<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>Tracking on Side Of Burritos</title>
  <link rel="alternate" href="https://staging.sideofburritos.com/tags/tracking/" />
  <link rel="self" href="https://staging.sideofburritos.com/tags/tracking/index.xml" />
  <subtitle>Recent content in Tracking on Side Of Burritos</subtitle>
  <id>https://staging.sideofburritos.com/tags/tracking/</id>
  <generator uri="http://gohugo.io" version="0.165.0">Hugo</generator>
  <language>en-us</language>
  <updated>2022-12-19T10:00:00Z</updated>
  <author>
    <name>Josh</name>
    
  </author>
  
      <entry>
        <title>My Brave Browser Setup and Recommendations</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/brave-browser-setup/" />
        <id>https://staging.sideofburritos.com/blog/brave-browser-setup/</id>
        <published>2022-12-19T10:00:00Z</published>
        <updated>2022-12-21T10:00:00Z</updated>
        <summary type="html">Brave is a free and open-source web browser developed by Brave Software, Inc. based on the Chromium web browser.</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode38s0hbhb">🎥 


<a href="https://youtu.be/lmHsdkalyCw" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://brave.com/download/" target="_blank" rel="noopener" class="text-break">https://brave.com/download/</a> - Brave Browser Download</li>
<li>


<a href="https://developer.mozilla.org/en-US/docs/Web/API/WebRTC_API" target="_blank" rel="noopener" class="text-break">https://developer.mozilla.org/en-US/docs/Web/API/WebRTC_API</a> - WebRTC Explained</li>
<li>


<a href="#ZgotmplZ" target="_blank" rel="noopener" class="text-break">https://brave.com/privacy/browser/#safe-browsing</a> - Brave Safe Browsing Privacy Policy</li>
<li>


