Go to file
kkapsner b1aeaaf92e Changes for release submission 2019-07-06 12:44:12 +02:00
.documentation Update description.txt 2019-05-17 11:19:35 +00:00
.github Improved issue template 2017-12-17 12:00:09 +01:00
.tools Added tabs in options page 2019-06-29 16:55:26 +02:00
.vscode Added auto update for beta versions 2019-06-09 13:11:16 +02:00
_locales Added tabs in options page 2019-06-29 16:55:26 +02:00
browserAction Unified action pages and fixed display issues 2019-05-03 23:17:35 +02:00
icons Added whitelist inspection 2019-05-04 01:12:45 +02:00
lib Detect when browser.contextualIdentities.onRemoved is not supported 2019-06-25 08:21:34 +02:00
options options: moved "Settings" to "General" group 2019-07-03 13:44:38 +02:00
pageAction Enabled whitelisting of local files 2019-06-25 23:22:55 +02:00
test Improved protection of (i)frame properties 2019-06-04 08:42:31 +02:00
themes Fixed collision with "arrow" in select. 2019-05-04 01:17:46 +02:00
versions Added tabs in options page 2019-06-29 16:55:26 +02:00
.eslintrc.json Linting 2019-01-24 15:43:20 +01:00
.gitattributes 💥🐫 Added .gitattributes 2014-07-31 03:04:18 +02:00
.gitignore Added auto update for beta versions 2019-06-09 13:11:16 +02:00
LICENSE.txt Added MPL 2015-01-16 13:05:40 +01:00
README.md Added auto update for beta versions 2019-06-09 13:11:16 +02:00
canvasblocker.xpi Changes for release submission 2019-07-06 12:44:12 +02:00
manifest.json Version 0.5.12 2019-06-23 20:46:35 +02:00
releaseNotes.txt Updated release notes 2019-07-06 11:52:58 +02:00

README.md

This add-on allows users to prevent websites from using some Javascript APIs to fingerprint them. Users can choose to block the APIs entirely on some or all websites (which may break some websites) or just block or fake its fingerprinting-friendly readout API.

IMPORTANT: you should only have ONE addon/setting set that protects an API. Otherwise you could face massive performance issues. (E.g. EclipsedMoon for Palemoon has 'canvas.poison' which is known to cause issues: https://github.com/kkapsner/CanvasBlocker/issues/253#issuecomment-459499290) But setting privacy.resistFingerprinting to true is fine.

More information on fingerprinting can be found at:

The different block modes are:

  • fake: Canvas Blocker's default setting, and my favorite! All websites not on the white list or black list can use the protected APIs. But values obtained by the APIs are altered so that a consistent fingerprinting is not possible
  • ask for permission: If a website is not listed on the white list or black list, the user will be asked if the website should be allowed to use the protected APIs each time they are called.
  • block everything: Ignore all lists and block the protected APIs on all websites.
  • allow only white list: Only websites in the white list are allowed to use the protected APIs.
  • block only black list: Block the protected APIs only for websites on the black list.
  • allow everything: Ignore all lists and allow the protected APIs on all websites.

Protected "fingerprinting" APIs:

  • canvas 2d
  • webGL
  • audio
  • history
  • window (disabled by default)
  • DOMRect
  • navigator (disabled by default)

Special thanks to:

  • spodermenpls for finding all the typos
  • Thorin-Oakenpants for the icon idea
  • anthologist and unbranched for the Italian translation
  • Maleficient for the French translation
  • yfdyh000 for the Chinese translation
  • micrococo for the Spanish translation
  • STim99 for the Russian translation

Beta versions can be found at https://canvasblocker.kkapsner.de/versions/.

If you want to support this addon you can donate to the following addresses:

  • bitcoin: 159Y9BLcfHyrp6wj6f3syEuk92xkRVTiie
  • bitcoin cash:qrchnszkdwv9knhg9wjucrqy43rpl4klkq7jhkc8dz
  • monero: 482QYZaagALWtPmwbptwBaexDYmcVsJrhJp2VVjTgjYA3Kk1YyMdSg9Wz2qz1Gh31E843PFVCDWS4hR4Bjf6ipWuB9iz2cs