 0.0874 1.0051-0.0437 2.1413-0.39329 3.3649-0.3059 1.1362-0.78659 2.2287-1.4421 3.2775-0.65549 1.0488-1.3984 1.9665-2.2287 2.7531-0.87399 0.78659-1.8354 1.4421-2.8842 1.9228-1.0488 0.48069-2.1413 0.69919-3.3212 0.69919-1.0488 0-1.9665-0.1748-2.7968-0.48069-0.83029-0.3059-1.3984-0.87399-1.748-1.6606h-0.0874l-2.185 7.7348h27.662c1.5732 0 2.8842-1.2673 2.8842-2.8842v-24.341c-0.13111-0.043702-0.2622-0.087403-0.3496-0.13111" class="pf2"/></g></svg> | ||||
| Before Width: | Height: | Size: 1.9 KiB | 
| @@ -1 +0,0 @@ | ||||
| <svg xmlns="http://www.w3.org/2000/svg" width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867"><g stroke-width=".437"><path fill="#2b40b5" d="m9.7887 23.904c1.2673 0 2.3598-0.3933 3.2775-1.1362 0.91769-0.74289 1.5732-1.748 1.9228-2.9716s0.2622-2.2287-0.2185-2.9716c-0.48069-0.74289-1.3984-1.1362-2.6657-1.1362s-2.3598 0.39329-3.2775 1.1362c-0.91768 0.74289-1.5295 1.748-1.8791 2.9716-0.3496 1.2236-0.3059 2.2287 0.2185 2.9716 0.43699 0.78659 1.311 1.1362 2.622 1.1362" class="pf0"/><path fill="#08c" d="m20.626 15.688 1.1362-4.0203h2.0102l0.78659-2.8842c0.2622-0.87399 0.56809-1.748 0.96138-2.5346 0.34959-0.78659 0.87399-1.4858 1.4858-2.0976 0.61179-0.61179 1.3984-1.0925 2.3161-1.4421 0.91769-0.34959 2.0976-0.52439 3.4522-0.52439 0.3496 0 0.65549 0 1.0051 0.0437-0.3059-1.2673-1.4421-2.185-2.7531-2.2287h-28.186c-1.5732 0-2.8405 1.311-2.8405 2.8842v25.083l4.5884-16.3h4.6321l-0.61179 2.1413h0.0874c0.2622-0.3059 0.61179-0.56809 1.0488-0.87399 0.43699-0.3059 0.87399-0.56809 1.3547-0.83029 0.48069-0.2622 1.0051-0.43699 1.5732-0.61179 0.56809-0.1748 1.1362-0.2185 1.7043-0.2185 1.2236 0 2.2287 0.2185 3.1027 0.61179 0.87399 0.3933 1.5295 1.0051 2.0539 1.748 0.43699 0.65549 0.69919 1.4421 0.83029 2.3598l0.34959-0.2622h-0.0874z" class="pf1"/><path fill="#1c1275" d="m33.517 6.5112c-0.2185-0.043702-0.48069-0.087403-0.78659-0.087403-0.78659 0-1.4421 0.1748-1.9665 0.52439-0.48069 0.34959-0.91768 1.0488-1.2236 2.1413l-0.74289 2.5783h2.8405l0.69919 2.2287-1.8354 1.7917h-2.8405l-3.4522 12.236h-4.9817l3.4522-12.236h-1.9228l-0.39329 0.2622c0 0.0874 0.0437 0.2185 0.0437 0.3059 0.0874 1.0051-0.0437 2.1413-0.39329 3.3649-0.3059 1.1362-0.78659 2.2287-1.4421 3.2775-0.65549 1.0488-1.3984 1.9665-2.2287 2.7531-0.87399 0.78659-1.8354 1.4421-2.8842 1.9228-1.0488 0.48069-2.1413 0.69919-3.3212 0.69919-1.0488 0-1.9665-0.1748-2.7968-0.48069-0.83029-0.3059-1.3984-0.87399-1.748-1.6606h-0.0874l-2.185 7.7348h27.662c1.5732 0 2.8842-1.2673 2.8842-2.8842v-24.341c-0.13111-0.043702-0.2622-0.087403-0.3496-0.13111" class="pf2"/></g></svg> | ||||
| Before Width: | Height: | Size: 2.0 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867" xmlns="http://www.w3.org/2000/svg"><defs><linearGradient id="a" x1="31.064" x2="45.126" y1="56.825" y2="56.825" gradientTransform="scale(1.0331 .96797)" gradientUnits="userSpaceOnUse"><stop stop-color="#FFF" offset="0"/><stop stop-color="#F4F4F4" offset="1"/></linearGradient></defs><g transform="matrix(.43756 0 0 .43756 1.2096 2.8221)" fill="none" fill-rule="evenodd"><circle cx="32.25" cy="32.25" r="32.25" stroke="#a4a7ad" stroke-width="5.529"/><circle cx="69.106" cy="61.735" r="5.529" fill="#a4a7ad" fill-rule="nonzero"/><path d="m52.142 26.87-1.448-3.855 1.006-2.215a0.747 0.747 0 0 0-0.157-0.84l-2.736-2.715a4.483 4.483 0 0 0-4.591-1.047l-0.765 0.26-3.997-4.48h-14.697l-3.945 4.534-0.744-0.257a4.494 4.494 0 0 0-4.635 1.058l-2.785 2.765a0.592 0.592 0 0 0-0.124 0.67l1.051 2.298-1.44 3.853 0.932 3.474 4.247 15.832a8.055 8.055 0 0 0 3.182 4.519s5.156 3.566 10.244 6.804c0.448 0.285 0.916 0.494 1.418 0.486 0.502 7e-3 0.97-0.201 1.416-0.487a377.05 377.05 0 0 0 10.236-6.817 8.07 8.07 0 0 0 3.177-4.523l4.227-15.84 0.928-3.478z" fill="#fb542b"/><path d="m47.622 27.635-0.066 0.206-0.105 0.37c-0.424 0.502-0.864 0.991-1.319 1.466l-4.082 4.255c-0.444 0.462-0.695 1.043-0.442 1.627l0.551 1.331c0.253 0.584 0.278 1.551 0.035 2.2a3.922 3.922 0 0 1-1.227 1.689l-0.426 0.34c-0.503 0.402-1.393 0.507-1.979 0.234l-1.88-0.874a9.75 9.75 0 0 1-1.941-1.268l-1.779-1.568a0.798 0.798 0 0 1-0.044-1.162l4.333-2.865c0.537-0.355 0.821-1.012 0.516-1.573l-1.54-2.747c-0.306-0.56-0.428-1.305-0.272-1.655s0.78-0.82 1.387-1.045l5.029-1.832c0.606-0.225 0.574-0.457-0.072-0.517l-3.213-0.234c-0.646-0.06-1.12 0.032-1.744 0.203l-2.432 0.59c-0.625 0.171-0.757 0.822-0.64 1.446l1.004 5.334c0.117 0.624 0.175 1.253 0.128 1.398-0.047 0.144-0.603 0.377-1.236 0.518l-0.831 0.184c-0.633 0.141-1.669 0.147-2.303 0.015l-1.006-0.21c-0.635-0.132-1.192-0.359-1.239-0.503-0.048-0.144 9e-3 -0.774 0.127-1.398l0.997-5.335c0.117-0.624-0.016-1.275-0.641-1.445l-2.433-0.587c-0.624-0.17-1.098-0.26-1.744-0.201l-3.213 0.237c-0.646 0.06-0.678 0.292-0.071 0.517l5.031 1.826c0.607 0.224 1.231 0.694 1.388 1.044s0.035 1.094-0.269 1.654l-1.538 2.749c-0.304 0.56-0.019 1.217 0.519 1.572l4.336 2.861a0.799 0.799 0 0 1-0.042 1.162l-1.778 1.57c-0.594 0.5-1.245 0.926-1.94 1.27l-1.878 0.877c-0.586 0.273-1.476 0.169-1.979-0.231l-0.426-0.34a3.98 3.98 0 0 1-1.25-1.741c-0.223-0.596-0.2-1.562 0.052-2.147l0.55-1.331c0.252-0.585 1e-3 -1.165-0.444-1.627l-4.087-4.25a31.971 31.971 0 0 1-1.32-1.464l-0.106-0.37-0.066-0.207c-7e-3 -0.238 0.08-0.995 0.179-1.2 0.098-0.204 0.476-0.802 0.839-1.328l0.874-1.268c0.364-0.526 0.991-1.362 1.395-1.86l1.282-1.574c0.404-0.496 0.749-0.9 0.801-0.897 2e-3 -3e-3 0.525 0.093 1.162 0.212l1.942 0.365c0.636 0.12 1.339 0.251 1.561 0.292 0.221 0.041 0.908-0.085 1.525-0.281l1.396-0.443c0.687-0.216 1.38-0.407 2.08-0.575l0.489 7e-3 0.488-7e-3c0.7 0.166 1.393 0.357 2.08 0.571l1.398 0.442c0.617 0.195 1.303 0.321 1.525 0.28l1.288-0.243 0.272-0.052 1.942-0.367c0.636-0.12 1.159-0.216 1.197-0.213 0.017-3e-3 0.361 0.4 0.766 0.897l1.284 1.572c0.486 0.604 0.952 1.224 1.398 1.858l0.876 1.266c0.363 0.526 0.931 1.482 0.967 1.7 0.036 0.217 0.06 0.59 0.054 0.827zm-15.271 12.696c0.057 0 0.594 0.198 1.193 0.441l0.556 0.226c0.599 0.243 1.563 0.677 2.141 0.964l1.64 0.816c0.578 0.287 0.62 0.825 0.092 1.195l-1.399 0.98c-0.633 0.45-1.247 0.926-1.842 1.426l-0.465 0.397-1.3 1.111c-0.484 0.415-1.269 0.416-1.744 6e-3 -0.58-0.502-1.163-1.001-1.749-1.497a28.88 28.88 0 0 0-1.847-1.414l-1.394-0.964c-0.53-0.367-0.493-0.907 0.082-1.2l1.649-0.841c0.7-0.351 1.412-0.677 2.135-0.977l0.556-0.226c0.598-0.243 1.135-0.443 1.192-0.443z" fill="url(#a)"/></g></svg> | ||||
| Before Width: | Height: | Size: 3.6 KiB | 
| @@ -1 +0,0 @@ | ||||
| <svg xmlns="http://www.w3.org/2000/svg" width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867"><g><g><g><path fill="#fff" stroke="#356ace" stroke-width="1.5" d="m80.03 122.66c14.46-15.6 24.29-8.67 7.5 2.23-5.34 3.47-3.95 4.48-0.36 3.93 5.07-0.77 7.84 0.2 9.07 1.16 2.94 2.3 4.41 0.59 5.4-1.16 1.97-3.47 8.61 0.3 3.75 3.93-3.8 2.83-3.27 6.02 0.18 7.86 6.39 3.4 20.73 10.14 18.57 17.32-0.88 2.93-2.47 5.69-6.07 1.96-6.75-6.97-11.24-12.92-26.79-15.35-10.04-1.58-20.13-4.21-29.82 0.71-4.56 2.42-10.3 3.98-11.52 1.12-1.59-3.73 6.53-6.8 14.38-7.55 5.1-0.49 9.67-3.83 2.68-5.53-8.61-2.65 1.28-10.2 7.5-8.4 4.05 1.18 4.45-1.06 5.53-2.23z" transform="translate(0 -263.13) matrix(.072143 0 0 .072143 -44.234 303.31) matrix(6.1686 0 0 6.1686 310.87 -1171.1)"/></g></g></g></svg> | ||||
| Before Width: | Height: | Size: 779 B | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867" xmlns="http://www.w3.org/2000/svg"><g transform="translate(0 -263.13)"><g transform="matrix(.072143 0 0 .072143 -44.234 303.31)"><g transform="matrix(4.2693 0 0 4.2693 375.06 -875.07)"><g fill="#fff"><path d="m55.768 116.33h5.6254v26.531h-5.6254z"/><path d="m83.567 142.86h-18.761v-3.9469l6.7371-6.8105c1.9948-2.0436 3.2979-3.4605 3.9102-4.2498 0.61183-0.78977 1.0522-1.5205 1.3217-2.1937 0.26898-0.67315 0.4037-1.3705 0.4037-2.0928 0-1.0769-0.29639-1.8787-0.8901-2.405-0.59371-0.52589-1.3858-0.78929-2.3772-0.78929-1.0406 0-2.0501 0.23877-3.0289 0.71589-0.97976 0.47756-2.0013 1.1568-3.0661 2.0376l-3.0838-3.6528c1.3217-1.1261 2.4167-1.9214 3.2859-2.3865 0.86873-0.46502 1.8174-0.8232 2.8454-1.0741 1.0281-0.25087 2.1783-0.3763 3.4512-0.3763 1.6766 0 3.1576 0.30615 4.4426 0.91798 1.285 0.61229 2.2824 1.4685 2.9922 2.57 0.70938 1.1015 1.0648 2.3623 1.0648 3.7815 0 1.2367-0.21742 2.3958-0.65178 3.4791-0.43437 1.0829-1.1075 2.1936-2.0195 3.3318-0.91147 1.1382-2.5179 2.76-4.8189 4.8644l-3.4512 3.2496v0.2569h11.694z"/><path d="m92.214 128.81h1.8508c1.73 0 3.0243-0.34145 3.8837-1.0253 0.85851-0.68337 1.2882-1.6785 1.2882-2.9853 0-1.3184-0.36003-2.2922-1.0796-2.9216-0.72008-0.62854-1.8485-0.94352-3.3843-0.94352h-2.5588zm12.703-4.2103c0 2.8557-0.89243 5.0391-2.6768 6.5513-1.7848 1.5126-4.3223 2.2684-7.6128 2.2684h-2.4134v9.4362h-5.6254v-26.531h8.4746c3.218 0 5.6644 0.69266 7.3406 2.078 1.6752 1.3853 2.5133 3.4508 2.5133 6.1968"/></g><path d="m121.18 137.1c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#ffc434"/><path d="m121.18 122.25c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#60ab60"/><path d="m136.03 137.1c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#e15647"/><path d="m136.03 122.25c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#ffc434"/><path d="m150.88 137.1c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#ffc434"/><path d="m150.88 122.25c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#60ab60"/><path d="m165.73 137.1c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#60ab60"/><path d="m165.73 122.25c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#e15647"/></g></g></g></svg> | ||||
| Before Width: | Height: | Size: 3.0 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867" xmlns="http://www.w3.org/2000/svg"><g transform="translate(0 -263.13)"><g transform="matrix(.072143 0 0 .072143 -44.234 303.31)"><g transform="matrix(4.2693 0 0 4.2693 375.06 -875.07)"><g fill="#231f20"><path d="m55.768 116.33h5.6254v26.531h-5.6254z"/><path d="m83.567 142.86h-18.761v-3.9469l6.7371-6.8105c1.9948-2.0436 3.2979-3.4605 3.9102-4.2498 0.61183-0.78977 1.0522-1.5205 1.3217-2.1937 0.26898-0.67315 0.4037-1.3705 0.4037-2.0928 0-1.0769-0.29639-1.8787-0.8901-2.405-0.59371-0.52589-1.3858-0.78929-2.3772-0.78929-1.0406 0-2.0501 0.23877-3.0289 0.71589-0.97976 0.47756-2.0013 1.1568-3.0661 2.0376l-3.0838-3.6528c1.3217-1.1261 2.4167-1.9214 3.2859-2.3865 0.86873-0.46502 1.8174-0.8232 2.8454-1.0741 1.0281-0.25087 2.1783-0.3763 3.4512-0.3763 1.6766 0 3.1576 0.30615 4.4426 0.91798 1.285 0.61229 2.2824 1.4685 2.9922 2.57 0.70938 1.1015 1.0648 2.3623 1.0648 3.7815 0 1.2367-0.21742 2.3958-0.65178 3.4791-0.43437 1.0829-1.1075 2.1936-2.0195 3.3318-0.91147 1.1382-2.5179 2.76-4.8189 4.8644l-3.4512 3.2496v0.2569h11.694z"/><path d="m92.214 128.81h1.8508c1.73 0 3.0243-0.34145 3.8837-1.0253 0.85851-0.68337 1.2882-1.6785 1.2882-2.9853 0-1.3184-0.36003-2.2922-1.0796-2.9216-0.72008-0.62854-1.8485-0.94352-3.3843-0.94352h-2.5588zm12.703-4.2103c0 2.8557-0.89243 5.0391-2.6768 6.5513-1.7848 1.5126-4.3223 2.2684-7.6128 2.2684h-2.4134v9.4362h-5.6254v-26.531h8.4746c3.218 0 5.6644 0.69266 7.3406 2.078 1.6752 1.3853 2.5133 3.4508 2.5133 6.1968"/></g><path d="m121.18 137.1c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#ffc434"/><path d="m121.18 122.25c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#60ab60"/><path d="m136.03 137.1c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#e15647"/><path d="m136.03 122.25c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#ffc434"/><path d="m150.88 137.1c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#ffc434"/><path d="m150.88 122.25c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#60ab60"/><path d="m165.73 137.1c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#60ab60"/><path d="m165.73 122.25c0-3.4494-2.7962-6.2456-6.2456-6.2456-3.4494 0-6.2456 2.7962-6.2456 6.2456 0 3.4494 2.7962 6.2456 6.2456 6.2456 3.4494 0 6.2456-2.7962 6.2456-6.2456" fill="#e15647"/></g></g></g></svg> | ||||
