Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

https://github.com/Narayana108/awesome-privacy

A list of opensource privacy centered software, tools and web sites
https://github.com/Narayana108/awesome-privacy

List: awesome-privacy

awesome-list privacy security

Last synced: 16 days ago
JSON representation

A list of opensource privacy centered software, tools and web sites

Awesome Lists containing this project

README

        

# Awesome Privacy
A list of opensource privacy centred software, tools, hardware, services, web sites and educational resources.

*This list is very lenient list meant for people on all levels.*

- [Awesome Privacy](#awesome-privacy)
- [Things to avoid](#things-to-avoid)
- [Things to do](#things-to-do)
- [Search engines](#search-engines)
- [Communication](#communication)
- [Chat](#chat)
- [Youtube alternatives](#youtube-alternatives)
- [Social Media](#social-media)
- [Video](#video)
- [Email](#email)
- [Distributed Web](#distributed-web)
- [Web Browsers](#web-browsers)
- [Web Browser extensions](#web-browser-extensions)
- [Storage](#storage)
- [VPN](#vpn)
- [Operating Systems](#operating-systems)
- [Andriod Roms](#andriod-roms)
- [Andriod Apps](#andriod-apps)
- [Password managers](#password-managers)
- [Hosting](#hosting)
- [Pastebin](#pastebin)
- [Hardware](Hardware)
- [Other](#other)
- [Linux Tools](#Linux-tools)
- [Related Awesome lists](#related-awesome-lists)
- [Education](#education)
- [Documentaries](#documentaries)
- [Videos from CCC](#related-videos-from-ccc)
- [Youtube videos and channels](#youtube-content)
- [Websites](#websites)
- [Basic privacy tutorials](#basic-privacy-tutorials)
- [Other sites](#other-sites)

# Things to avoid
- All services and products from big monopolies like these:
- Apple
- Microsoft
- Google, Youtube, Gmail etc
- Facebook & Whatsapp
- Amazon
- Twitter
- etc..
> The internet has become colonized with a small number of companies
> controlling the flow of information and explioting its users.
> Their ideologies are centerend around greed and control.
> Governments also cant keep them accountable for their actions for a few
> reasons, one being large corporations control the governments through
> money and they work hand in hand together.


# Things to do
- Educate yourself. Darkness is suffocating the world due to ignorance. See the [education](#education) section.
- Promote and use open source technologies, privacy first software and decentralisation.
- Illuminate the mind, body and spirit.

# Search engines
> Google alternatives
- [DuckDuckGo](https://duckduckgo.com) - Search engine that doesn't track you.
- [StartPage](https://www.startpage.com/) - Search engine that returns google results
- [Searx](https://www.searx.me) - non tracking internet metasearch engine

# Communication
## Chat
- [Riot](https://riot.im) - Feature rich, encrypted chat messenger for phone and pc
- [Keybase](https://keybase.io/) - Feature rich, encrypted chat messenger for phone and pc
- [Semaphor](https://spideroak.com/semaphor/) - Feature rich, encrypted chat messenger for phone and pc

## Youtube alternatives
>Youtube does not support freespeech and may remove your videos if they dont like
>it.
>These dont have ads nor algorithms to suppress or promote information
- [lbry](https://lbry.tv/) - decentralised
- [bitchute](https://www.bitchute.com/)
- [bittube](https://bittube.tv/)
- [dtube](https://d.tube/) - you can change the video quality here
- [Invidious](https://www.invidio.us) - watch youtube anonymously
- [libretube](https://libre.tube)
- [odysee](https://odysee.com/)

## Social Media
>Facebook and twitter do no support free speech, your content may be removed if
>they dont like it
>These dont have ads, data mining and algorithms
- [mastodon](https://mastodon.social/) - decentralised facebook twitter hybrid app
- [minds](https://www.minds.com/)
- [disporia](https://diasporafoundation.org)
- [hive](https://hive.blog/) - blockchain social media platform - blogging - you can earn
crypto currency for your content
- [steemit](https://steemit.com) - blockchain social media platform - cross between
Reddit and Quora - you can earn crypto currency for your content

