<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>Browser on Side Of Burritos</title>
  <link rel="alternate" href="https://staging.sideofburritos.com/tags/browser/" />
  <link rel="self" href="https://staging.sideofburritos.com/tags/browser/index.xml" />
  <subtitle>Recent content in Browser on Side Of Burritos</subtitle>
  <id>https://staging.sideofburritos.com/tags/browser/</id>
  <generator uri="http://gohugo.io" version="0.165.0">Hugo</generator>
  <language>en-us</language>
  <updated>2023-01-02T10:00:00Z</updated>
  <author>
    <name>Josh</name>
    
  </author>
  
      <entry>
        <title>Most Secure and Private Browser for Mobile | Vanadium</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/secure-and-private-browser-for-mobile-vanadium/" />
        <id>https://staging.sideofburritos.com/blog/secure-and-private-browser-for-mobile-vanadium/</id>
        <published>2023-01-02T10:00:00Z</published>
        <updated>2023-01-02T10:00:00Z</updated>
        <summary type="html">Good privacy starts with great security. Vanadium, a Chromium-based browser, offers the best sandbox implementation among the competition.</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode114s0hbhb">🎥 


<a href="https://youtu.be/G-SL9F8x_Nk" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://grapheneos.org/usage#web-browsing" target="_blank" rel="noopener" class="text-break">https://grapheneos.org/usage#web-browsing</a> - GrapheneOS | Web browsing</li>
<li>


<a href="https://mullvad.net/en/help/dns-over-https-and-dns-over-tls/" target="_blank" rel="noopener" class="text-break">https://mullvad.net/en/help/dns-over-https-and-dns-over-tls/</a> - Mullvad Adblocking DNS server</li>
<li>


<a href="https://microsoftedge.github.io/edgevr/posts/Super-Duper-Secure-Mode/" target="_blank" rel="noopener" class="text-break">https://microsoftedge.github.io/edgevr/posts/Super-Duper-Secure-Mode/</a> - Microsoft article on CVE data</li>
<li>


<a href="https://github.com/GrapheneOS/Vanadium" target="_blank" rel="noopener" class="text-break">https://github.com/GrapheneOS/Vanadium</a> - Vanadium GitHub</li>
</ul>
<hr>
<h3 id="transcript">Transcript</h3>
<p><strong>Please excuse any grammatical errors. I used a tool to generate the transcript and haven&rsquo;t had a chance to read through it yet.</strong></p>
<p>If you&rsquo;ve been following my channel for any length of time, then you know that I use graphene OS on my mobile device. My browser of choice is the one that&rsquo;s bundled with it, which has vanadium. In addition to being bundled with the OS, there are a few other reasons I really like it, which I&rsquo;ll cover in today&rsquo;s video on graphene OS vanadium is the user facing browser that&rsquo;s included with the OS and the provider of web view, which is used by other apps to render content. Now you might be asking what is what view. So as an example, let&rsquo;s take a look at mastodon. Now there&rsquo;s a post on Mastodon with a link included with it. And I selected, we can see that the page was opened, but I wasn&rsquo;t actually taken outside of the Mastadon app to my web browser. Instead, the app displayed the link using web view. So even though you might not think you&rsquo;re using vanadium, if we select the three dots in the upper right-hand corner, we can see at the bottom running in vanadium. So, that&rsquo;s what web view is, as the name implies, that lets you view the web vanadium is a chromium-based browser, which means it provides the strongest sandbox implementation available for browsers at this time. Among other security features like exploit protection and site isolation. Vanadium actually improves upon these features, so you get even more protection as compared to using the standard Chrome browser.</p>
<p>Another important feature is that by default, JavaScript JIT is disabled. I&rsquo;m pretty sure it&rsquo;s pronounced a JIT and not J. It just like iOS is not ios. But I could be wrong. While JIT is meant to improve performance on load times, it also increases your vulnerability to browser-based exploits. And an article by Microsoft, they noted that looking at CVE data after 2019 shows that roughly 45% of the CVE issued for V eight, which is Chrome&rsquo;s JavaScript engine, were related to the JIT engine. So blocking JIT by default means that you greatly reduce your vulnerability to browser-based exploits. I hope to go into more detail in the future on topics like sandboxing, JIT and exploit mitigation. When I figured out a decent way to explain and demonstrate them, there was one feature I wish this browser had, and that is a built in ad blocker. The section on graphene os.org that discusses web browsing does mention that they have plans in the near future to add content filtering. Luckily, there are still two popular ways to block ads. The first is if you use a VPN, typically they have an option for ad blocking. This is done via DNS where they filter out any known ad domains. It&rsquo;s not great, but it works. Another similar method, which uses the same DNS filtering technique is using the secure DNS option and vanadium and specifying a DNS server that filters ads, one that I like to use as the mullvad ad blocking DNS server, research any recommendations before blindly trusting a YouTube stranger? It&rsquo;s what I like to use, but it might not be the best for you.</p>
<p>Besides adding the custom DNS server, there&rsquo;s a couple other changes that I like to make under passwords. I don&rsquo;t use medium for passwords, so I disabled that. Same under Payment Methods addresses, disable that as well. Under privacy and security. I disable autocomplete searches and URLs I&rsquo;ve mentioned in the past, but I don&rsquo;t like autocomplete in my browsers, I only want my data to be sent when I click Submit, I enable open External links and incognito. I like this feature. Let&rsquo;s say your friend sends you a link and you click it. Instead of that link being opened in a normal tab. It&rsquo;s now opened in an incognito tab, I leave Do Not Track enabled because it&rsquo;s enabled by default, disabling it would just set you apart from the others using the default settings. And then the last option I change if we go back, I turn off the homepage. This is just personal preference. And then one other tip that I see some people have questions on it. Let&rsquo;s say you want to use a different search engine such as start page, you don&rsquo;t see it in the list here. What you need to do is first go to start page.com Once you get there, if you click Set as Default the instructions explain the steps, but what you need to do is go into the Start Page Settings, Settings. Scroll down to the section labeled HTTP request method. Change that to get save your settings confirm and now if we make a search and go back into our browser settings search engine. We now see recently visited start page we can select that and now when we run a search, we can see that start page is used by default.</p>
<p>If you use vanadium or thinking about using vanadium, check out the web browsing section on graphene os.org. It has a lot of great information</p>
]]></content>
      </entry>
      <entry>
        <title>My Brave Browser Setup and Recommendations</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/brave-browser-setup/" />
        <id>https://staging.sideofburritos.com/blog/brave-browser-setup/</id>
        <published>2022-12-19T10:00:00Z</published>
        <updated>2022-12-21T10:00:00Z</updated>
        <summary type="html">Brave is a free and open-source web browser developed by Brave Software, Inc. based on the Chromium web browser.</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode38s0hbhb">🎥 


