Note: This setup is both for my android and pc Edit: For those recommending paid services and selfhosting, I don’t have the money nor resources for either. Also it seams some people are confusing my android setup with my PC setup so I’ll write it down. Android: Brave(movies) + Ironfox, Search: Brave + DDG, VPN: Proton ( not always on), GPay = Cash, Auth= Aegis Auth, Pass: KeepassDX, PC: Firefox= Librewolf, VPN = No VPN (VERY slow internet), Search: Searxng + DDG, Pass: KeepassXC,
I’m gonna make my own payment company and just call it “cash”
I’ve been using Vivaldi for browsing on desktop and mobile. Seems pretty nice. Any concerns people have with them as an app or org? I’m staying away from Brave, the consensus seems to lean toward bad acting org and bloated app.
Vivaldi sells your data.
open source software ≠ privacy
though it is preferable. 3rd party verification of closed source can be accepted in some cases.
Any chance you found a way to encrypt local app caches?
What privacy concerns are there with using your ISP DNS? (honest question, not judging)
dns requests flowing through your ISP means they know where you (want to) go and 3rd parties can potentially determine identity based on certain aspects (date time of request, how many, etc) can matter to law enforcement, surveillance/state efforts, hackers and beyond) because ISP may not govern well or, hell, wven sell those requests or just 3rs party manages it without your knowledge etc )
it’s better to have a known good dns provider that can offer a little trust but realistically nothing is 100%…
Your ISP can see what websites you visit. But even if you change DNS server it can still see that if you don’t use either a VPN or DoH/DoT.
So it’s a good idea to use DoH or DoT. It’s an improvement but it’s far from perfect because the DNS server you’ll pick will see what site you visit, you have to trust them. And your ISP still has other ways to see which site you visit.
deleted by creator
Yes, that’s why I ended with:
And your ISP still has other ways to see which site you visit.
Even with secure DNS they can still see the domain name with the SNI, which is probably more reliable than an IP address. Last I checked very few websites used ECH. I would still argue that it’s better to have encrypted DNS requests than non-encrypted ones.
Depends where you are, and what laws your ISP is required to follow with regards to blocking/tracking. Personally I like Quad9.
ISPs not only have a monopoly on connectivity and bandwidth prices - which they severely abuse by the way, considering the actual operational costs - but they also have everything to gain on analyzing your traffic, DNS queries being one of them. They already have a bunch of personally identifiable information (PII) on you (full name, date of birth, banking information and, in some countries, even social security number). Linking that PII to your DNS requests (read: what websites you visit) and selling that to data brokers is a pretty low effort sweet deal. Long are the days gone when ISPs only provided Internet service.
Texts on the topic:
- https://mullvad.net/en/help/all-about-dns-servers-and-privacy
- https://labs.ripe.net/author/babak_farrokhi/is-your-isp-hijacking-your-dns-traffic/
- https://www.howtogeek.com/why-dns-betrays-your-privacy-and-how-dnscrypt-stops-it/
Videos on the topic:
In my country they implemented national wide surveillance in the network infrastructure and they keep track of everything Edit: that’s why internet is very slow
📱➡️ 📴
AlterSend, encrypted peer-to-peer file transfers between devices with no size limits, no cloud storage, and no servers involved, FOSS, no account, Mac, Windows, Linux, iOS, Android
Brave 🤮
Good choices. Congrats
💳→💵
My first thought was “what app is that?”
I actually despise cash, but I might go back to it just for privacy.
I host nextcloud and Immich on an old laptop to replace google drive and photos respectively. Very nice, but nextcloud syncing with android is annoying. Looking for alternatives there. Self hosted is a requirement.
Hosting nextcloud also lets me sync my calendar and contacts completely on my own hardware too. I use davx5 to sync with the Fossify calendar app on my phone because I like it better than the nextcloud app.
What is the issue with syncing with nextcloud? What kind of files?
Agreed, the syncing issue is what turned me off Nextcloud eventually. Now I have Proton Drive which also stalls and skips file synchronization. The only service that I feel did sync well (better than Google Drive) was MEGA which was super clean, but that was years ago so it might not be true anymore.
I’m currently trying out OpenCloud (I think a fork of OwnCloud, where Nextcloud was forked from). It’s working fine on PC where I had syncing issues with Nexcloud as well. I also host a syncthing server for the few things I really want to have in sync for all my devices (mostly my Obsidian Vault). It’s been really reliable, especially compared to other solutions I tried out
Arch Linux -> Tailscale -> Jellyfin.
What’s up with Tutamail? I’ve been looking at switching my email over to something better, and I’ve been hearing Proton for a long time, but I don’t know enough to sway one way or the other.
Also, how hard is it to self host email?
Self-hosting email sucks. Setting up an email server is the easy part, and you’d be able to receive email alright. Sending is a different can of worms and not a fun dinner. Because other email providers will not trust your server and tend to send your messages straight to spam.
I haven’t used Tuta, but it looks alright. I’ve got Proton which works very well for email and VPN, but it is a bit expensive to be honest. But I like ending my address with @pm.me
Haven’t dived that deep yet, but who knows. Maybe I’ll get there eventually. I’ve heard good things about this book: https://www.tiltedwindmillpress.com/product/ryoms/
You also don’t need to do everything all at once. You can start by getting your own domain and configuring your mail service of choice to handle it. Then whenever you want to move to a different mail service or run your own, you maintain control over your addresses and just need to update your DNS.
Edit: Oh, completely forgot to talk about Proton/Tuta. I set up my stuff on Proton back in the day and recently set up Tuta for my partner. I might get around to swapping to Tuta for my stuff as well, I just haven’t bothered to yet.
If you are on Arch, then I recommend to self host SearxNG meta search engine. There is an AUR package that builds from source and makes it easy to install and update. So if you are on Archlinux and value privacy a lot, then there is no excuse to not use this: https://aur.archlinux.org/packages/searxng-git and https://docs.searxng.org/
# Archlinux, AUR # Build and install from source: yay searxng-git # Configure the search engine (shouldn't need to): sudoedit /etc/searxng/settings.yml # Start server when needed: systemctl start searxng.service # Or automatically start the server whenever you login: systemctl enable searxng.serviceSo do you just leave you computer on all the time or do you only self host when you turn it on for personal use.
At the moment it is just for my personal use on my own single computer. It is local only and I cannot access it from local network either.
My plan is to figure out how to set it up securely for access on other devices in the house. But for that I would need a dedicated little server computer that runs 24/7. Maybe an used laptop, maybe a Raspberry Pi, but right now I can’t afford it. I have a VERY old laptop and old Raspberry Pi 3b. I’m not sure if they are capable enough for this task. I have no plans to do a host for the internet.
Just noting you can have searxng on rhel and mint as well, I know those from experience.
Oh sure, I wasn’t implying its Archlinux only or anything like that. There are plenty ways to install SearxNG on other distributions, including using Docker in example. I just found the installation and setup in Archlinux thanks to the AUR package extremely easy, as it is not very different from installing any other package.
Suggest adding keyboard to the chart. Replace google or other proprietary keyboard with fossify keyboard or heliboard. No keyboard should need or be granted internet permissions.
Already use heliboard
Florisboard also exists, which has more features than e.g. Fossify.
I use Unexpected Keyboard because it lets me write in many different languages with the same layout, and I don’t have to go on an expedition to find a special glyph.
Good to have options. I prefer fossify keyboard mostly because it just does what it needs without ‘added value’ features.