| Before Width: | Height: | Size: 3.0 KiB | 
| @@ -1,2 +0,0 @@ | ||||
| <?xml version="1.0" encoding="UTF-8"?> | ||||
| <svg width="128" height="128" version="1.1" viewBox="0 0 33.867 33.867" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink"><defs><clipPath id="SVGID_00000142168627081468672430000006527680084326249886_"><use xlink:href="#SVGID_1_"/></clipPath><linearGradient id="SVGID_00000088853459014864040730000009902632102805990829_" x1="536.6" x2="292.94" y1="1113.2" y2="64.084" gradientTransform="matrix(1,0,0,-1,0,788)" gradientUnits="userSpaceOnUse"><stop stop-color="#24ECC6" stop-opacity="0" offset=".4799"/><stop stop-color="#24ECC6" offset=".9944"/></linearGradient><linearGradient id="SVGID_00000075863372972845837890000016599907698185993344_" x1="759.68" x2="219.42" y1="79.312" y2="1003.2" gradientTransform="matrix(1,0,0,-1,0,788)" gradientUnits="userSpaceOnUse"><stop stop-color="#ABFFEF" offset=".066012"/><stop stop-color="#CAC9FF" offset=".4499"/><stop stop-color="#6D4AFF" offset="1"/></linearGradient><rect id="SVGID_1_" width="862" height="787"/></defs><g transform="matrix(.039294 0 0 .039294 3.7235e-7 1.4686)"><clipPath><use xlink:href="#SVGID_1_"/></clipPath><g clip-path="url(#SVGID_00000142168627081468672430000006527680084326249886_)"><path class="st1" d="m346.1 740.3c32.8 59.3 116.9 62.6 154 5.9l346.7-528.4c36.8-56 1.6-131.2-65-138.8l-681.4-78.1c-72.7-8.3-124.4 68.9-89.1 132.9z" clip-rule="evenodd" fill="#6851f6" fill-rule="evenodd"/><path d="m346.3 740.3c32.8 59.3 116.9 62.6 154 5.9l346.7-528.4c36.8-56 1.6-131.2-65-138.8l-681.4-78.2c-72.7-8.3-124.4 68.9-89 132.9z" clip-rule="evenodd" fill="url(#SVGID_00000088853459014864040730000009902632102805990829_)" fill-rule="evenodd"/><path d="m396.4 638.7-30.8 46.3c-12.5 18.7-40.4 17.6-51.2-2.1l31.7 57.5c5.7 10.2 12.8 18.8 21.1 25.7 39.3 33 102.2 27.1 133-19.8l346.7-528.4c36.8-56 1.6-131.2-65-138.8l-681.5-78.2c-72.7-8.4-124.4 68.9-89.1 132.9l2.7 4.9 580.1 67.1c37 4.3 56.5 46 36 77.1z" fill="url(#SVGID_00000075863372972845837890000016599907698185993344_)"/></g></g></svg> | ||||
| Before Width: | Height: | Size: 2.0 KiB | 
| @@ -1,34 +0,0 @@ | ||||
| /* Homepage hero section */ | ||||
|  | ||||
| .mdx-hero { | ||||
|     color: var(--pg-hero-color); | ||||
|     margin: 0 0.8rem; | ||||
|     text-align: center; | ||||
| } | ||||
| .mdx-hero h1 { | ||||
|     color: currentcolor; | ||||
|     margin-bottom: 1rem; | ||||
|     font-size: 2.6rem; | ||||
| } | ||||
| @media screen and (max-width: 29.9375em) { | ||||
|     .mdx-hero h1 { | ||||
|         font-size: 1.4rem; | ||||
|     } | ||||
| } | ||||
| .mdx-hero__content { | ||||
|     margin-top: 2rem; | ||||
|     padding-bottom: 0rem; | ||||
| } | ||||
| [data-md-color-scheme="slate"] .mdx-hero .md-button--primary { | ||||
|     color: var(--md-primary-fg-color); | ||||
| } | ||||
| .mdx-hero .md-button--primary { | ||||
|     color: var(--md-primary-fg-color); | ||||
|     background-color: var(--pg-hero-color); | ||||
|     border-color: transparent; | ||||
|     margin-right: 0.5rem; | ||||
|     margin-top: 0.5rem; | ||||
| } | ||||
| nav[class="md-tabs"] { | ||||
|     border-bottom: none; | ||||
| } | ||||
							
								
								
									
										80
									
								
								docs/basics/account-creation.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,80 @@ | ||||
| --- | ||||
| title: "Account Creation" | ||||
| icon: 'material/account-plus' | ||||
| --- | ||||
|  | ||||
| Often people sign up for services without thinking. Maybe it's a streaming service so you can watch that new show everyone's talking about, or an account that gives you a discount for your favorite fast food place. Whatever the case may be, you should consider the implications for your data now and later on down the line. | ||||
|  | ||||
| There are risks associated with every new service that you use. Data breaches; disclosure of customer information to third parties; rogue employees accessing data; all are possibilities that must be considered when giving your information out. You need to be confident that you can trust the service, which is why we don't recommend storing valuable data on anything but the most mature and battle-tested products. That usually means services which provide E2EE and have undergone a cryptographic audit. An audit increases assurance that the product was designed without glaring security issues caused by an inexperienced developer. | ||||
|  | ||||
| It can also be difficult to delete the accounts on some services. Sometimes [overwriting data](account-deletion.md#overwriting-account-information) associated with an account can be possible, but in other cases the service will keep an entire history of changes to the account. | ||||
|  | ||||
| ## Terms of Service & Privacy Policy | ||||
|  | ||||
| The ToS are the rules that you agree to follow when using the service. With larger services these rules are often enforced by automated systems. Sometimes these automated systems can make mistakes. For example, you may be banned or locked out of your account on some services for using a VPN or VOIP number. Appealing such bans is often difficult, and involves an automated process too, which isn't always successful. This would be one of the reasons why we wouldn't suggest using Gmail for email as an example. Email is crucial for access to other services you might have signed up for. | ||||
|  | ||||
| The Privacy Policy is how the service says they will use your data and it is worth reading so that you understand how your data will be used. A company or organization might not be legally obligated to follow everything contained in the policy (it depends on the jurisdiction). We would recommend having some idea what your local laws are and what they permit a provider to collect. | ||||
|  | ||||
| We recommend looking for particular terms such as "data collection", "data analysis", "cookies", "ads" or "3rd-party" services. Sometimes you will be able to opt-out from data collection or from sharing your data, but it is best to choose a service that respects your privacy from the start. | ||||
|  | ||||
| Keep in mind you're also placing your trust in the company or organization and that they will comply with their own privacy policy. | ||||
|  | ||||
| ## Authentication methods | ||||
|  | ||||
| There are usually multiple ways to sign up for an account, each with their own benefits and drawbacks. | ||||
|  | ||||
| ### Email and password | ||||
|  | ||||
| The most common way to create a new account is by an email address and password. When using this method, you should use a password manager and follow [best practices](passwords-overview.md) regarding passwords. | ||||
|  | ||||
| !!! tip | ||||
|  | ||||
|     You can use your password manager to organize other authentication methods too! Just add the new entry and fill the appropriate fields, you can add notes for things like security questions or a backup key. | ||||
|  | ||||
| You will be responsible for managing your login credentials. For added security, you can set up [MFA](multi-factor-authentication.md) on your accounts. | ||||
|  | ||||
| [Recommended password managers](../passwords.md){ .md-button } | ||||
|  | ||||
| #### Email aliases | ||||
|  | ||||
| If you don't want to give your real email address to a service, you have the option to use an alias. We described them in more detail on our email services recommendation page. Essentially, alias services allow you to generate new email addresses that forward all emails to your main address. This can help prevent tracking across services and help you manage the marketing emails that sometimes come with the sign up process. Those can be filtered automatically based on the alias they are sent to. | ||||
|  | ||||
| Should a service get hacked, you might start receiving phishing or spam emails to the address you used to sign up. Using unique aliases for each service can assist in identifying exactly what service was hacked. | ||||
|  | ||||
| [Recommended email aliasing services](../email.md#email-aliasing-services){ .md-button } | ||||
|  | ||||
| ### Single sign-on | ||||
|  | ||||
| !!! note | ||||
|    | ||||
|     We are discussing Single sign-on for personal use, not enterprise users. | ||||
|  | ||||
| Single sign-on (SSO) is an authentication method that allows you to register for a service without sharing much information, if any. Whenever you see something along the lines of "Sign-in with *provider name*" on a registration form it's SSO. | ||||
|  | ||||
| When you choose single sign-on in a website, it will prompt your SSO provider login page and after that your account will be connected. Your password won't be shared but some basic information will (you can review it during the login request). This process is needed every time you want to log in to the same account. | ||||
|  | ||||
| The main advantages are: | ||||
|  | ||||
| - **Security**: no risk of being involved in a [data breach](https://en.wikipedia.org/wiki/Data_breach) because the website does not store your credentials. | ||||
| - **Ease of use**: multiple accounts are managed by a single login. | ||||
|  | ||||
| But there are disadvantages: | ||||
|  | ||||
| - **Privacy**: a SSO provider will know the services you use. | ||||
| - **Centralization**: if your SSO account gets compromised or you aren't able to login to it, all other accounts connected to it are affected. | ||||
|  | ||||
| SSO can be especially useful in those situations where you could benefit from deeper integration between services. For example, one of those services may offer SSO for the others. Our recommendation is to limit SSO to only where you need it and protect the main account with [MFA](multi-factor-authentication.md). | ||||
|  | ||||
| All services that use SSO will be as secure as your SSO account. For example, if you want to secure an account with a hardware key but that service doesn't support hardware keys, you can secure your SSO account with a hardware key and now you essentially have hardware MFA on all your accounts. It is worth noting though that weak authentication on your SSO account means that any account tied to that login will also be weak. | ||||
|  | ||||
| ### Phone number | ||||
|  | ||||
| We recommend avoiding services that require a phone number for sign up. A phone number can identity you across multiple services and depending on data sharing agreements this will make your usage easier to track, particularly if one of those services is breached as the phone number is often **not** encrypted. | ||||