<a href="https://youtu.be/lmHsdkalyCw" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://brave.com/download/" target="_blank" rel="noopener" class="text-break">https://brave.com/download/</a> - Brave Browser Download</li>
<li>


<a href="https://developer.mozilla.org/en-US/docs/Web/API/WebRTC_API" target="_blank" rel="noopener" class="text-break">https://developer.mozilla.org/en-US/docs/Web/API/WebRTC_API</a> - WebRTC Explained</li>
<li>


<a href="#ZgotmplZ" target="_blank" rel="noopener" class="text-break">https://brave.com/privacy/browser/#safe-browsing</a> - Brave Safe Browsing Privacy Policy</li>
<li>


<a href="https://github.com/iamadamdev/bypass-paywalls-chrome" target="_blank" rel="noopener" class="text-break">https://github.com/iamadamdev/bypass-paywalls-chrome</a> - Bypass Paywalls Extension</li>
</ul>
<hr>
<h3 id="transcript">Transcript</h3>
<p><strong>Please excuse any grammatical errors. I used a tool to generate the transcript and haven&rsquo;t had a chance to read through it yet.</strong></p>
<p>So I&rsquo;m going to be brave here and to share with you my brave browser settings. Before that, I want to make a quick disclaimer, there is some benefit that comes with just using the default settings the browser comes with, you blend in with all the other default installs instead of using a customized browser. Brave is what I&rsquo;m using right now on my desktop. On my mobile, I&rsquo;m using vanadium. Privacy and security are always changing. So what you see now will likely evolve over time and change. But this is what works well for me at the time of this recording. In the past, I used Safari on Googled chromium, chromium, Firefox with a bunch of add ons. So take it with a grain of salt, always do your own research and use my advice as a starting point to figure out what&rsquo;s best for you. And then lastly, as far as security goes, Chromium is more secure than Firefox at this time, which is why I&rsquo;m using brave a chromium based browser. The only time I use Firefox is when I&rsquo;m using Tor browser. So for this demonstration, I&rsquo;ll be using a fresh install of brave on Windows 11. So once you first install brave, you&rsquo;ll see this screen, I&rsquo;m going to just click Skip welcome tour, you&rsquo;re presented with this busy dashboard. And the first thing we&rsquo;re going to do to start our customization, click the three bars in the upper right hand corner and go into settings. If you already have brave installed on your computer, you can just follow along and go into the settings. So on the first section getting started, I just leave all this set to the default, I don&rsquo;t change anything here, you can make brave your default browser if you want.</p>
<p>Next on to appearance. And this one, I like to disable the show side panel button. The side panel is this, I don&rsquo;t use this reading list at all. So I disabled it. We can then scroll down. I like to enable this setting always show full URLs. And so what that means is you&rsquo;ll always see the full URL in the address bar when you&rsquo;re visiting a website, you won&rsquo;t see an abbreviated version. And that&rsquo;s the last setting I change on appearance on to New Tab page. So this busy dashboard, we see on a new tab that we saw at the start, I don&rsquo;t care for this. So in the settings, what I do is I change that to blank page. The dashboard is disabled the settings for it. And now if we open a new tab, we just see this. So again, that&rsquo;s just preference. I don&rsquo;t like the busyness of it. So that&rsquo;s up to you. So on the next setting shields. So on this page, I leave all these the default trackers and ads blocking, you have a couple options here. You can either leave it standard or change it to aggressive. Personally, I leave it on standard. If you change it to aggressive, you might break some site functionality. But again tested out up to you block scripts, if you enable this you will break sites. So I leave it disabled block fingerprinting, this also has a strict may break sites option. To me the jury&rsquo;s still out on whether or not blocking fingerprinting actually works or if it just makes you more noticeable. I haven&rsquo;t done much research into exactly what brave does to block fingerprinting. So I just leave it on standard block cookies only cross site. If you block all cookies, again, you&rsquo;ll break functionality, so I leave it on only cross site. Next is brave rewards. I don&rsquo;t enable this, I don&rsquo;t use brave rewards at all. So I like to disable the option in the menu bar. So now we can see that&rsquo;s gone. Now on to social media blocking, if you use Google or Facebook to log into any third party sites, then you want to leave these enabled. Me personally, I don&rsquo;t use Google or Facebook to log into any third party sites. So I just disabled these. And the last setting on here allowed Twitter embedded tweets. So if you ever reading a news article, and you see an embedded tweet on there, if you disable this, that tweet will be blocked and you won&rsquo;t see it. So if you&rsquo;d like seeing the tweets, leave it enabled if you don&rsquo;t disable it on to privacy and security.</p>