<a href="https://github.com/iamadamdev/bypass-paywalls-chrome" target="_blank" rel="noopener" class="text-break">https://github.com/iamadamdev/bypass-paywalls-chrome</a> - Bypass Paywalls Extension</li>
</ul>
<hr>
<h3 id="transcript">Transcript</h3>
<p><strong>Please excuse any grammatical errors. I used a tool to generate the transcript and haven&rsquo;t had a chance to read through it yet.</strong></p>
<p>So I&rsquo;m going to be brave here and to share with you my brave browser settings. Before that, I want to make a quick disclaimer, there is some benefit that comes with just using the default settings the browser comes with, you blend in with all the other default installs instead of using a customized browser. Brave is what I&rsquo;m using right now on my desktop. On my mobile, I&rsquo;m using vanadium. Privacy and security are always changing. So what you see now will likely evolve over time and change. But this is what works well for me at the time of this recording. In the past, I used Safari on Googled chromium, chromium, Firefox with a bunch of add ons. So take it with a grain of salt, always do your own research and use my advice as a starting point to figure out what&rsquo;s best for you. And then lastly, as far as security goes, Chromium is more secure than Firefox at this time, which is why I&rsquo;m using brave a chromium based browser. The only time I use Firefox is when I&rsquo;m using Tor browser. So for this demonstration, I&rsquo;ll be using a fresh install of brave on Windows 11. So once you first install brave, you&rsquo;ll see this screen, I&rsquo;m going to just click Skip welcome tour, you&rsquo;re presented with this busy dashboard. And the first thing we&rsquo;re going to do to start our customization, click the three bars in the upper right hand corner and go into settings. If you already have brave installed on your computer, you can just follow along and go into the settings. So on the first section getting started, I just leave all this set to the default, I don&rsquo;t change anything here, you can make brave your default browser if you want.</p>
<p>Next on to appearance. And this one, I like to disable the show side panel button. The side panel is this, I don&rsquo;t use this reading list at all. So I disabled it. We can then scroll down. I like to enable this setting always show full URLs. And so what that means is you&rsquo;ll always see the full URL in the address bar when you&rsquo;re visiting a website, you won&rsquo;t see an abbreviated version. And that&rsquo;s the last setting I change on appearance on to New Tab page. So this busy dashboard, we see on a new tab that we saw at the start, I don&rsquo;t care for this. So in the settings, what I do is I change that to blank page. The dashboard is disabled the settings for it. And now if we open a new tab, we just see this. So again, that&rsquo;s just preference. I don&rsquo;t like the busyness of it. So that&rsquo;s up to you. So on the next setting shields. So on this page, I leave all these the default trackers and ads blocking, you have a couple options here. You can either leave it standard or change it to aggressive. Personally, I leave it on standard. If you change it to aggressive, you might break some site functionality. But again tested out up to you block scripts, if you enable this you will break sites. So I leave it disabled block fingerprinting, this also has a strict may break sites option. To me the jury&rsquo;s still out on whether or not blocking fingerprinting actually works or if it just makes you more noticeable. I haven&rsquo;t done much research into exactly what brave does to block fingerprinting. So I just leave it on standard block cookies only cross site. If you block all cookies, again, you&rsquo;ll break functionality, so I leave it on only cross site. Next is brave rewards. I don&rsquo;t enable this, I don&rsquo;t use brave rewards at all. So I like to disable the option in the menu bar. So now we can see that&rsquo;s gone. Now on to social media blocking, if you use Google or Facebook to log into any third party sites, then you want to leave these enabled. Me personally, I don&rsquo;t use Google or Facebook to log into any third party sites. So I just disabled these. And the last setting on here allowed Twitter embedded tweets. So if you ever reading a news article, and you see an embedded tweet on there, if you disable this, that tweet will be blocked and you won&rsquo;t see it. So if you&rsquo;d like seeing the tweets, leave it enabled if you don&rsquo;t disable it on to privacy and security.</p>
<p>The first setting autocomplete searches in URLs, I always make sure this is disabled. When you enable this, it starts sending the data as soon as you start typing in the search box. So if you accidentally type something personal, that data is already sent off without you actually even submitting the search. So I always make sure this is disabled so that my searches are only sent when I press enter. The next setting is WebRTC IP handling policy. And click here to learn more. So we can see here the default WebRTC has the right to enumerate all interfaces and bind them to discover public interfaces. That is not a great default setting. The one we&rsquo;re going to change it to is disabled, non proxied UDP, and I&rsquo;ll show you why in a moment. So if we go and search for WebRTC leak test, I&rsquo;m just going to click the first one. So depending on your home network setup, but WebRTC has the ability to potentially leak your real IP address, even if you&rsquo;re using a VPN service. I&rsquo;ll leave some more links down below in the description. So you can read more about WebRTC if you want to. I&rsquo;m not going to cover all the details about it in this video. But in our browser, we&rsquo;re going to change this from default to this able nonpracticing UDP. Now if we go back here and refresh the page, we can see web RTC is disabled and will not leak your IP address. So that&rsquo;s just an example of why we want to change that from the default setting, I would suggest reading more about WebRTC, which stands for web real time communication. It&rsquo;s mostly used for video chat and different things like that. But changing it to this setting will reduce our exposure. Further down, we have allow privacy preserving product analytics, disable, automatically send daily usage ping to brave, disable, I leave the clear browsing data set to default like only Claire manually, but if you want, you can set it up so that on exit your data is cleared. Cookies, I&rsquo;ll leave this on default. But we are going to click on security. So now Safe Browsing from what I understand is that it takes a hash of your URL that you&rsquo;re visiting, and compares it against a hash of