|  | ||||
| You should avoid giving out your real phone number if you can. Some services will allow the use of VOIP numbers, however these often trigger fraud detection systems, causing an account to be locked down, so we don't recommend that for important accounts. | ||||
|  | ||||
| In many cases you will need to provide a number that you can receive SMS or calls from, particularly when shopping internationally, in case there is a problem with your order at border screening. It's common for services to use your number as a verification method; don't let yourself get locked out of an important account because you wanted to be clever and give a fake number! | ||||
|  | ||||
| ### Username and password | ||||
|  | ||||
| Some services allow you to register without using an email address and only require you to set a username and password. These services may provide increased anonymity when combined with a VPN or Tor. Keep in mind that for these accounts there will most likely be **no way to recover your account** in the event you forget your username or password. | ||||
| @@ -44,13 +44,13 @@ Residents of the EEA have additional rights regarding data erasure specified in | ||||
| 
 | ||||
| In some situations where you plan to abandon an account, it may make sense to overwrite the account information with fake data. Once you've made sure you can log in, change all the information in your account to falsified information. The reason for this is that many sites will retain information you previously had even after account deletion. The hope is that they will overwrite the previous information with the newest data you entered. However, there is no guarantee that there won't be backups with the prior information. | ||||
| 
 | ||||
| For the account email, either create a new alternate email account via your provider of choice or create an alias using an [email aliasing service](/email/#email-aliasing-services). You can then delete your alternate email address once you are done. We recommend against using temporary email providers, as oftentimes it is possible to reactivate temporary emails. | ||||
| For the account email, either create a new alternate email account via your provider of choice or create an alias using an [email aliasing service](../email.md#email-aliasing-services). You can then delete your alternate email address once you are done. We recommend against using temporary email providers, as oftentimes it is possible to reactivate temporary emails. | ||||
| 
 | ||||
| ### Delete | ||||
| 
 | ||||
| You can check [JustDeleteMe](https://justdeleteme.xyz) for instructions on deleting the account for a specific service. Some sites will graciously have a "Delete Account" option, while others will go as far as to force you to speak with a support agent. The deletion process can vary from site to site, with account deletion being impossible on some. | ||||
| 
 | ||||
| For services that don't allow account deletion, the best thing to do is falsify all your information as previously mentioned and strengthen account security. To do so, enable [MFA](multi-factor-authentication.md) and any extra security features offered. As well, change the password to a randomly-generated one that is the maximum allowed size (a [password manager](/passwords/#local-password-managers) can be useful for this). | ||||
| For services that don't allow account deletion, the best thing to do is falsify all your information as previously mentioned and strengthen account security. To do so, enable [MFA](multi-factor-authentication.md) and any extra security features offered. As well, change the password to a randomly-generated one that is the maximum allowed size (a [password manager](../passwords.md) can be useful for this). | ||||
| 
 | ||||
| If you're satisfied that all information you care about is removed, you can safely forget about this account. If not, it might be a good idea to keep the credentials stored with your other passwords and occasionally re-login to reset the password. | ||||
| 
 | ||||
| @@ -59,5 +59,3 @@ Even when you are able to delete an account, there is no guarantee that all your | ||||
| ## Avoid New Accounts | ||||
| 
 | ||||
| As the old saying goes, "an ounce of prevention is worth a pound of cure." Whenever you feel tempted to sign up for a new account, ask yourself, "Do I really need this? Can I accomplish what I need to without an account?" It can often be much harder to delete an account than to create one. And even after deleting or changing the info on your account, there might be a cached version from a third-party—like the [Internet Archive](https://archive.org/). Avoid the temptation when you're able to—your future self will thank you! | ||||
| 
 | ||||
| --8<-- "includes/abbreviations.en.md" | ||||
							
								
								
									
										59
									
								
								docs/basics/common-misconceptions.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,59 @@ | ||||
| --- | ||||
| title: "Common Misconceptions" | ||||
| icon: 'material/robot-confused' | ||||
| --- | ||||
|  | ||||
| ## "Open-source software is always secure" or "Proprietary software is more secure" | ||||
|  | ||||
| These myths stem from a number of prejudices, but whether the source code is available and how software is licensed does not inherently affect its security in any way. ==Open-source software has the *potential* to be more secure than proprietary software, but there is absolutely no guarantee this is the case.== When you evaluate software, you should look at the reputation and security of each tool on an individual basis. | ||||
|  | ||||
| Open-source software *can* be audited by third-parties, and is often more transparent about potential vulnerabilities than proprietary counterparts. It also allows you to review the code and disable any suspicious functionality you find yourself. However, *unless you do so*, there is no guarantee that code has ever been evaluated, especially with smaller software projects. The open development process has also sometimes been exploited to introduce new vulnerabilities into even large projects.[^1] | ||||
|  | ||||
| On the flip side, proprietary software is less transparent, but that doesn't imply that it's not secure. Major proprietary software projects can be audited internally and by third-party agencies, and independent security researchers can still find vulnerabilities with techniques like reverse engineering. | ||||
|  | ||||
| To avoid biased decisions, it's *vital* that you evaluate the privacy and security standards of the software you use. | ||||
|  | ||||
| ## "Shifting trust can increase privacy" | ||||
|  | ||||
| We talk about "shifting trust" a lot when discussing solutions like VPNs (which shift the trust you place in your ISP to the VPN provider). While this protects your browsing data from your ISP *specifically*, the VPN provider you choose still has access to your browsing data: Your data isn't completely secured from all parties. This means that: | ||||
|  | ||||
| 1. You must exercise caution when choosing a provider to shift trust to. | ||||
| 2. You should still use other techniques, like E2EE, to protect your data completely. Merely distrusting one provider to trust another is not securing your data. | ||||
|  | ||||
| ## "Privacy-focused solutions are inherently trustworthy" | ||||
|  | ||||
| Focusing solely on the privacy policies and marketing of a tool or provider can blind you to its weaknesses. When you're looking for a more private solution, you should determine what the underlying problem is and find technical solutions to that problem. For example, you may want to avoid Google Drive, which gives Google access to all of your data. The underlying problem in this case is lack of E2EE, so you should make sure that the provider you switch to actually implements E2EE, or use a tool (like [Cryptomator](../encryption.md#cryptomator-cloud)) which provides E2EE on any cloud provider. Switching to a "privacy-focused" provider (that doesn't implement E2EE) doesn't solve your problem: it just shifts trust from Google to that provider. | ||||
|  | ||||
| The privacy policies and business practices of providers you choose are very important, but should be considered secondary to technical guarantees of your privacy: You shouldn't shift trust to another provider when trusting a provider isn't a requirement at all. | ||||
|  | ||||
| ## "Complicated is better" | ||||
|  | ||||
| We often see people describing privacy threat models that are overly complex. Often, these solutions include problems like many different email accounts or complicated setups with lots of moving parts and conditions. The replies are usually answers to "What is the best way to do *X*?" | ||||
|  | ||||
| Finding the "best" solution for yourself doesn't necessarily mean you are after an infallible solution with dozens of conditions—these solutions are often difficult to work with realistically. As we discussed previously, security often comes at the cost of convenience. Below, we provide some tips: | ||||
|  | ||||
| 1. ==Actions need to serve a particular purpose:== think about how to do what you want with the fewest actions. | ||||
| 2. ==Remove human failure points:== We fail, get tired, and forget things. To maintain security, avoid relying on manual conditions and processes that you have to remember. | ||||
| 3. ==Use the right level of protection for what you intend.== We often see recommendations of so-called law-enforcement or subpoena-proof solutions. These often require specialist knowledge and generally aren't what people want. There's no point in building an intricate threat model for anonymity if you can be easily de-anonymized by a simple oversight. | ||||
|  | ||||
| So, how might this look? | ||||
|  | ||||
| One of the clearest threat models is one where people *know who you are* and one where they do not. There will always be situations where you must declare your legal name and there are others where you don't need to. | ||||
|  | ||||
| 1. **Known identity** - A known identity is used for things where you must declare your name. There are many legal documents and contracts where a legal identity is required. This could range from opening a bank account, signing a property lease, obtaining a passport, customs declarations when importing items, or otherwise dealing with your government. These things will usually lead to credentials such as credit cards, credit rating checks, account numbers, and possibly physical addresses. | ||||
|  | ||||
|     We don't suggest using a VPN or Tor for any of these things, as your identity is already known through other means. | ||||
|  | ||||
|     !!! tip | ||||
|  | ||||
|         When shopping online, the use of a [parcel locker](https://en.wikipedia.org/wiki/Parcel_locker) can help keep your physical address private. | ||||
|  | ||||