<p>The first setting autocomplete searches in URLs, I always make sure this is disabled. When you enable this, it starts sending the data as soon as you start typing in the search box. So if you accidentally type something personal, that data is already sent off without you actually even submitting the search. So I always make sure this is disabled so that my searches are only sent when I press enter. The next setting is WebRTC IP handling policy. And click here to learn more. So we can see here the default WebRTC has the right to enumerate all interfaces and bind them to discover public interfaces. That is not a great default setting. The one we&rsquo;re going to change it to is disabled, non proxied UDP, and I&rsquo;ll show you why in a moment. So if we go and search for WebRTC leak test, I&rsquo;m just going to click the first one. So depending on your home network setup, but WebRTC has the ability to potentially leak your real IP address, even if you&rsquo;re using a VPN service. I&rsquo;ll leave some more links down below in the description. So you can read more about WebRTC if you want to. I&rsquo;m not going to cover all the details about it in this video. But in our browser, we&rsquo;re going to change this from default to this able nonpracticing UDP. Now if we go back here and refresh the page, we can see web RTC is disabled and will not leak your IP address. So that&rsquo;s just an example of why we want to change that from the default setting, I would suggest reading more about WebRTC, which stands for web real time communication. It&rsquo;s mostly used for video chat and different things like that. But changing it to this setting will reduce our exposure. Further down, we have allow privacy preserving product analytics, disable, automatically send daily usage ping to brave, disable, I leave the clear browsing data set to default like only Claire manually, but if you want, you can set it up so that on exit your data is cleared. Cookies, I&rsquo;ll leave this on default. But we are going to click on security. So now Safe Browsing from what I understand is that it takes a hash of your URL that you&rsquo;re visiting, and compares it against a hash of malicious urls to make sure that you&rsquo;re not visiting a malicious site. If you are it&rsquo;ll warn, you know, I don&rsquo;t want to install a new build. Different browsers implement this in different ways I wrote about how brave does it I&rsquo;ll link that down below. It sounds like their implementation is better than how Google Chrome doesn&rsquo;t. But I&rsquo;m still not the biggest fan of it. So for me, I disable it, even though that&rsquo;s not recommended. But I would suggest you read about it, the pros and cons of it, how it works, and then make that determination for yourself and what&rsquo;s best for you. And the last setting I like to enable on this page is always use secure connections. And what that does is if you browse to a site over HTTP, and for some reason, the website doesn&rsquo;t automatically redirect you to HTTPS, brave will handle that for you, and redirect you automatically. And if for some reason the site doesn&rsquo;t support HTTPS, it&rsquo;ll warn you before loading sites that don&rsquo;t support it. So that&rsquo;s the last option I change on this page. So we can scroll back up, go back. And on the same page, we&rsquo;re now going to go into site and shield settings. So these next settings will be personal to you and how you use your browser. So under permissions. For me personally, I never use location in my browser. So I&rsquo;m going to click on location. And then I&rsquo;m going to select don&rsquo;t allow sites to see your location. So instead of a site showing a pop up asking if they can see your location, I like to disable that completely. So I don&rsquo;t even see the pop up, we can then go back. And the rest of these I&rsquo;m going to leave enabled, I use video chatting in my browser. So I need to use the microphone and camera for that. If you don&rsquo;t go ahead and disable those notifications, if you don&rsquo;t like them, disable them. Then everything else on this page, I just leave set to the default screen, scroll up again, go back.</p>