malicious urls to make sure that you&rsquo;re not visiting a malicious site. If you are it&rsquo;ll warn, you know, I don&rsquo;t want to install a new build. Different browsers implement this in different ways I wrote about how brave does it I&rsquo;ll link that down below. It sounds like their implementation is better than how Google Chrome doesn&rsquo;t. But I&rsquo;m still not the biggest fan of it. So for me, I disable it, even though that&rsquo;s not recommended. But I would suggest you read about it, the pros and cons of it, how it works, and then make that determination for yourself and what&rsquo;s best for you. And the last setting I like to enable on this page is always use secure connections. And what that does is if you browse to a site over HTTP, and for some reason, the website doesn&rsquo;t automatically redirect you to HTTPS, brave will handle that for you, and redirect you automatically. And if for some reason the site doesn&rsquo;t support HTTPS, it&rsquo;ll warn you before loading sites that don&rsquo;t support it. So that&rsquo;s the last option I change on this page. So we can scroll back up, go back. And on the same page, we&rsquo;re now going to go into site and shield settings. So these next settings will be personal to you and how you use your browser. So under permissions. For me personally, I never use location in my browser. So I&rsquo;m going to click on location. And then I&rsquo;m going to select don&rsquo;t allow sites to see your location. So instead of a site showing a pop up asking if they can see your location, I like to disable that completely. So I don&rsquo;t even see the pop up, we can then go back. And the rest of these I&rsquo;m going to leave enabled, I use video chatting in my browser. So I need to use the microphone and camera for that. If you don&rsquo;t go ahead and disable those notifications, if you don&rsquo;t like them, disable them. Then everything else on this page, I just leave set to the default screen, scroll up again, go back.</p>
<p>The last thing I like to disable is this private window with Tor. If I want to use Tor, I just use the Tor Browser. I don&rsquo;t want brave handling that at all. So I like to disable that functionality. So that&rsquo;s all on this page. Next is sync, I don&rsquo;t use sync search engine. So this is personal preference. There&rsquo;s a bunch of options here. So I&rsquo;ve been using brave search for a while and it&rsquo;s been working well. Sometimes I use start page or DuckDuckGo haven&rsquo;t really had a chance yet to settle on one. And then sometimes if I&rsquo;m looking for something specific, that&rsquo;s technical, I&rsquo;ll actually use Google because sometimes I get better results there. I know I&rsquo;m a fraud. But that&rsquo;s what works for me. And then on to extensions, I disabled the Hangouts option. This next one about unstoppable domains. I just disabled This, along with the method to resolve the Ethereum Name Service. I also disabled this, if you use either of these, you should probably leave this setting enabled. If you don&rsquo;t like me, then you can probably disable them. Web torrent, I disabled this one I don&rsquo;t want my browser opening torrent files or magnet links the setting here for Widevine if you use any streaming sites such as Netflix or Amazon Prime video, you&rsquo;ll likely have to enable this. Otherwise the content will not play in your browser. For me, I don&rsquo;t use those so I just leave it disabled. So there&rsquo;s nothing else will be changing on this page. So next we can go on to Wallet. So brave also has support for cryptocurrency wallets. I don&rsquo;t use it. So I just disable all these seven to none. So since I don&rsquo;t use the wallet feature in Brave, I don&rsquo;t need the icon in the toolbar. So I disabled that. On to IPFS IPFS stands for interplanetary file system. They have some links here if you want to learn more about it, you can click and read. I don&rsquo;t use it at all. So I set it to disabled next week and go on to autofill so if you&rsquo;ve seen any of my previous videos, you might know that I use one password I&rsquo;m still in the process of testing out and migrating to bit Warden But with all that being said I don&rsquo;t use any browser Password Manager. So I like to go into the settings and disable that. Let&rsquo;s go back. So besides passwords I don&rsquo;t let brave store my payment methods solely To disable this as well,</p>
<p>I can go back. And the last one addresses, I don&rsquo;t let brave store my addresses either. Disable that, go back onto languages, I don&rsquo;t like to use brave translate. If I want to translate something, I&rsquo;ll just paste it into a website to translate it. So I disabled that on to downloads, I just leave this set to default help tips. So this setting is actually pretty cool show Wayback Machine prompt on four or four pages. So if you get a 404 and a web page, which means Page Not Found brave will give you the option to go to the Wayback Machine and see if there&rsquo;s a cached copy of the page there. So that can be pretty handy. So I just leave that enabled on to system. I don&rsquo;t like this continue running background apps on Brave is closed. So I disabled that. And that is the last browser setting that I change. So as far as additional extensions go, I do use the one password extension. I also use something called bypass paywalls. It&rsquo;s on GitHub, and it does exactly what it&rsquo;s named. But besides those, that&rsquo;s it I try to keep my browser as stock as possible and not loaded down with extensions. Most people think the more privacy extensions you had, the better but really, you&rsquo;re just making yourself more unique compared to someone who&rsquo;s using a default setup. So again, this is what works for me now. I hope we can help get you started in your own research and testing. As this was a browser preference video. I&rsquo;m sure there will be some feedback. So if you have any feel free to let me know down below in the comments.</p>
]]></content>
      </entry>
      <entry>
        <title>How Microsoft killed &#39;Do Not Track&#39;</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/how-microsoft-killed-do-not-track/" />
        <id>https://staging.sideofburritos.com/blog/how-microsoft-killed-do-not-track/</id>
        <published>2022-12-12T10:00:00Z</published>
        <updated>2022-12-21T10:00:00Z</updated>
        <summary type="html">While the &amp;#39;Do Not Track&amp;#39; feature was originally released with the best of intentions, you should now make sure you have it disabled. With IE10, Microsoft killed the feature. At this point, having it enabled does more harm than good.</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode75s0hbhb">🎥 


