Comment on

<- View Parent
ReversalHatchery@beehaw.org ⁨1⁩ ⁨year⁩ ago

Isn’t piling on browser extensions generally considered bad practice as it increases your attack surface (bad for security) and makes you more easy to fingerprint (bad for privacy)?

I read this very often, but I’m not really sure if it’s strictly true.
An addon only increases your attack surface if it processes data sent by the website, and it only makes you easier to fingerprint if it does something to the website or it’s observable environment.

A few examples:

So my point is that there’s a plenty of addons that don’t need to do anything with the website itself to be useful, and even if it does something with it, it does not necessarily make you more fingerprintable.

That being said, it’s also important to mention that an addon could do something you don’t know about, so without asking others or yourself reading it’s code (it’s human readable, download the XPI file from the addon store and unzip it (it is a zip file actually)).

source
Sort:hotnewtop