<p>The last thing I like to disable is this private window with Tor. If I want to use Tor, I just use the Tor Browser. I don&rsquo;t want brave handling that at all. So I like to disable that functionality. So that&rsquo;s all on this page. Next is sync, I don&rsquo;t use sync search engine. So this is personal preference. There&rsquo;s a bunch of options here. So I&rsquo;ve been using brave search for a while and it&rsquo;s been working well. Sometimes I use start page or DuckDuckGo haven&rsquo;t really had a chance yet to settle on one. And then sometimes if I&rsquo;m looking for something specific, that&rsquo;s technical, I&rsquo;ll actually use Google because sometimes I get better results there. I know I&rsquo;m a fraud. But that&rsquo;s what works for me. And then on to extensions, I disabled the Hangouts option. This next one about unstoppable domains. I just disabled This, along with the method to resolve the Ethereum Name Service. I also disabled this, if you use either of these, you should probably leave this setting enabled. If you don&rsquo;t like me, then you can probably disable them. Web torrent, I disabled this one I don&rsquo;t want my browser opening torrent files or magnet links the setting here for Widevine if you use any streaming sites such as Netflix or Amazon Prime video, you&rsquo;ll likely have to enable this. Otherwise the content will not play in your browser. For me, I don&rsquo;t use those so I just leave it disabled. So there&rsquo;s nothing else will be changing on this page. So next we can go on to Wallet. So brave also has support for cryptocurrency wallets. I don&rsquo;t use it. So I just disable all these seven to none. So since I don&rsquo;t use the wallet feature in Brave, I don&rsquo;t need the icon in the toolbar. So I disabled that. On to IPFS IPFS stands for interplanetary file system. They have some links here if you want to learn more about it, you can click and read. I don&rsquo;t use it at all. So I set it to disabled next week and go on to autofill so if you&rsquo;ve seen any of my previous videos, you might know that I use one password I&rsquo;m still in the process of testing out and migrating to bit Warden But with all that being said I don&rsquo;t use any browser Password Manager. So I like to go into the settings and disable that. Let&rsquo;s go back. So besides passwords I don&rsquo;t let brave store my payment methods solely To disable this as well,</p>
<p>I can go back. And the last one addresses, I don&rsquo;t let brave store my addresses either. Disable that, go back onto languages, I don&rsquo;t like to use brave translate. If I want to translate something, I&rsquo;ll just paste it into a website to translate it. So I disabled that on to downloads, I just leave this set to default help tips. So this setting is actually pretty cool show Wayback Machine prompt on four or four pages. So if you get a 404 and a web page, which means Page Not Found brave will give you the option to go to the Wayback Machine and see if there&rsquo;s a cached copy of the page there. So that can be pretty handy. So I just leave that enabled on to system. I don&rsquo;t like this continue running background apps on Brave is closed. So I disabled that. And that is the last browser setting that I change. So as far as additional extensions go, I do use the one password extension. I also use something called bypass paywalls. It&rsquo;s on GitHub, and it does exactly what it&rsquo;s named. But besides those, that&rsquo;s it I try to keep my browser as stock as possible and not loaded down with extensions. Most people think the more privacy extensions you had, the better but really, you&rsquo;re just making yourself more unique compared to someone who&rsquo;s using a default setup. So again, this is what works for me now. I hope we can help get you started in your own research and testing. As this was a browser preference video. I&rsquo;m sure there will be some feedback. So if you have any feel free to let me know down below in the comments.</p>
]]></content>
      </entry>
      <entry>
        <title>How Microsoft killed &#39;Do Not Track&#39;</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/how-microsoft-killed-do-not-track/" />
        <id>https://staging.sideofburritos.com/blog/how-microsoft-killed-do-not-track/</id>
        <published>2022-12-12T10:00:00Z</published>
        <updated>2022-12-21T10:00:00Z</updated>
        <summary type="html">While the &amp;#39;Do Not Track&amp;#39; feature was originally released with the best of intentions, you should now make sure you have it disabled. With IE10, Microsoft killed the feature. At this point, having it enabled does more harm than good.</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode75s0hbhb">🎥 