| 2. **Unknown identity** - An unknown identity could be a stable pseudonym that you regularly use. It is not anonymous because it doesn't change. If you're part of an online community, you may wish to retain a persona that others know. This pseudonym isn't anonymous because—if monitored for long enough—details about the owner can reveal further information, such as the way they write, their general knowledge about topics of interest, etc. | ||||
|  | ||||
|     You may wish to use a VPN for this, to mask your IP address. Financial transactions are more difficult to mask: You could consider using anonymous cryptocurrencies, such as [Monero](https://www.getmonero.org/). Employing altcoin shifting may also help to disguise where your currency originated. Typically, exchanges require KYC (know your customer) to be completed before they'll allow you to exchange fiat currency into any kind of cryptocurrency. Local meet-up options may also be a solution; however, those are often more expensive and sometimes also require KYC. | ||||
|  | ||||
| 3. **Anonymous identity** - Even with experience, anonymous identities are difficult to maintain over long periods of time. They should be short-term and short-lived identities which are rotated regularly. | ||||
|  | ||||
|     Using Tor can help with this. It is also worth noting that greater anonymity is possible through asynchronous communication: Real-time communication is vulnerable to analysis of typing patterns (i.e. more than a paragraph of text, distributed on a forum, via email, etc.) | ||||
|  | ||||
| [^1]: One notable example of this is the [2021 incident in which University of Minnesota researchers introduced three vulnerabilities into the Linux kernel development project](https://cse.umn.edu/cs/linux-incident). | ||||
| @@ -1,193 +0,0 @@ | ||||
| --- | ||||
| title: "Common Threats" | ||||
| icon: 'material/eye-outline' | ||||
| --- | ||||
|  | ||||
| Broadly speaking, we categorize our recommendations into these general categories of [threats](threat-modeling.md) or goals that apply to most people. ==You may be concerned with none, one, a few, or all of these possibilities==, and the tools and services you use depend on what your goals are. You may have specific threats outside of these categories as well, which is perfectly fine! The important part is developing an understanding of the benefits and shortcomings of the tools you choose to use, because virtually none of them will protect you from every threat imaginable. | ||||
|  | ||||
| - <span class="pg-purple">:material-incognito: Anonymity</span> - Shielding your online activity from your real-life identity, protecting you from people who are trying to uncover *your* identity specifically | ||||
| - <span class="pg-red">:material-target-account: Targeted Attacks</span> - Being protected  from dedicated hackers or other malicious agents trying to gain access to *your* data or devices specifically | ||||
| - <span class="pg-orange">:material-bug-outline: Passive Attacks</span> - Being protected from things like malware, data breaches, and other attacks that are made against many people at once | ||||
| - <span class="pg-teal">:material-server-network: Service Providers</span> - Protecting your data from service providers, e.g. with end-to-end encryption rendering your data unreadable to the server | ||||
| - <span class="pg-blue">:material-eye-outline: Mass Surveillance</span> - Protection from government agencies, organizations, websites, and services working together to track your activities | ||||
| - <span class="pg-brown">:material-account-cash: Surveillance Capitalism</span> - Protecting yourself from big advertising networks like Google and Facebook, as well as a myriad of other third-party data collectors | ||||
| - <span class="pg-green">:material-account-search: Public Exposure</span> - Limiting the information about you online that is accessible to search engines or the general public | ||||
| - <span class="pg-blue-gray">:material-close-outline: Censorship</span> - Avoiding censored access to information and being censored yourself when speaking online | ||||
|  | ||||
| Some of these threats may weigh more than others depending on your specific concerns. For example, a software developer with access to valuable or critical data may be primarily concerned with <span class="pg-red">:material-target-account: Targeted Attacks</span>, but beyond that they probably still want to protect their personal data from being swept up in <span class="pg-blue">:material-eye-outline: Mass Surveillance</span> programs. Similarly, an "Average Joe" may be primarily concerned with <span class="pg-green">:material-account-search: Public Exposure</span> of their personal data, but they should still be wary of security-focused issues such as <span class="pg-orange">:material-bug-outline: Passive Attacks</span> like malware affecting their devices. | ||||
|  | ||||
| ## Anonymity vs Privacy | ||||
|  | ||||
| <span class="pg-purple">:material-incognito: Anonymity</span> | ||||
|  | ||||
| Anonymity is often confused for privacy, but it's a distinct concept. While privacy is a set of choices you make about how your data is used and shared, anonymity is the complete disassociation of your online activities from your real-life identity. | ||||
|  | ||||
| Whistleblowers and journalists, for example, can have a much more extreme threat model requiring total anonymity. That's not only hiding what they do, what data they have, and not getting hacked by hackers or governments, but also hiding who they are entirely. They will sacrifice any kind of convenience if it means protecting their anonymity, privacy, or security, as their lives could depend on it. Most regular people do not need to go so far. | ||||
|  | ||||
| ## Security and Privacy | ||||
|  | ||||
| <span class="pg-orange">:material-bug-outline: Passive Attacks</span> | ||||
|  | ||||
| Security and privacy are often conflated, because you need security to obtain any semblance of privacy: Using tools which appear private is futile if they could easily be exploited by attackers to release your data later. However, the inverse is not necessarily true; the most secure service in the world *isn't necessarily* private. The best example of this is trusting data to Google, who, given their scale, have had minimal security incidents by employing industry-leading security experts to secure their infrastructure. Even though Google provides a very secure service, very few would consider their data private in Google's free consumer products (Gmail, YouTube, etc). | ||||
|  | ||||
| When it comes to application security, we generally do not (and sometimes cannot) know if the software that we use is malicious, or might one day become malicious. Even with the most trustworthy developers, there is generally no guarantee that their software does not have a serious vulnerability that could later be exploited. | ||||
|  | ||||
| To minimize the potential damage that a malicious piece of software can do, you should employ security by compartmentalization. This could come in the form of using different computers for different jobs, using virtual machines to separate different groups of related applications, or using a secure operating system with a strong focus on application sandboxing and mandatory access control. | ||||
|  | ||||
| !!! tip | ||||
|  | ||||
|     Mobile operating systems are generally safer than desktop operating systems when it comes to application sandboxing. Apps cannot obtain root access and only have access to system resources which you grant them. | ||||
|  | ||||
|     Desktop operating systems generally lag behind on proper sandboxing. ChromeOS has similar sandboxing properties to Android, and macOS has full system permission control and opt-in (for developers) sandboxing for applications, however these operating systems do transmit identifying information to their respective OEMs. Linux tends to not submit information to system vendors, but it has poor protection against exploits and malicious apps. This can be mitigated somewhat with specialized distributions which make heavy use of virtual machines or containers, such as Qubes OS. | ||||
|  | ||||
| <span class="pg-red">:material-target-account: Targeted Attacks</span> | ||||
|  | ||||
| Targeted attacks against a specific user are more problematic to deal with. Common avenues of attack include sending malicious documents via emails, exploiting vulnerabilities in the browser and operating systems, and physical attacks. If this is a concern for you, you may have to employ more advanced threat mitigation strategies. | ||||
|  | ||||
| !!! tip | ||||
|  | ||||
|     **Web browsers**, **email clients**, and **office applications** all typically run untrusted code sent to you from third-parties by design. Running multiple virtual machines to separate applications like these from your host system as well as each other is one technique you can use to avoid an exploit in these applications from compromising the rest of your system. Technologies like Qubes OS or Microsoft Defender Application Guard on Windows provide convenient methods to do this seamlessly, for example. | ||||
|  | ||||
| If you are concerned about **physical attacks** you should use an operating system with a secure verified boot implementation, such as Android, iOS, macOS, [Windows (with TPM)](https://docs.microsoft.com/en-us/windows/security/information-protection/secure-the-windows-10-boot-process). You should also make sure that your drive is encrypted, and that the operating system uses a TPM or Secure [Enclave](https://support.apple.com/guide/security/secure-enclave-sec59b0b31ff/1/web/1) or [Element](https://developers.google.com/android/security/android-ready-se) for rate limiting attempts to enter the encryption passphrase. You should avoid sharing your computer with people you don't trust, because most desktop operating systems do not encrypt data separately per-user. | ||||
|  | ||||
| ## Privacy From Service Providers | ||||
|  | ||||
| <span class="pg-teal">:material-server-network: Service Providers</span> | ||||
|  | ||||
| We live in a world where almost everything is connected to the internet. Our "private" messages, emails, social interactions are typically stored on a server somewhere. Generally, when you send someone a message, that message is then stored on a server, and when your friend wants to read the message, the server will show it to them. | ||||
|  | ||||
| The obvious problem with this is that the service provider (or a hacker who has compromised the server) can look into your "private" conversations whenever and however they want, without you ever knowing. This applies to many common services like SMS messaging, Telegram, Discord, and so on. | ||||
|  | ||||
| Thankfully, end-to-end encryption can alleviate this issue by encrypting communications between you and your desired recipients before they are even sent to the server. The confidentiality of your messages is guaranteed, so long as the service provider does not have access to the private keys of either party. | ||||
|  | ||||
| ??? note "Note on web-based encryption" | ||||
|  | ||||
