Do Not Track

Alcuni anni fa il W3C (World Wide Web Consortium) ha creato per i browser un meccanismo per informare i web server che preferiscono non essere tracciati. Questo è ottenuto attraverso l'inclusione nella richiesta al server di un header denominato: DNT (Do Not Track).

L'header DNT in realtà non garantisce nessuna privacy dal momento che la maggior parte dei web server lo ignora, come ad esempio Yahoo, Google, Microsoft e Facebook, che ignorano tutti almeno alcuni degli header DNT. A partire dalla versione 3.8 in Privacy Browser non è più presente l'opzione per inviare intestazioni DNT.

Modifica delle URL

Privacy Browser removes tracking IDs and AMP (Accelerated Mobile Pages) redirects from URL queries. There is a blog post that is updated with the current list of modifications. URL modification can be turned off in the settings if it is causing issues.

X-Requested-With Header

Google programmed Android’s WebView to send an X-Requested-With header with every request. The value of the X-Requested-With header is set to the application ID, which in the case of Privacy Browser is com.stoutner.privacybrowser.standard. Currently, it isn't possible to remove this header, but the value can be changed. By default, Privacy Browser sends a null (empty) value for the X-Requested-With header. Even though the spec allows for null header values, some web servers don't like them, so Privacy Browser has the option to revert to the default behavior of sending the app ID. Because this setting is cached when a URL is first loaded, and isn't changed when reloading a page or navigating history, changes to this setting may not be applied until Privacy Browser is restarted. There is a blog post with additional information. The X-Requested-With header will be completely removed in the 4.x series with the release of Privacy WebView.