8 ms·
Would be great to understand what communication with Google servers can be turned off via setting changes rather than code changes, and what cannot.
by daakus 6y ago
Would be great to understand what communication with Google servers can be turned off via setting changes rather than code changes, and what cannot.
- est31 6y agoEven basic things like auto-suggestions in the URL bar can't be turned off any more. A while ago there used to be an option for it but it was removed. So when you enter an URL it's automatically sent to Google as you type.
- exikyut 6y ago!!! Scrambles to check settings It's over in chrome://settings/syncSetup now.
- pvg 6y agoThe setting is 'Autocomplete searches and URLs', just type it in the settings search box. It's still there.
- est31 6y agoIndeed it's still present. Thanks for pointing it out!
- cma 6y agoAt some point the new tab page stopped being replaceable something less distracting/compulsive like your own custom url. Your homepage can only apply at startup. It isn't something that should have to be an extension.
- daakus 6y agoIf the default is set to something else, say DuckDuckGo, it'll go there instead right?
- 0xy 6y agoChrome sends X-Client-Data headers to DoubleClick and other Google-owned properties, which can be used for tracking purposes. There's no way to disable this behavior. The header contains a "low entropy" random ID generated by Chrome upon installation. Coupled with other data, this can be used to track users even after clearing cookies and in private mode.
- rossjudson 6y agoThere's a rather precise description of X-Client-Data at https://www.google.com/chrome/privacy/whitepaper.html#variations https://www.google.com/chrome/privacy/whitepaper.html#variat... Note that you can reset at any time with the “--reset-variation-state” command line flag. "Coupled with other data", anybody can track anything.
- aspenmayer 6y agoI use the GDPR definition for what “other data” means in an online data collection context. Even then, legal hoop-jumping causes those definitions to be gamed, to the detriment of user privacy, and to the boon of site operators and advertisers. Damian George, Kento Reutimann, Aurelia Tamò-Larrieux, GDPR bypass by design? Transient processing of data under the GDPR, International Data Privacy Law, Volume 9, Issue 4, November 2019, Pages 285–298, https://doi.org/10.1093/idpl/ipz017 https://doi.org/10.1093/idpl/ipz017 Michael Veale, Reuben Binns, Jef Ausloos, When data protection by design and data subject rights clash, International Data Privacy Law, Volume 8, Issue 2, May 2018, Pages 105–123, https://doi.org/10.1093/idpl/ipy002 https://doi.org/10.1093/idpl/ipy002 Frederik J. Zuiderveen Borgesius, Singling out people without knowing their names – Behavioural targeting, pseudonymous data, and the new Data Protection Regulation, Computer Law & Security Review, Volume 32, Issue 2, 2016, Pages 256-271, https://doi.org/10.1016/j.clsr.2015.12.013 https://doi.org/10.1016/j.clsr.2015.12.013
- NiekvdMaas 6y agoYou can disable most of the telemetry with command line switches like --disable-background-networking and --disable-sync, but some things like field trials and doubleclick fingerprinting cannot be excluded in regular Chrome/Chromium AFAIK.
- frank2 6y agoThe flag --disable-background-networking might break some sites: https://github.com/cypress-io/cypress/issues/1320 https://github.com/cypress-io/cypress/issues/1320