|     In practice, the effectiveness of different end-to-end encryption implementations varies. Applications such as [Signal](../real-time-communication.md#signal) run natively on your device, and every copy of the application is the same across different installations. If the service provider were to backdoor their application in an attempt to steal your private keys, that could later be detected using reverse engineering. | ||||
|  | ||||
|     On the other hand, web based end-to-end encryption implementations such as Proton Mail's webmail or Bitwarden's web vault rely on the server dynamically serving JavaScript code to the browser to handle cryptographic operations. A malicious server could target a specific user and send them malicious JavaScript code to steal their encryption key, and it would be extremely hard for the user to ever notice such a thing. Even if the user does notice the attempt to steal their key, it would be incredibly hard to prove that it is the provider trying to do so, because the server can choose to serve different web clients to different users. | ||||
|  | ||||
|     Therefore, when relying on end-to-end encryption, you should choose to use native applications over web clients whenever possible. | ||||
|  | ||||
| Even with end-to-end encryption, service providers can still profile you based on **metadata**, which is typically not protected. While the service provider could not read your messages to see what you're saying, they can still observe things like who you're talking to, how often you message them, and what times you're typically active. Protection of metadata is fairly uncommon, and you should pay close attention to the technical documentation of the software you are using to see if there is any metadata minimization or protection at all, if that is a concern for you. | ||||
|  | ||||
| ## Mass Surveillance Programs | ||||
|  | ||||
| Mass surveillance is an effort to surveil many or all of a given population. It often refers to government programs such as the ones [disclosed by Edward Snowden in 2013](https://en.wikipedia.org/wiki/Global_surveillance_disclosures_(2013%E2%80%93present)). However, it can also be carried out by corporations, either on behalf of government agencies or by their own initiative. | ||||
|  | ||||
| Online, you can be tracked via a wide variety of methods, including but not limited to: | ||||
|  | ||||
| - Your IP address | ||||
| - Browser cookies | ||||
| - Data you submit to websites | ||||
| - Your browser or device fingerprint | ||||
| - Payment method correlation | ||||
|  | ||||
| Therefore, your goals could be to segregate your online identities from each other, to blend in with other users, and to simply avoid giving out identifying information to anyone as much as possible. | ||||
|  | ||||
| <span class="pg-blue">:material-eye-outline: Mass Surveillance</span> | ||||
|  | ||||
| Governments often cite mass surveillance programs as necessary to combat terrorism and prevent crime, however it is most often used to disproportionately target minorities, political dissidents and many other groups to create a chilling effect on free speech. | ||||
|  | ||||
| !!! quote "ACLU: [The Privacy Lesson of 9/11: Mass Surveillance is Not the Way Forward](https://www.aclu.org/news/national-security/the-privacy-lesson-of-9-11-mass-surveillance-is-not-the-way-forward)" | ||||
|  | ||||
|     In the face of [Edward Snowden's disclosures of government programs such as [PRISM](https://en.wikipedia.org/wiki/PRISM) and [Upstream](https://en.wikipedia.org/wiki/Upstream_collection)], intelligence officials also admitted that the NSA had for years been secretly collecting records about virtually every American’s phone calls — who’s calling whom, when those calls are made, and how long they last. This kind of information, when amassed by the NSA day after day, can reveal incredibly sensitive details about people’s lives and associations, such as whether they have called a pastor, an abortion provider, an addiction counselor, or a suicide hotline. | ||||
|  | ||||
| Despite growing mass surveillance in the United States, the government has found that mass surveillance programs like Section 215 have had "little unique value" with respect to stopping actual crimes or terrorist plots, with efforts largely duplicating the FBI's own targeted surveillance programs.[^1] | ||||
|  | ||||
| <span class="pg-brown">:material-account-cash: Surveillance Capitalism</span> | ||||
|  | ||||
| > Surveillance capitalism is an economic system centered around the capture and commodification of personal data for the core purpose of profit-making.[^2] | ||||
|  | ||||
| Tracking and surveillance by private corporations is a growing concern for many as well. Pervasive ad networks like those operated by Google and Facebook span the internet far beyond just the sites they control, tracking your actions along the way. Using tools like content blockers to limit network requests to their servers, and reading the privacy policies of the services you use can help you avoid many basic adversaries, but can never completely protect you from all tracking.[^3] | ||||
|  | ||||
| Additionally, even companies outside of the ad-tech/tracking space can share your information with [data brokers](https://en.wikipedia.org/wiki/Information_broker) (like Cambridge Analytica, Experian, or Datalogix) or other parties, so you can't automatically assume your data is safe merely because the service you are using doesn't fall within a typical data sharing/tracking category. The strongest protection against corporate data collection is to always encrypt or obfuscate your data whenever possible to make it as difficult as possible for different providers to correlate data with each other and build a profile on you. | ||||
|  | ||||
| ## Limiting Public Information | ||||
|  | ||||
| <span class="pg-green">:material-account-search: Public Exposure</span> | ||||
|  | ||||
| The best way to ensure your data is private is to simply not put it out there in the first place. Deleting information you find about yourself online is one of the best first steps you can take to regain your privacy. | ||||
|  | ||||
| - [View our guide on account deletion :hero-arrow-circle-right-fill:](account-deletion.md) | ||||
|  | ||||
| On sites where you do share information, checking the privacy settings of your account to limit how widely that data is spread is very important. For example, if your accounts have a "private mode," enable it to make sure your account isn't being indexed by search engines and can't be viewed by people you don't vet beforehand. | ||||
|  | ||||
| If you have already submitted your real information to a number of sites which shouldn't have it, consider employing disinformation tactics such as submitting fictitious information related to the same online identity to make your real information indistinguishable from the false information. | ||||
|  | ||||
| ## Avoiding Censorship | ||||
|  | ||||
| <span class="pg-blue-gray">:material-close-outline: Censorship</span> | ||||
|  | ||||
| Censorship online can be carried out to varying degrees by actors including totalitarian governments, network administrators, and service providers seeking to control the speech of their users and the information they can access. These efforts to filter the internet will always be incompatible with the ideals of free speech. | ||||
|  | ||||
| Censorship on corporate platforms is increasingly common as platforms like Twitter and Facebook give in to public demand, market pressures, and pressures from government agencies. Government pressures can be covert requests to businesses, such as the White House [requesting the takedown](https://www.nytimes.com/2012/09/17/technology/on-the-web-a-fine-line-on-free-speech-across-globe.html) of a provocative YouTube video; or overt, such as the Chinese government requiring companies to adhere to a strict regime of censorship. | ||||
|  | ||||
| People concerned with the threat of censorship can use technologies like Tor to circumvent it, and support platforms which provide censorship-resistant communication such as Matrix, which has no centralized account authority which can close down accounts arbitrarily. | ||||
|  | ||||
| !!! important | ||||
|  | ||||
|     While simply evading censorship itself is relatively easy, hiding the fact that you are evading the censorship system from the censors can be very problematic. | ||||
|  | ||||
|     You should consider what aspects of the network your adversary can observe, and whether you have plausible deniability for your actions. For example, using encrypted DNS can help you bypass rudimentary censorship systems based solely on DNS, but it cannot truly hide what you are visiting from your ISP. A VPN or Tor can help hide what you are visiting from the network administrators, but cannot hide that you are using those networks. Pluggable transports like Obfs4proxy, Meek or Shadowsocks can help you evade firewalls that block common VPN protocols or Tor, but an adversary can still figure out that you are actively trying to bypass their censorship system as opposed to just protecting your privacy through probing or deep packet inspection. | ||||
|  | ||||
| You must always consider the risks involved with trying to bypass censorship, what the potential consequences are, and how sophisticated your adversary may be. Be extra cautious with your software selection and have a backup plan in case you are caught. | ||||
|  | ||||
| ## Common Misconceptions | ||||
|  | ||||
| :material-numeric-1-circle: **Open-source software is always secure** or **Proprietary software is more secure** | ||||
|  | ||||
| These myths stem from a number of prejudices, but the source-availability and licensure of a software product does not inherently affect its security in any way. ==Open-source software has the *potential* to be more secure than proprietary software, but there is absolutely no guarantee this is the case.== When you evaluate software, you need to look at the reputation and security of each tool on an individual basis. | ||||
|  | ||||
| Open-source software *can* be audited by third-parties and is often more transparent regarding potential vulnerabilities than their proprietary counterparts. They can also be more flexible, allowing you to delve into the code and disable any suspicious functionality you find yourself. However, unless you review the code yourself there is no guarantee that code has ever been evaluated, especially with smaller software projects, and the open development process can sometimes be exploited by malicious parties to introduce new vulnerabilities into even large projects.[^4] | ||||
|  | ||||
| On the flip side, proprietary software is less transparent, but that does not imply it is not secure. Major proprietary software projects can be audited internally and by third-party agencies, and independent security researchers can still find vulnerabilities with techniques like reverse engineering. | ||||
|  | ||||
| At the end of the day, it is **vital** that you research and evaluate the privacy and security properties of each piece of software being used and avoid making decisions based on biases. | ||||