## Video
> Video conferencing software and chat
- [jitsi](https://jitsi.org/)
- [Tox](https://tox.chat)
- [Ekiga](http://www.ekiga.org/)
- [Jami](https://jami.net/)

## Email
>Email is not secure ! Avoid email if possible. If it cant be avoided use
>OpenPGP to encrypt your emails, but even OpenPGP is still vulnerable to some hacks.
>The follow can also help prevent some hacks:
>1. Be careful with attachments
>2. Disable HTML
>3. decrypt and encypt emails outside of the mailclient
>4. Don't cite text in reply
>5. Use mutt or neomutt email client

>I would recommend
>posteo.de or mailbox.org (1 Euro / month).
>Never take an American, Australian, Canadian, British or New Zealandish provider.
>European online privacy laws are the best at the moment. The Netherlands are
>doing a good job in enforcing them. Germany isn't bad either. But the whole
>climate in Europe is changing. Law enforcement agencies in Europe want direct
>access to e-mail providers; we are not there yet.
>Create an alias or temporary alias for every website (like takealot.co.za) you
>create a new account. I know, this is cumbersome, but there is no other way
>around.
- [ProtonMail](https://protonmail.com/) - Secure email based in Switzerland.
- [Tutanota](https://tutanota.com) - Based in Germany – 1 GB free; 10 GB Pro
- [Postio](https://posteo.de)
- [Mailbox](https://mailbox.org)
- [disroot](https://disroot.org)
- [mailfence](https://mailfence.com/)
- [Thunderbird](https://www.thunderbird.net/) - email client
- [mutt](http://www.mutt.org/) - cli based email client
- [neomutt](https://neomutt.org/) - cli based email client

# Distributed web
- [zeronet](https://zeronet.io/) - credentialed internet and web hosting
- [ipfs](https://ipfs.io/) - distributed web

# Web Browsers
- [Firefox](https://www.mozilla.org/en-US/firefox/new/) - Needs extensions and one can also set more strict privacy browsing rules within preferences
- [Brave](https://brave.com/) - Really nice browser for normies, doesnt need configuration
- [bromite](https://www.bromite.org/)
- [Tor Browser](https://www.torproject.org) - Most secure browser, all traffic is encrypted over the tor network

# Web Browser Extensions
> Be careful with addons. You cannot trust them but you also cannot use a browser without them.
- [Browser privacy checker](https://panopticlick.eff.org/)
- [Privacy Badger](https://www.eff.org/privacybadger) Privacy Badger blocks spying ads and invisible trackers.
- [HTTPS Everywhere](https://www.eff.org/https-everywhere) HTTPS Everywhere is a Firefox, Chrome, and Opera extension that encrypts your communications with many major websites, making your browsing more secure.
- [uBlock Origin](https://github.com/gorhill/uBlock) :star2: An efficient blocker for Chromium and Firefox. Fast and lean.
- [Click&Clean](https://www.hotcleaner.com/clickclean_chrome.html) - Private data cleaner for Chrome and Firefox.
- [CanvasBlocker (FF)](https://addons.mozilla.org/en-US/firefox/addon/canvasblocker/) - Prevents fingerprinting in Firefox
- [Cookie AutoDelete](https://addons.mozilla.org/en-US/firefox/addon/cookie-autodelete/) - Deletes unused cookies on tab close
- [Firefox Profilemaker](https://ffprofile.com/) - Creates privacy focused Firefox profiles
- [Random user agent](https://addons.mozilla.org/en-US/firefox/addon/random_user_agent/)
- [umatix](https://addons.mozilla.org/en-US/firefox/addon/umatrix/?src=search)- deny cookies, XHR, frames, scripts also for first parties, activate is manually only if necessary
- [decentraleyes](https://addons.mozilla.org/en-US/firefox/addon/decentraleyes/?src=search) - protection against tracking

# Other browser settings
- https://github.com/pyllyukko/user.js - take your time with this one
- Make sure in `about:config` "privacy.resistFingerprinting" is set to "true"

# Storage
- [Sia](https://sia.tech/get-started) - Decentrilesed
- [SpiderOak One Backup](https://spideroak.com/one/) - Highly recommended
- [Mega](https://mega.nz/) - Not highly recommended but still better than Dropbox, googledrive, onedrive, etc.

