Hacker News new | ask | show | jobs
by sergeykish 2195 days ago
I am outsider interested in this topic, it would be great if you provided some links. I've found Web of Trust addon [1] and its Privacy Policy [2]:

> Automatically Collected Information

> Internet Protocol Address (trimmed to permanently remove specific location information other than country, city & postal code); device type; operating system and browser; Search engine results page (keyword, order/index of results, link of result, title, description, ads); web pages visited and time stamp of the visit; display ads; and WOT user ID.

That is awful [3] but that's what almost every web page wants to do. Privacy Respecting browser should not run javascript, ignore cookie, and block non 1st party resources. That's what my browser does. But this is not where consensus lies.

As I understand Mozilla allows to collect information if it is defined in Privacy Policy. It would be great to have badge "Collects Information".

[1] https://addons.mozilla.org/en-US/firefox/addon/wot-safe-brow...

[2] https://www.mywot.com/privacy

[3] https://www.pcmag.com/news/web-of-trust-browser-extension-ca...

2 comments

Here's a talk from 33C3: https://media.ccc.de/v/33c3-8034-build_your_own_nsa

The data under "web pages visited and time stamp of the visit" is your clickstream data (you can check which data the extension sends using the network tab in the extension developer tools, though some extensions go to great lenghts to obfuscate it).

Danke schön. Schade, aber mein Deutsch ist nicht so gut.

Most of the users live in Privacy Nightmare and accept it. They also run closed source OS and applications. The truth is privacy has a cost - monetary (Apple ecosystem) or time/experience (Linux etc).

Apple can hire maintainers, Linux users can become maintainers. Those who live in free as beer land has free as beer support.

There's an English translation available btw!
The initial part perhaps falls into the widely accepted consensus of monitoring usage, but an extension collecting all"web pages visited and time stamp of the visit" crosses the boundary to totally unacceptable.