|  | ||||
| :material-numeric-2-circle: **Shifting trust can increase privacy** | ||||
|  | ||||
| We talk about "shifting trust" a lot when discussing solutions like VPNs, which shift the trust you place in your ISP to the VPN provider. While this protects your browsing data from your ISP specifically, the VPN provider you choose still has access to your browsing data: Your data is not yet completely secured from all parties. This means that: | ||||
|  | ||||
| 1. You need to exercise caution when choosing a provider to shift trust to, rather than choosing blindly. | ||||
| 2. You still need to employ other techniques like end-to-end encryption to protect your data completely, merely distrusting one provider to trust another is not hiding your data. | ||||
|  | ||||
| :material-numeric-3-circle: **Privacy-focused solutions are inherently trustworthy** | ||||
|  | ||||
| Focusing solely on the privacy policies and marketing of a tool or provider can blind you to its weaknesses. When you're looking for a privacy solution, you should determine what the underlying problem is and find technical solutions to that problem. For example, you may want to avoid Google Drive, which gives Google access to all of your data. The underlying problem, in this case, is a lack of end-to-end encryption, so you should make sure the provider you switch to actually implements end-to-end encryption or use a tool like Cryptomator which provides end-to-end encryption on any cloud provider. Blindly switching to a "privacy-focused" provider which does not provide end-to-end encryption does not solve your problem, it merely shifts trust from Google to that provider. | ||||
|  | ||||
| The privacy policies and business practices of a provider you choose are very important, but should be considered secondary to technical guarantees of your privacy: Don't elect to merely shift trust to another provider when trusting a provider isn't a requirement at all. | ||||
|  | ||||
| :material-numeric-4-circle: **Complicated is better** | ||||
|  | ||||
| We often see people describing privacy threat models that are overly complex. Often, these solutions include problems like many different email accounts or complicated setups with a lot of moving parts and conditions. The replies are usually answers to, "What is the best way to do X?". | ||||
|  | ||||
| Finding the "best" solution for yourself doesn't necessarily mean you are after an infallible solution with dozens of conditions—these solutions are often difficult to work with realistically. As we discussed previously, security often comes at the cost of convenience. Below, we provide some tips: | ||||
|  | ||||
| 1. <mark>Actions need to serve a particular purpose</mark>, think about how to do what you want with the least amount of actions. | ||||
| 2. <mark>Remove human failure points</mark> (don't have a bunch of conditions you must remember to do what with which accounts). Humans fail, they get tired, they forget things... don't have many conditions or manual processes you must remember in order to maintain operational security. | ||||
| 3. <mark>Use the right level of protection for what you intend.</mark> We often see recommendations of so-called law-enforcement, subpoena proof solutions. These require a lot of special case knowledge (knowing about how things truly work under the hood) and are generally not what people want. There is no point in building an intricately anonymous threat model if you can be easily de-anonymized by a simple oversight. | ||||
|  | ||||
| So, how might this look? | ||||
|  | ||||
| One of the clearest threat models is one where people *know who you are* and one where they do not. There will always be situations where you must declare your legal name and places where you can get away without doing so. | ||||
|  | ||||
| 1. **Known identity** - A known identity is used for things where you must declare your name. There are many such legal documents and contracts where a legal identity is required. This could range from opening a bank account, signing a property lease, obtaining a passport, a customs declaration when importing an item or otherwise dealing with your Government. These things will usually always lead back credentials such as credit cards, credit rating checks, account numbers and possibly physical addresses. | ||||
|  | ||||
|     We don't suggest using a VPN or Tor for any of these things as your identity is already known through other means. | ||||
|  | ||||
|     !!! tip | ||||
|  | ||||
|         When shopping online, the use of a [parcel locker](https://en.wikipedia.org/wiki/Parcel_locker) can help keep your physical address private. | ||||
|  | ||||
| 2. **Unknown identity** - An unknown identity could be a stable pseudonym that you regularly use. It is not anonymous because it doesn't change. If you're a part of an online community, you may wish to retain a persona that others know. The reason this is not anonymous is that if monitored over a period of time details about the owner may reveal further information, such as the way they write (linguistics), general knowledge about topics of interest, etc. | ||||
|  | ||||
|     You may wish to use a VPN for this to mask your IP address. Financial transactions are more difficult and for this we'd suggest using anonymous cryptocurrencies such as Monero. Employing alt-coin shifting may also help disguise where your currency originated. Typically exchanges require KYC (know your customer) to be completed before they will allow you to exchange fiat currency into any kind of cryptocurrency. Local meet-up options may also be a solution, however those often are more expensive and sometimes also require KYC. | ||||
|  | ||||
| 3. **Anonymous identity** - Anonymous identities are difficult to maintain over long periods of time for even the most experienced. They should be short-term and short lived identities which are rotated regularly. | ||||
|  | ||||
|     Using Tor can help with this, it's also worth noting greater anonymity is possible through asynchronous (not real-time communication). Real-time communication is vulnerable to typing analysis patterns (more than a slab of text distributed on a forum, email, etc) that you've had time to think about, maybe even put through a translator and back again. | ||||
|  | ||||
| [^1]: United States Privacy and Civil Liberties Oversight Board: [Report on the Telephone Records Program Conducted under Section 215](https://documents.pclob.gov/prod/Documents/OversightReport/ec542143-1079-424a-84b3-acc354698560/215-Report_on_the_Telephone_Records_Program.pdf) | ||||
| [^2]: Wikipedia: [Surveillance capitalism](https://en.wikipedia.org/wiki/Surveillance_capitalism) | ||||
| [^3]: "[Enumerating badness](https://www.ranum.com/security/computer_security/editorials/dumb/)" (or, "listing all the bad things that we know about") as many adblockers and antivirus programs do, fails to adequately protect you from new and unknown threats because they have not yet been added to the filter list. You need to additionally employ other mitigation techniques to be fully protected. | ||||
| [^4]: One notable example of this is the [2021 incident in which University of Minnesota researchers introduced three vulnerabilities into the Linux kernel development project](https://cse.umn.edu/cs/linux-incident). | ||||
							
								
								
									
										147
									
								
								docs/basics/common-threats.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,147 @@ | ||||
| --- | ||||
| title: "Common Threats" | ||||
| icon: 'material/eye-outline' | ||||
| --- | ||||
|  | ||||
| Broadly speaking, we categorize our recommendations into the [threats](threat-modeling.md) or goals that apply to most people. ==You may be concerned with none, one, a few, or all of these possibilities==, and the tools and services you use depend on what your goals are. You may have specific threats outside of these categories as well, which is perfectly fine! The important part is developing an understanding of the benefits and shortcomings of the tools you choose to use, because virtually none of them will protect you from every threat. | ||||
|  | ||||
| - <span class="pg-purple">:material-incognito: Anonymity</span> - Shielding your online activity from your real identity, protecting you from people who are trying to uncover *your* identity specifically. | ||||
| - <span class="pg-red">:material-target-account: Targeted Attacks</span> - Being protected from hackers or other malicious actors who are trying to gain access to *your* data or devices specifically. | ||||
| - <span class="pg-orange">:material-bug-outline: Passive Attacks</span> - Being protected from things like malware, data breaches, and other attacks that are made against many people at once. | ||||
| - <span class="pg-teal">:material-server-network: Service Providers</span> - Protecting your data from service providers (e.g. with E2EE, which renders your data unreadable to the server). | ||||
| - <span class="pg-blue">:material-eye-outline: Mass Surveillance</span> - Protection from government agencies, organizations, websites, and services which work together to track your activities. | ||||
| - <span class="pg-brown">:material-account-cash: Surveillance Capitalism</span> - Protecting yourself from big advertising networks, like Google and Facebook, as well as a myriad of other third-party data collectors. | ||||
| - <span class="pg-green">:material-account-search: Public Exposure</span> - Limiting the information about you that is accessible online—to search engines or the general public. | ||||
| - <span class="pg-blue-gray">:material-close-outline: Censorship</span> - Avoiding censored access to information or being censored yourself when speaking online. | ||||
|  | ||||
| Some of these threats may be more important to you than others, depending on your specific concerns. For example, a software developer with access to valuable or critical data may be primarily concerned with <span class="pg-red">:material-target-account: Targeted Attacks</span>, but they probably still want to protect their personal data from being swept up in <span class="pg-blue">:material-eye-outline: Mass Surveillance</span> programs. Similarly, many people may be primarily concerned with <span class="pg-green">:material-account-search: Public Exposure</span> of their personal data, but they should still be wary of security-focused issues, such as <span class="pg-orange">:material-bug-outline: Passive Attacks</span>—like malware affecting their devices. | ||||
|  | ||||
| ## Anonymity vs. Privacy | ||||
|  | ||||
| <span class="pg-purple">:material-incognito: Anonymity</span> | ||||
|  | ||||
| Anonymity is often confused with privacy, but they're distinct concepts. While privacy is a set of choices you make about how your data is used and shared, anonymity is the complete disassociation of your online activities from your real identity. | ||||
|  | ||||