<a href="https://youtu.be/vZEVvqpcuZw" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://www.privacy-handbuch.de/handbuch_21i.htm" target="_blank" rel="noopener" class="text-break">https://www.privacy-handbuch.de/handbuch_21i.htm</a> - Firefox Snake Oil - Main article referenced</li>
<li>


<a href="https://www.eff.org/deeplinks/2009/09/online-trackers-and-social-networks" target="_blank" rel="noopener" class="text-break">https://www.eff.org/deeplinks/2009/09/online-trackers-and-social-networks</a> - EFF original announcement of DNT</li>
<li>


<a href="https://gizmodo.com/do-not-track-the-privacy-tool-used-by-millions-of-peop-1828868324" target="_blank" rel="noopener" class="text-break">https://gizmodo.com/do-not-track-the-privacy-tool-used-by-millions-of-peop-1828868324</a></li>
<li>


<a href="https://www.wired.com/story/browser-fingerprinting-tracking-explained/" target="_blank" rel="noopener" class="text-break">https://www.wired.com/story/browser-fingerprinting-tracking-explained/</a></li>
<li>


<a href="https://www.groovypost.com/reviews/internet-explorer-10-preview-windows-7/" target="_blank" rel="noopener" class="text-break">https://www.groovypost.com/reviews/internet-explorer-10-preview-windows-7/</a></li>
<li>


<a href="https://www.wired.com/2012/08/microsoft-do-not-track-is-good-for-users-on-by-default-in-ie-10/%29" target="_blank" rel="noopener" class="text-break">https://www.wired.com/2012/08/microsoft-do-not-track-is-good-for-users-on-by-default-in-ie-10/)</a></li>
<li>


<a href="https://news.yahoo.com/yahoo-stops-supporting-not-track-privacy-setting-163054926.html" target="_blank" rel="noopener" class="text-break">https://news.yahoo.com/yahoo-stops-supporting-not-track-privacy-setting-163054926.html</a> - Yahoo stopping support for DNT</li>
<li>


<a href="https://martech.org/know-twitters-latest-privacy-policy-update/" target="_blank" rel="noopener" class="text-break">https://martech.org/know-twitters-latest-privacy-policy-update/</a> - Twitter stopping support for DNT</li>
<li>


<a href="https://support.google.com/chrome/answer/2790761" target="_blank" rel="noopener" class="text-break">https://support.google.com/chrome/answer/2790761</a> - Google doesn&rsquo;t support DNT</li>
<li>


<a href="https://www.macworld.com/article/232426/apple-safari-removing-do-not-track.html" target="_blank" rel="noopener" class="text-break">https://www.macworld.com/article/232426/apple-safari-removing-do-not-track.html</a> - Apple removes DNT from Safari</li>
</ul>
<hr>
<h3 id="how-to-disable-do-not-track-in-popular-browsers">How to disable &ldquo;Do Not Track&rdquo; in popular browsers</h3>
<ul>
<li>


<a href="https://support.google.com/chrome/answer/2790761" target="_blank" rel="noopener" class="text-break">https://support.google.com/chrome/answer/2790761</a> - How to disable &ldquo;Do Not Track&rdquo; in Chrome</li>
<li>


<a href="https://support.mozilla.org/en-US/kb/how-do-i-turn-do-not-track-feature" target="_blank" rel="noopener" class="text-break">https://support.mozilla.org/en-US/kb/how-do-i-turn-do-not-track-feature</a> - How to disable &ldquo;Do Not Track&rdquo; in Firefox</li>
<li>