<a href="https://youtu.be/vZEVvqpcuZw" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://www.privacy-handbuch.de/handbuch_21i.htm" target="_blank" rel="noopener" class="text-break">https://www.privacy-handbuch.de/handbuch_21i.htm</a> - Firefox Snake Oil - Main article referenced</li>
<li>


<a href="https://www.eff.org/deeplinks/2009/09/online-trackers-and-social-networks" target="_blank" rel="noopener" class="text-break">https://www.eff.org/deeplinks/2009/09/online-trackers-and-social-networks</a> - EFF original announcement of DNT</li>
<li>


<a href="https://gizmodo.com/do-not-track-the-privacy-tool-used-by-millions-of-peop-1828868324" target="_blank" rel="noopener" class="text-break">https://gizmodo.com/do-not-track-the-privacy-tool-used-by-millions-of-peop-1828868324</a></li>
<li>


<a href="https://www.wired.com/story/browser-fingerprinting-tracking-explained/" target="_blank" rel="noopener" class="text-break">https://www.wired.com/story/browser-fingerprinting-tracking-explained/</a></li>
<li>


<a href="https://www.groovypost.com/reviews/internet-explorer-10-preview-windows-7/" target="_blank" rel="noopener" class="text-break">https://www.groovypost.com/reviews/internet-explorer-10-preview-windows-7/</a></li>
<li>


<a href="https://www.wired.com/2012/08/microsoft-do-not-track-is-good-for-users-on-by-default-in-ie-10/%29" target="_blank" rel="noopener" class="text-break">https://www.wired.com/2012/08/microsoft-do-not-track-is-good-for-users-on-by-default-in-ie-10/)</a></li>
<li>


<a href="https://news.yahoo.com/yahoo-stops-supporting-not-track-privacy-setting-163054926.html" target="_blank" rel="noopener" class="text-break">https://news.yahoo.com/yahoo-stops-supporting-not-track-privacy-setting-163054926.html</a> - Yahoo stopping support for DNT</li>
<li>


<a href="https://martech.org/know-twitters-latest-privacy-policy-update/" target="_blank" rel="noopener" class="text-break">https://martech.org/know-twitters-latest-privacy-policy-update/</a> - Twitter stopping support for DNT</li>
<li>


<a href="https://support.google.com/chrome/answer/2790761" target="_blank" rel="noopener" class="text-break">https://support.google.com/chrome/answer/2790761</a> - Google doesn&rsquo;t support DNT</li>
<li>


<a href="https://www.macworld.com/article/232426/apple-safari-removing-do-not-track.html" target="_blank" rel="noopener" class="text-break">https://www.macworld.com/article/232426/apple-safari-removing-do-not-track.html</a> - Apple removes DNT from Safari</li>
</ul>
<hr>
<h3 id="how-to-disable-do-not-track-in-popular-browsers">How to disable &ldquo;Do Not Track&rdquo; in popular browsers</h3>
<ul>
<li>


<a href="https://support.google.com/chrome/answer/2790761" target="_blank" rel="noopener" class="text-break">https://support.google.com/chrome/answer/2790761</a> - How to disable &ldquo;Do Not Track&rdquo; in Chrome</li>
<li>


<a href="https://support.mozilla.org/en-US/kb/how-do-i-turn-do-not-track-feature" target="_blank" rel="noopener" class="text-break">https://support.mozilla.org/en-US/kb/how-do-i-turn-do-not-track-feature</a> - How to disable &ldquo;Do Not Track&rdquo; in Firefox</li>
<li>