| Whistleblowers and journalists, for example, can have a much more extreme threat model which requires total anonymity. That's not only hiding what they do, what data they have, and not getting hacked by malicious actors or governments, but also hiding who they are entirely. They will often sacrifice any kind of convenience if it means protecting their anonymity, privacy, or security, because their lives could depend on it. Most people don't need to go so far. | ||||
|  | ||||
| ## Security and Privacy | ||||
|  | ||||
| <span class="pg-orange">:material-bug-outline: Passive Attacks</span> | ||||
|  | ||||
| Security and privacy are also often confused, because you need security to obtain any semblance of privacy: Using tools—even if they're private by design—is futile if they could be easily exploited by attackers who later release your data. However, the inverse isn't necessarily true: The most secure service in the world *isn't necessarily* private. The best example of this is trusting data to Google who, given their scale, have had few security incidents by employing industry-leading security experts to secure their infrastructure. Even though Google provides very secure services, very few people would consider their data private in Google's free consumer products (Gmail, YouTube, etc.) | ||||
|  | ||||
| When it comes to application security, we generally don't (and sometimes can't) know if the software we use is malicious, or might one day become malicious. Even with the most trustworthy developers, there's generally no guarantee that their software doesn't have a serious vulnerability that could later be exploited. | ||||
|  | ||||
| To minimize the damage that a malicious piece of software *could* do, you should employ security by compartmentalization. For example, this could come in the form of using different computers for different jobs, using virtual machines to separate different groups of related applications, or using a secure operating system with a strong focus on application sandboxing and mandatory access control. | ||||
|  | ||||
| !!! tip | ||||
|  | ||||
|     Mobile operating systems generally have better application sandboxing than desktop operating systems: Apps can't obtain root access, and require permission for access to system resources. | ||||
|  | ||||
|     Desktop operating systems generally lag behind on proper sandboxing. ChromeOS has similar sandboxing capabilities to Android, and macOS has full system permission control (and developers can opt-in to sandboxing for applications). However, these operating systems do transmit identifying information to their respective OEMs. Linux tends to not submit information to system vendors, but it has poor protection against exploits and malicious apps. This can be mitigated somewhat with specialized distributions which make significant use of virtual machines or containers, such as [Qubes OS](../../desktop/#qubes-os). | ||||
|  | ||||
| <span class="pg-red">:material-target-account: Targeted Attacks</span> | ||||
|  | ||||
| Targeted attacks against a specific person are more problematic to deal with. Common attacks include sending malicious documents via email, exploiting vulnerabilities (e.g. in browsers and operating systems), and physical attacks. If this is a concern for you, you should employ more advanced threat mitigation strategies. | ||||
|  | ||||
| !!! tip | ||||
|  | ||||
|     By design, **web browsers**, **email clients**, and **office applications** typically run untrusted code, sent to you from third parties. Running multiple virtual machines—to separate applications like these from your host system, as well as each other—is one technique you can use to mitigate the chance of an exploit in these applications compromising the rest of your system. For example, technologies like Qubes OS or Microsoft Defender Application Guard on Windows provide convenient methods to do this. | ||||
|  | ||||
| If you are concerned about **physical attacks** you should use an operating system with a secure verified boot implementation, such as Android, iOS, macOS, or [Windows (with TPM)](https://docs.microsoft.com/en-us/windows/security/information-protection/secure-the-windows-10-boot-process). You should also make sure that your drive is encrypted, and that the operating system uses a TPM or Secure [Enclave](https://support.apple.com/guide/security/secure-enclave-sec59b0b31ff/1/web/1) or [Element](https://developers.google.com/android/security/android-ready-se) to rate limit attempts to enter the encryption passphrase. You should avoid sharing your computer with people you don't trust, because most desktop operating systems don't encrypt data separately per-user. | ||||
|  | ||||
| ## Privacy From Service Providers | ||||
|  | ||||
| <span class="pg-teal">:material-server-network: Service Providers</span> | ||||
|  | ||||
| We live in a world where almost everything is connected to the internet. Our "private" messages, emails, and social interactions are typically stored on a server, somewhere. Generally, when you send someone a message it's stored on a server, and when your friend wants to read the message the server will show it to them. | ||||
|  | ||||
| The obvious problem with this is that the service provider (or a hacker who has compromised the server) can access your conversations whenever and however they want, without you ever knowing. This applies to many common services, like SMS messaging, Telegram, and Discord. | ||||
|  | ||||
| Thankfully, E2EE can alleviate this issue by encrypting communications between you and your desired recipients before they are even sent to the server. The confidentiality of your messages is guaranteed, assuming the service provider doesn't have access to the private keys of either party. | ||||
|  | ||||
| !!! note "Note on Web-based Encryption" | ||||
|  | ||||
|     In practice, the effectiveness of different E2EE implementations varies. Applications, such as [Signal](../real-time-communication.md#signal), run natively on your device, and every copy of the application is the same across different installations. If the service provider were to introduce a [backdoor](https://en.wikipedia.org/wiki/Backdoor_(computing)) in their application—in an attempt to steal your private keys—it could later be detected with [reverse engineering](https://en.wikipedia.org/wiki/Reverse_engineering). | ||||
|  | ||||
|     On the other hand, web-based E2EE implementations, such as Proton Mail's webmail or Bitwarden's *Web Vault*, rely on the server dynamically serving JavaScript code to the browser to handle cryptography. A malicious server can target you and send you malicious JavaScript code to steal your encryption key (and it would be extremely hard to notice). Because the server can choose to serve different web clients to different people—even if you noticed the attack—it would be incredibly hard to prove the provider's guilt. | ||||
|  | ||||
|     Therefore, you should use native applications over web clients whenever possible. | ||||
|  | ||||
| Even with E2EE, service providers can still profile you based on **metadata**, which typically isn't protected. While the service provider can't read your messages, they can still observe important things, such as who you're talking to, how often you message them, and when you're typically active. Protection of metadata is fairly uncommon, and—if it's within your [threat model](threat-modeling.md)—you should pay close attention to the technical documentation of the software you're using to see if there's any metadata minimization or protection at all. | ||||
|  | ||||
| ## Mass Surveillance Programs | ||||
|  | ||||
| <span class="pg-blue">:material-eye-outline: Mass Surveillance</span> | ||||
|  | ||||
| Mass surveillance is the intricate effort to monitor the "behavior, many activities, or information" of an entire (or substantial fraction of a) population.[^1] It often refers to government programs, such as the ones [disclosed by Edward Snowden in 2013](https://en.wikipedia.org/wiki/Global_surveillance_disclosures_(2013%E2%80%93present)). However, it can also be carried out by corporations, either on behalf of government agencies or by their own initiative. | ||||
|  | ||||
| !!! abstract "Atlas of Surveillance" | ||||
|  | ||||
|     If you want to learn more about surveillance methods and how they're implemented in your city you can also take a look at the [Atlas of Surveillance](https://atlasofsurveillance.org/) by the [Electronic Frontier Foundation](https://www.eff.org/). | ||||
|  | ||||
|     In France you can take a look at the [Technolopolice website](https://technopolice.fr/villes/) maintained by the non-profit association La Quadrature du Net. | ||||
|  | ||||
| Governments often justify mass surveillance programs as necessary means to combat terrorism and prevent crime. However, breaching human rights, it's most often used to disproportionately target minority groups and political dissidents, among others. | ||||
|  | ||||
| !!! quote "ACLU: [*The Privacy Lesson of 9/11: Mass Surveillance is Not the Way Forward*](https://www.aclu.org/news/national-security/the-privacy-lesson-of-9-11-mass-surveillance-is-not-the-way-forward)" | ||||
|  | ||||
|     In the face of [Edward Snowden's disclosures of government programs such as [PRISM](https://en.wikipedia.org/wiki/PRISM) and [Upstream](https://en.wikipedia.org/wiki/Upstream_collection)], intelligence officials also admitted that the NSA had for years been secretly collecting records about virtually every American’s phone calls — who’s calling whom, when those calls are made, and how long they last. This kind of information, when amassed by the NSA day after day, can reveal incredibly sensitive details about people’s lives and associations, such as whether they have called a pastor, an abortion provider, an addiction counselor, or a suicide hotline. | ||||
|  | ||||
| Despite growing mass surveillance in the United States, the government has found that mass surveillance programs like Section 215 have had "little unique value" with respect to stopping actual crimes or terrorist plots, with efforts largely duplicating the FBI's own targeted surveillance programs.[^2] | ||||
|  | ||||
| Online, you can be tracked via a variety of methods: | ||||
|  | ||||
| - Your IP address | ||||
| - Browser cookies | ||||
| - The data you submit to websites | ||||
| - Your browser or device fingerprint | ||||
| - Payment method correlation | ||||
|  | ||||
| \[This list isn't exhaustive]. | ||||
|  | ||||
| If you're concerned about mass surveillance programs, you can use strategues like compartmentalizing your online identities, blending in with other users, or, whenever possible, simply avoiding giving out identifying information. | ||||
|  | ||||
| <span class="pg-brown">:material-account-cash: Surveillance Capitalism</span> | ||||
|  | ||||
| > Surveillance capitalism is an economic system centered around the capture and commodification of personal data for the core purpose of profit-making.[^3] | ||||
|  | ||||
