I’ve been worried about this since Google switched to it in Feb this year.

Apparently the short answer is “you can’t”. Which is terrifying. Surely some clever peeps out there can find a way round it (for normies)?

  • hansolo@lemm.ee
    link
    fedilink
    English
    arrow-up
    11
    ·
    1 day ago

    Of course, and I’m saying that while turning JS on for Bob’s website is maybe acceptable, leaving it turned off for gstatic, googleadmamager, etc. also on Bob’s website is easier than the other way around. Layers of defense. Don’t count on canvas blocker.

    Though this is just for what you want to obscure. It doesn’t make any sense to openly interact with Google or Meta products with all this going on. Use for your socials, anything tied to your name or face, regular vanilla FF with containers for safety. Let G associate that IP/geography and fingerprint with what you HAVE to do publicly visible. Then you close FF, change VPN locations, and open private mode Librewolf. It’s full plausible deniability. Or use TOR, same same.

    Convenience and security are a trade off. Find the balance that works for you based on your threat model. It’s different for everyone.