<a href="https://answers.microsoft.com/en-us/windows/forum/all/do-not-track-setting-in-edge/b3d7b40f-dfce-47f7-b9ab-9d0e940ccf97" target="_blank" rel="noopener" class="text-break">https://answers.microsoft.com/en-us/windows/forum/all/do-not-track-setting-in-edge/b3d7b40f-dfce-47f7-b9ab-9d0e940ccf97</a> - How to disable &ldquo;Do Not Track&rdquo; in Edge</li>
</ul>
<hr>
<h3 id="transcript">Transcript</h3>
<p><strong>Please excuse any grammatical errors. I used a tool to generate the transcript and haven&rsquo;t had a chance to read through it yet.</strong></p>
<p>If you&rsquo;ve ever explored the privacy settings in your browser, you&rsquo;ve likely come across a setting related to do not track. Let&rsquo;s talk about what this is. I&rsquo;ll show you exactly what the setting does. And then we&rsquo;ll talk about how Microsoft killed it. DNT or do not track was proposed by the EFF in 2009. It will be implemented by your browser is sending an additional header to the website that you are visiting, indicating that you wished not to be tracked. The W3C standard for DNT explicitly stated that it&rsquo;s only used when the user made a deliberate choice to enable it. While this feature had the best of intentions, some early studies indicated that it was largely being ignored by the trucking industry. Before we continue, let&rsquo;s take a look at exactly how DNT works.</p>
<p>So, here I am on my website site of burritos.com. I currently have the Do Not Track setting enabled in my browser. If we right-click, go to inspect, go to the Network tab, and then refresh the website. We&rsquo;re going to select the initial request. And if we scroll down to the section labeled request headers, we can see a header here called the DN T with a value of one. So, when you have this setting enabled in your browser, your browser will then send the DNT header on all requests indicating that you have it enabled. Now if I disable the Do Not Track setting and go back to the same page, we were just on, refresh the page again. Click on the newest request, scroll down to the request headers, and we no longer see that d and t header 13 years later in 2022. This feature is actually having the opposite effect of what it originally intended. So, since so few users have this feature enabled, and it&rsquo;s making little to no difference in preventing tracking, companies and marketers are using the DNT header we saw in the demonstration as another way to track visitors. So instead of helping you, it&rsquo;s hurting you by actually creating an additional data point that can be used to fingerprint you.</p>
<p>The last reason not to use it is that Microsoft killed it. As I mentioned, the W3C standard stated that this feature had to be a deliberate choice by the user. In 2012. Internet Explorer 10 was released with DNT enabled by default, which violated the standard and gave the tracking industry a reason to officially ignore it, since it could no longer be assumed the user enabled the feature. In May 2014. Yahoo announced they would stop supporting the Do Not Track privacy header. And in the years following, Google, Facebook and Twitter made similar announcements. More recently, in 2019, Apple removed the DN T feature from their Safari browser completely. I remember when this feature was originally announced, and I was pretty excited we were finally making some progress in terms of user privacy. As we can see, now the feature is dead, and it can actually cause more harm than good. So make sure you don&rsquo;t have it enabled in your browser. And if you do, I would suggest disabling, and I&rsquo;ll leave links down below in the description and how you can verify in popular browsers whether or not you have this setting enabled.</p>
]]></content>
      </entry>
      <entry>
        <title>I tried the DuckDuckGo Privacy Browser :( - My first impressions</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/duckduckgo-privacy-browser-first-impressions/" />
        <id>https://staging.sideofburritos.com/blog/duckduckgo-privacy-browser-first-impressions/</id>
        <published>2022-05-01T12:57:39Z</published>
        <updated>2022-08-22T12:57:39Z</updated>
        <summary type="html">DuckDuckGo has released a browser. At this time it&amp;#39;s only for Mac, but they say a Windows version is coming soon.</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode54s0hbhb">🎥 


<a href="https://youtu.be/Oc6GqapVyz4" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="how-to-apply-to-the-browser-beta">How to apply to the browser beta</h2>
<ol>
<li>Install the DuckDuckGo mobile app</li>
<li>Open the app → select the 3 vertical dots in the upper right corner → click Settings</li>
<li>Scroll down to the section labeled <code>More From DuckDuckGo</code></li>
<li>Select <code>DuckDuckGo Desktop App</code> → press <code>Join waitlist</code></li>
</ol>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://spreadprivacy.com/introducing-duckduckgo-for-mac/" target="_blank" rel="noopener" class="text-break">https://spreadprivacy.com/introducing-duckduckgo-for-mac/</a> - Official DDG blog post</li>
<li>


<a href="https://twitter.com/yegg/status/1501716484761997318" target="_blank" rel="noopener" class="text-break">https://twitter.com/yegg/status/1501716484761997318</a> - DDG Tweet about down-ranking</li>
<li>


<a href="https://torrentfreak.com/duckduckgo-removes-pirate-sites-and-youtube-dl-from-its-search-results-220415/" target="_blank" rel="noopener" class="text-break">https://torrentfreak.com/duckduckgo-removes-pirate-sites-and-youtube-dl-from-its-search-results-220415/</a> - TF article about DDG removing pirate sites from results</li>
<li>