| For many people, tracking and surveillance by private corporations is a growing concern. Pervasive ad networks, such as those operated by Google and Facebook, span the internet far beyond just the sites they control, tracking your actions along the way. Using tools like content blockers to limit network requests to their servers, and reading the privacy policies of the services you use can help you avoid many basic adversaries (although it can't completely prevent tracking).[^4] | ||||
|  | ||||
| Additionally, even companies outside of the *AdTech* or tracking industry can share your information with [data brokers](https://en.wikipedia.org/wiki/Information_broker) (such as Cambridge Analytica, Experian, or Datalogix) or other parties. You can't automatically assume your data is safe just because the service you're using doesn't fall within the typical AdTech or tracking business model. The strongest protection against corporate data collection is to encrypt or obfuscate your data whenever possible, making it difficult for different providers to correlate data with each other and build a profile on you. | ||||
|  | ||||
| ## Limiting Public Information | ||||
|  | ||||
| <span class="pg-green">:material-account-search: Public Exposure</span> | ||||
|  | ||||
| The best way to keep your data private is simply not making it public in the first place. Deleting unwanted information you find about yourself online is one of the best first steps you can take to regain your privacy. | ||||
|  | ||||
| - [View our guide on account deletion :material-arrow-right-drop-circle:](account-deletion.md) | ||||
|  | ||||
| On sites where you do share information, checking the privacy settings of your account to limit how widely that data is spread is very important. For example, enable "private mode" on your accounts if given the option: This ensures that your account isn't being indexed by search engines, and that it can't be viewed without your permission. | ||||
|  | ||||
| If you've already submitted your real information to sites which shouldn't have it, consider using disinformation tactics, like submitting fictitious information related to that online identity. This makes your real information indistinguishable from the false information. | ||||
|  | ||||
| ## Avoiding Censorship | ||||
|  | ||||
| <span class="pg-blue-gray">:material-close-outline: Censorship</span> | ||||
|  | ||||
| Censorship online can be carried out (to varying degrees) by actors including totalitarian governments, network administrators, and service providers. These efforts to control communication and restrict access to information will always be incompatible with the human right to Freedom of Expression.[^5] | ||||
|  | ||||
| Censorship on corporate platforms is increasingly common, as platforms like Twitter and Facebook give in to public demand, market pressures, and pressures from government agencies. Government pressures can be covert requests to businesses, such as the White House [requesting the takedown](https://www.nytimes.com/2012/09/17/technology/on-the-web-a-fine-line-on-free-speech-across-globe.html) of a provocative YouTube video, or overt, such as the Chinese government requiring companies to adhere to a strict regime of censorship. | ||||
|  | ||||
| People concerned with the threat of censorship can use technologies like [Tor](../advanced/tor-overview.md) to circumvent it, and support censorship-resistant communication platforms like [Matrix](../real-time-communication.md#element), which doesn't have a centralized account authority that can close accounts arbitrarily. | ||||
|  | ||||
| !!! tip | ||||
|  | ||||
|     While evading censorship itself can be easy, hiding the fact that you are doing it can be very problematic. | ||||
|  | ||||
|     You should consider which aspects of the network your adversary can observe, and whether you have plausible deniability for your actions. For example, using [encrypted DNS](../advanced/dns-overview.md#what-is-encrypted-dns) can help you bypass rudimentary, DNS-based censorship systems, but it can't truly hide what you are visiting from your ISP. A VPN or Tor can help hide what you are visiting from network administrators, but can't hide that you're using those networks in the first place. Pluggable transports (such as Obfs4proxy, Meek, or Shadowsocks) can help you evade firewalls that block common VPN protocols or Tor, but your circumvention attempts can still be detected by methods like probing or [deep packet inspection](https://en.wikipedia.org/wiki/Deep_packet_inspection). | ||||
|  | ||||
| You must always consider the risks of trying to bypass censorship, the potential consequences, and how sophisticated your adversary may be. You should be cautious with your software selection, and have a backup plan in case you are caught. | ||||
|  | ||||
| [^1]: Wikipedia: [*Mass Surveillance*](https://en.wikipedia.org/wiki/Mass_surveillance) and [*Surveillance*](https://en.wikipedia.org/wiki/Surveillance). | ||||
| [^2]: United States Privacy and Civil Liberties Oversight Board: [*Report on the Telephone Records Program Conducted under Section 215*](https://documents.pclob.gov/prod/Documents/OversightReport/ec542143-1079-424a-84b3-acc354698560/215-Report_on_the_Telephone_Records_Program.pdf) | ||||
| [^3]: Wikipedia: [*Surveillance capitalism*](https://en.wikipedia.org/wiki/Surveillance_capitalism) | ||||
| [^4]: "[Enumerating badness](https://www.ranum.com/security/computer_security/editorials/dumb/)" (or, "listing all the bad things that we know about"), as many adblockers and antivirus programs do, fails to adequately protect you from new and unknown threats because they have not yet been added to the filter list. You should also employ other mitigation techniques. | ||||
| [^5]: United Nations: [*Universal Declaration of Human Rights*](https://www.un.org/en/about-us/universal-declaration-of-human-rights). | ||||
							
								
								
									
										40
									
								
								docs/basics/email-security.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						| @@ -0,0 +1,40 @@ | ||||
| --- | ||||
| title: Email Security | ||||
| icon: material/email | ||||
| --- | ||||
|  | ||||
| Email is an insecure form of communication by default. You can improve your email security with tools such as OpenPGP, which add End-to-End Encryption to your messages, but OpenPGP still has a number of drawbacks compared to encryption in other messaging applications, and some email data can never be encrypted inherently due to how email is designed. | ||||
|  | ||||
| As a result, email is best used for receiving transactional emails (like notifications, verification emails, password resets, etc.) from the services you sign up for online, not for communicating with others. | ||||
|  | ||||
| ## Email Encryption Overview | ||||
|  | ||||
| The standard way to add E2EE to emails between different email providers is by using OpenPGP. There are different implementations of the OpenPGP standard, the most common being [GnuPG](https://en.wikipedia.org/wiki/GNU_Privacy_Guard) and [OpenPGP.js](https://openpgpjs.org). | ||||
|  | ||||
| There is another standard which is popular with business called [S/MIME](https://en.wikipedia.org/wiki/S/MIME), however, it requires a certificate issued from a [Certificate Authority](https://en.wikipedia.org/wiki/Certificate_authority) (not all of them issue S/MIME certificates). It has support in [Google Workplace](https://support.google.com/a/topic/9061730?hl=en&ref_topic=9061731) and [Outlook for Web or Exchange Server 2016, 2019](https://support.office.com/en-us/article/encrypt-messages-by-using-s-mime-in-outlook-on-the-web-878c79fc-7088-4b39-966f-14512658f480). | ||||
|  | ||||
| Even if you use OpenPGP, it does not support [forward secrecy](https://en.wikipedia.org/wiki/Forward_secrecy), which means if either your or the recipient's private key is ever stolen, all previous messages encrypted with it will be exposed. This is why we recommend [instant messengers](../real-time-communication.md) which implement forward secrecy over email for person-to-person communications whenever possible. | ||||
|  | ||||
| ### What Email Clients Support E2EE? | ||||
|  | ||||
| Email providers which allow you to use standard access protocols like IMAP and SMTP can be used with any of the [email clients we recommend](../email-clients.md). Depending on the authentication method, this may lead to the decrease security if either the provider or the email client does not support OATH or a bridge application as [multi-factor authentication](multi-factor-authentication.md) is not possible with plain password authentication. | ||||
|  | ||||
| ### How Do I Protect My Private Keys? | ||||
|  | ||||
| A smartcard (such as a [Yubikey](https://support.yubico.com/hc/en-us/articles/360013790259-Using-Your-YubiKey-with-OpenPGP) or [Nitrokey](https://www.nitrokey.com)) works by receiving an encrypted email message from a device (phone, tablet, computer, etc) running an email/webmail client. The message is then decrypted by the smartcard and the decrypted content is sent back to the device. | ||||
|  | ||||
| It is advantageous for the decryption to occur on the smartcard so as to avoid possibly exposing your private key to a compromised device. | ||||
|  | ||||
| ## Email Metadata Overview | ||||
|  | ||||
| Email metadata is stored in the [message header](https://en.wikipedia.org/wiki/Email#Message_header) of the email message and includes some visible headers that you may have seen such as: `To`, `From`, `Cc`, `Date`, `Subject`. There are also a number of hidden headers included by many email clients and providers that can reveal information about your account. | ||||
|  | ||||
| Client software may use email metadata to show who a message is from and what time it was received. Servers may use it to determine where an email message must be sent, among [other purposes](https://en.wikipedia.org/wiki/Email#Message_header) which are not always transparent. | ||||
|  | ||||
| ### Who Can View Email Metadata? | ||||
|  | ||||
| Email metadata is protected from outside observers with [Opportunistic TLS](https://en.wikipedia.org/wiki/Opportunistic_TLS) protecting it from outside observers, but it is still able to be seen by your email client software (or webmail) and any servers relaying the message from you to any recipients including your email provider. Sometimes email servers will also use third-party services to protect against spam, which generally also have access to your messages. | ||||
|  | ||||
| ### Why Can't Metadata be E2EE? | ||||
|  | ||||
| Email metadata is crucial to the most basic functionality of email (where it came from, and where it has to go). E2EE was not built into the email protocols originally, instead requiring add-on software like OpenPGP. Because OpenPGP messages still have to work with traditional email providers, it cannot encrypt email metadata, only the message body itself. That means that even when using OpenPGP, outside observers can see lots of information about your messages, such as who you're emailing, the subject lines, when you're emailing, etc. | ||||