<a href="https://answers.microsoft.com/en-us/windows/forum/all/do-not-track-setting-in-edge/b3d7b40f-dfce-47f7-b9ab-9d0e940ccf97" target="_blank" rel="noopener" class="text-break">https://answers.microsoft.com/en-us/windows/forum/all/do-not-track-setting-in-edge/b3d7b40f-dfce-47f7-b9ab-9d0e940ccf97</a> - How to disable &ldquo;Do Not Track&rdquo; in Edge</li>
</ul>
<hr>
<h3 id="transcript">Transcript</h3>
<p><strong>Please excuse any grammatical errors. I used a tool to generate the transcript and haven&rsquo;t had a chance to read through it yet.</strong></p>
<p>If you&rsquo;ve ever explored the privacy settings in your browser, you&rsquo;ve likely come across a setting related to do not track. Let&rsquo;s talk about what this is. I&rsquo;ll show you exactly what the setting does. And then we&rsquo;ll talk about how Microsoft killed it. DNT or do not track was proposed by the EFF in 2009. It will be implemented by your browser is sending an additional header to the website that you are visiting, indicating that you wished not to be tracked. The W3C standard for DNT explicitly stated that it&rsquo;s only used when the user made a deliberate choice to enable it. While this feature had the best of intentions, some early studies indicated that it was largely being ignored by the trucking industry. Before we continue, let&rsquo;s take a look at exactly how DNT works.</p>
<p>So, here I am on my website site of burritos.com. I currently have the Do Not Track setting enabled in my browser. If we right-click, go to inspect, go to the Network tab, and then refresh the website. We&rsquo;re going to select the initial request. And if we scroll down to the section labeled request headers, we can see a header here called the DN T with a value of one. So, when you have this setting enabled in your browser, your browser will then send the DNT header on all requests indicating that you have it enabled. Now if I disable the Do Not Track setting and go back to the same page, we were just on, refresh the page again. Click on the newest request, scroll down to the request headers, and we no longer see that d and t header 13 years later in 2022. This feature is actually having the opposite effect of what it originally intended. So, since so few users have this feature enabled, and it&rsquo;s making little to no difference in preventing tracking, companies and marketers are using the DNT header we saw in the demonstration as another way to track visitors. So instead of helping you, it&rsquo;s hurting you by actually creating an additional data point that can be used to fingerprint you.</p>
<p>The last reason not to use it is that Microsoft killed it. As I mentioned, the W3C standard stated that this feature had to be a deliberate choice by the user. In 2012. Internet Explorer 10 was released with DNT enabled by default, which violated the standard and gave the tracking industry a reason to officially ignore it, since it could no longer be assumed the user enabled the feature. In May 2014. Yahoo announced they would stop supporting the Do Not Track privacy header. And in the years following, Google, Facebook and Twitter made similar announcements. More recently, in 2019, Apple removed the DN T feature from their Safari browser completely. I remember when this feature was originally announced, and I was pretty excited we were finally making some progress in terms of user privacy. As we can see, now the feature is dead, and it can actually cause more harm than good. So make sure you don&rsquo;t have it enabled in your browser. And if you do, I would suggest disabling, and I&rsquo;ll leave links down below in the description and how you can verify in popular browsers whether or not you have this setting enabled.</p>
]]></content>
      </entry>
      <entry>
        <title>Apple is still tracking you.</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/apple-is-still-tracking-you/" />
        <id>https://staging.sideofburritos.com/blog/apple-is-still-tracking-you/</id>
        <published>2022-06-05T14:51:16Z</published>
        <updated>2022-08-10T14:51:16Z</updated>
        <summary type="html">Apple has decided to let companies follow a much looser interpretation of its controversial privacy policy. Apples message has been, and continues to be that &amp;#39;if you choose Apple, you choose privacy&amp;#39;.</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode25s0hbhb">🎥 


<a href="https://youtu.be/5oJAjXLaN7k" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://www.emarketer.com/content/apple-ad-revenues-skyrocket-amid-its-privacy-changes" target="_blank" rel="noopener" class="text-break">https://www.emarketer.com/content/apple-ad-revenues-skyrocket-amid-its-privacy-changes</a> - Apple ad revenues skyrocket amid its privacy changes</li>
<li>


<a href="https://www.ft.com/content/074b881f-a931-4986-888e-2ac53e286b9d" target="_blank" rel="noopener" class="text-break">https://www.ft.com/content/074b881f-a931-4986-888e-2ac53e286b9d</a> - Apple’s privacy changes create windfall for its own advertising business</li>
<li>


<a href="https://www.ft.com/content/69396795-f6e1-4624-95d8-121e4e5d7839" target="_blank" rel="noopener" class="text-break">https://www.ft.com/content/69396795-f6e1-4624-95d8-121e4e5d7839</a> - Apple reaches quiet truce over iPhone privacy changes</li>
<li>


<a href="https://developer.apple.com/app-store/app-privacy-details/" target="_blank" rel="noopener" class="text-break">https://developer.apple.com/app-store/app-privacy-details/</a> - App privacy details on the App Store</li>
<li>


<a href="https://jamesfriend.com.au/pce-js/pce-js-apps/" target="_blank" rel="noopener" class="text-break">https://jamesfriend.com.au/pce-js/pce-js-apps/</a> - Classic Mac terminal emulator</li>
<li>


<a href="https://blackkite.com/data-breaches-caused-by-third-parties/" target="_blank" rel="noopener" class="text-break">https://blackkite.com/data-breaches-caused-by-third-parties/</a> - Data breaches caused by third parties</li>
</ul>
]]></content>
      </entry>

</feed>