<a href="https://en.wikipedia.org/wiki/Do_Not_Track" target="_blank" rel="noopener" class="text-break">https://en.wikipedia.org/wiki/Do_Not_Track</a> - Do Not Track HTTP header</li>
</ul>
]]></content>
      </entry>
      <entry>
        <title>Browser Privacy | Cookieless Tracking - ETag</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/browser-privacy-cookieless-tracking-etag/" />
        <id>https://staging.sideofburritos.com/blog/browser-privacy-cookieless-tracking-etag/</id>
        <published>2022-04-17T12:57:39Z</published>
        <updated>2022-08-22T12:57:39Z</updated>
        <summary type="html">Cookies may be on their way out, but tracking users is not. As with most thing, if one method gets restricted companies always seem to find another way.</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode48s0hbhb">🎥 


<a href="https://youtu.be/rsET1-e0acc" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="firefox-users">Firefox Users</h2>
<p>For some reason, I wasn&rsquo;t able to get Firefox to send a blank header even with the <code>Empty header mode</code> enabled. Perhaps it&rsquo;s something with the browser. As a workaround, enter a <code>space</code> in the <code>Value</code> box once you get to step 5. Click the <code>Value</code> box, and hit your space bar once. After that, everything should work as expected. If you know why it&rsquo;s not working, please <a href="https://staging.sideofburritos.com/contact/">reach out</a>.</p>
<hr>
<h2 id="how-to-send-an-empty-if-none-match-http-header">How to send an empty &lsquo;If-None-Match&rsquo; HTTP header</h2>
<ol>
<li>Download and install the extension/add-on <code>ModHeader</code> for your browser (links below)</li>
<li>After the install has completed, click the icon in the menu bar.</li>
<li>Click the <code>+</code> and click <code>Request Header</code>.</li>
<li>In the <code>Name</code> box enter <code>If-None-Match</code>. Since we want to send an empty header, leave the <code>Value</code> box empty (Firefox users enter a space).</li>
</ol>
<h3 id="in-order-to-send-an-empty-header-we-much-enable-the-option-in-the-extensionadd-on">In order to send an empty header, we much enable the option in the extension/add-on.</h3>
<ol>
<li>Click the 3 vertical dots in the top right corner of the extension/add-on settings box.</li>
<li>Scroll to the bottom where you will see the heading <code>Empty header mode</code>.</li>
<li>Select the <code>Send empty header</code> option.</li>
</ol>
<p>Your configuration should look similar to <a href="Browser_Privacy_Cookieless_Tracking_ETag_ModHeader_Config.webp">this image</a></p>
<p>At this point your browser is now configured to send an empty <code>If-None-Match</code> HTTP Header. To test, visit the follow URL - 


<a href="https://hinternesch.com/page1.html" target="_blank" rel="noopener" class="text-break">https://hinternesch.com/page1.html</a>. If everything is working as expected, you should see <code>Your ID is .</code> if you see something else, then it&rsquo;s not working as expected.</p>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://levelup.gitconnected.com/no-cookies-no-problem-using-etags-for-user-tracking-3e745544176b" target="_blank" rel="noopener" class="text-break">https://levelup.gitconnected.com/no-cookies-no-problem-using-etags-for-user-tracking-3e745544176b</a> - Main article referenced</li>
<li>


<a href="https://hinternesch.com/page1.html" target="_blank" rel="noopener" class="text-break">https://hinternesch.com/page1.html</a> - ETag tracking example website from article</li>
<li>


<a href="https://www.wendys.com/cookies-and-tracking-2020" target="_blank" rel="noopener" class="text-break">https://www.wendys.com/cookies-and-tracking-2020</a> - Wendy&rsquo;s Cookies and Tracking Policy</li>
<li>


<a href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Caching" target="_blank" rel="noopener" class="text-break">https://developer.mozilla.org/en-US/docs/Web/HTTP/Caching</a> - Mozillia HTTP caching wiki</li>
</ul>
<h2 id="modheader-download-links">ModHeader Download Links</h2>
<ul>
<li>


<a href="https://chrome.google.com/webstore/detail/modheader/idgpnmonknjnojddfkpgkljpfnnfcklj" target="_blank" rel="noopener" class="text-break">https://chrome.google.com/webstore/detail/modheader/idgpnmonknjnojddfkpgkljpfnnfcklj</a> - Chrome/Chromium</li>
<li>


<a href="https://addons.mozilla.org/en-US/firefox/addon/modheader-firefox/" target="_blank" rel="noopener" class="text-break">https://addons.mozilla.org/en-US/firefox/addon/modheader-firefox/</a> - Mozillia Firefox</li>
<li>


