this post was submitted on 13 Mar 2026
57 points (98.3% liked)
Privacy
47127 readers
1389 users here now
A place to discuss privacy and freedom in the digital world.
Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.
In this community everyone is welcome to post links and discuss topics related to privacy.
Some Rules
- Posting a link to a website containing tracking isn't great, if contents of the website are behind a paywall maybe copy them into the post
- Don't promote proprietary software
- Try to keep things on topic
- If you have a question, please try searching for previous discussions, maybe it has already been answered
- Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
- Be nice :)
Related communities
much thanks to @gary_host_laptop for the logo design :)
founded 6 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
I mean all they can really see nowadays is the sni. Only thing isnt encrypted anymore. And yes their is encrypted hello bit nobody seems to be using it.
Sites are https so that is all encrypted set up DOH or DOT and your DNS is encrypted.
DoH is not as private as you think, that’s just how big tech positioned it.
DoH encrypts DNS queries between your browser and the DNS resolver, it does not hide your browsing activity from the DoH provider itself.
Google, cloudflare or any other 3rd party orgs still see your data.
I have an open source firewall on gitlab if you wanna take a look. Blocks some IPs - I know it’s not much but fuck Palantir - I made it so their site won’t load.
Blocks 50+ stalkerware apps as well as data broker trackers.
I want to go back to it so you can wire in through my VPS and build it as a mobile app to block Gemini and Apple Intelligence from scraping your photos and texts and everything to train their models.
Well how could it? Of course the DNS provider needs to know the domain you want to look up - otherwise how would they be able to look it up?
Still it would fulfill the OP's wish: He wants to hide traffic from his ISP, so if he chooses a DNS resolver other than his ISP, and encrypt transmission, goal is achieved.
sni may be enough depending on what a given oppressive isp/government wants to do.