<a href="https://microsoftedge.microsoft.com/addons/detail/modheader/opgbiafapkbbnbnjcdomjaghbckfkglc" target="_blank" rel="noopener" class="text-break">https://microsoftedge.microsoft.com/addons/detail/modheader/opgbiafapkbbnbnjcdomjaghbckfkglc</a> - Microsoft Edge</li>
</ul>
]]></content>
      </entry>
      <entry>
        <title>Browser Cookies and Privacy</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/browser-cookies-and-privacy/" />
        <id>https://staging.sideofburritos.com/blog/browser-cookies-and-privacy/</id>
        <published>2022-04-09T12:57:39Z</published>
        <updated>2022-08-22T12:57:39Z</updated>
        <summary type="html">Cookies directly affect your privacy. Not all cookies are equal, and they all serve different purposes. Cookies perform important and sometimes necessary services on the internet.</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode44s0hbhb">🎥 


<a href="https://youtu.be/qI2EDsBurQQ" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="blocking-cookies">Blocking Cookies</h2>
<h3 id="how-to-block-third-party-cookies-in-firefox">How to block Third-Party Cookies in Firefox</h3>
<ol>
<li>Click the hamburger (settings) menu in the top right → select settings.</li>
<li>Select <code>Privacy &amp; Security</code> on the left.</li>
<li>Under <code>Enhanced Tracking Protection</code> select <code>Custom</code></li>
<li>Check the <code>Cookies</code> box, click the dropdown next to it, and select <code>All third-party cookies</code></li>
<li>BONUS - Also check the boxes for <code>Tracking content</code>, <code>Cryptominers</code>, and <code>Fingerprinters</code>.</li>
</ol>
<h3 id="how-to-block-third-party-cookies-in-chromechromium">How to block Third-Party Cookies in Chrome/Chromium</h3>
<ol>
<li>Click the vertical 3 dot menu in the top right → select settings.</li>
<li>Select <code>Privacy and Security</code> on the left.</li>
<li>Click <code>Cookies and other site data</code></li>
<li>Under <code>Generatl settings</code> select the <code>Block third-party cookies</code> radio button.</li>
</ol>
<h3 id="how-to-block-third-party-cookies-in-safari">How to block Third-Party Cookies in Safari</h3>
<ol>
<li>Click <code>Safari</code> in the top menu bar and select <code>Preferences...</code>.</li>
<li>Select the <code>Privacy</code> tab.</li>
<li>Check the box next to <code>Website tracking:</code> that says <code>Prevent cross-site tracking</code></li>
</ol>
<h3 id="how-to-block-third-party-cookies-in-microsoft-edge">How to block Third-Party Cookies in Microsoft Edge</h3>
<ol>
<li>Download 


<a href="https://www.mozilla.org/en-US/firefox/new/" target="_blank" rel="noopener" class="text-break">Firefox</a>&hellip;just kidding.</li>
<li>Click the horizontal 3 dot menu in the top right → select settings.</li>
<li>Select <code>Cookies and site permissions</code> on the left.</li>
<li>Under <code>Cookies and data stored</code> click <code>Manage and delete cookies and site data</code>.</li>
<li>Click the button next to <code>Block third-party cookies</code>.</li>
</ol>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://www.facesofopensource.com/person/lou-montulli/" target="_blank" rel="noopener" class="text-break">https://www.facesofopensource.com/person/lou-montulli/</a> - Stunning photos of individuals who contributed to the development and advancement of Open Source Software.</li>
<li>


<a href="https://www.techopedia.com/definition/8207/magic-cookie" target="_blank" rel="noopener" class="text-break">https://www.techopedia.com/definition/8207/magic-cookie</a></li>
<li>


<a href="https://www.cnet.com/tech/services-and-software/aol-buys-netscape-for-4-2-billion/" target="_blank" rel="noopener" class="text-break">https://www.cnet.com/tech/services-and-software/aol-buys-netscape-for-4-2-billion/</a></li>
<li>


<a href="https://www.cookiepro.com/knowledge/what-is-a-session-cookie/" target="_blank" rel="noopener" class="text-break">https://www.cookiepro.com/knowledge/what-is-a-session-cookie/</a></li>
<li>


<a href="https://www.invisibly.com/learn-blog/companies-selling-your-personal-data" target="_blank" rel="noopener" class="text-break">https://www.invisibly.com/learn-blog/companies-selling-your-personal-data</a></li>
<li>


<a href="https://www.cloudflare.com/learning/privacy/what-are-cookies/" target="_blank" rel="noopener" class="text-break">https://www.cloudflare.com/learning/privacy/what-are-cookies/</a></li>
<li>


<a href="https://en.wikipedia.org/wiki/Shopping_cart_software" target="_blank" rel="noopener" class="text-break">https://en.wikipedia.org/wiki/Shopping_cart_software</a></li>
<li>


<a href="https://en.wikipedia.org/wiki/HTTP_cookie" target="_blank" rel="noopener" class="text-break">https://en.wikipedia.org/wiki/HTTP_cookie</a></li>
</ul>
]]></content>
      </entry>

</feed>