# VPN
>You want to use a VPN, always!
>And also as always, you can not trust VPN providers, but I trust Internet service
>provicers (ISPs), like Vodacom, MTN, Telkom, etc, even less.
>But back to "always". If your VPN is offline all of your traffic should not make
>it through. There are ways of doing this. I mainly use SOCKS5 proxies.
>It works like this. If your VPN is online it also provides a SOCKS5 proxy on a
>port on your machine. You can now redirect your browsers traffic (for instance
>with the addon switchyOmega) through that proxy. If the VPN dies, your browser
>won't be able to send requests. You want this for your whole system and all
>applications. Read about this or ask me.

>I really like mullvad.net. Besides openVPN they offer
>wireguard (this deserves a whole section) c) really good support

>Don't trust free services.

>If you can, use Tor instead of a VPN, its much more secure and private, tho it
>is slower

- [VPN Comparison list](https://docs.google.com/spreadsheets/d/1L72gHJ5bTq0Djljz0P-NCAaURrXwsR1MsLpVmAt3bwg/edit#gid=0)

# Operating Systems
> Use GNU/Linux ! There are many many different flavours to choose from
depending on your needs and wants.
- [TailsOS](https://tails.boum.org/) - Most secure and private, boots off a usb
- [QubeOS](https://www.qubes-os.org/) - Also very secure and private
- [distrowatch](https://distrowatch.com/) - A list of the most popular GNU/Linux OS's
- Beginners:
- [Manjaro Linux](https://manjaro.org/)
- [Pop!_OS](https://system76.com/pop)
- [Linux Mint](https://linuxmint.com/)
- [Ubuntu](https://ubuntu.com/download/desktop)
- [LUbuntu](https://lubuntu.me/)
- [Elementary](https://elementary.io/)
- etc..
- Advanced:
- [Debian](https://www.debian.org/distrib/)
- [Arch Linux](https://www.archlinux.org/)
- [Void Linux](https://voidlinux.org/)
- [Gentoo](https://www.gentoo.org/)
- [NixOS](https://nixos.org/)
- [TrueOS](https://www.trueos.org/)
- [Parabola](https://www.parabola.nu/)
- etc..

# Android Roms
> Phone operating systems
- [LineageOS](https://lineageos.org) - Android fork without google dependencies (you can install them optionally).
- [GrapheneOS](https://grapheneos.org/) - Android-based, security-hardened, privacy focused (can't install google dependencies)

# Android apps
- [apk verification tool](https://apkpure.com/apk-signature-verification)
- [F-Droid](https://f-droid.org/) - Google playstore alternative, contains only opensource apps
- [Signal](https://whispersystems.org/) - Free peer reviewed scalable encryption chat. (Whatsapp alternative)
- [Briar](https://briarproject.org/) - Secure messaging
- [WebApps](https://f-droid.org/en/packages/com.tobykurien.webapps/) - turns mobi/web app sites into secure apps
- [Bromite for F-Droid](https://www.bromite.org/fdroid) - private browser
- [DuckDuckGo Privacy Browser](https://f-droid.org/en/packages/com.duckduckgo.mobile.android/) - private browser
- [Firefox Focus](https://f-droid.org/en/packages/org.mozilla.klar/) - private browser
- [Tor](https://guardianproject.info/apps/org.torproject.torbrowser/) - private browser that anonymizes and encrypts traffic through tor network
- [Orbit](https://guardianproject.info/apps/orbot/) - encrypt and anonymous internet traffic through tor
- [New Pipe](https://f-droid.org/en/packages/org.schabi.newpipe/) - add free lightweight youtube app
- [OsmAnd](https://osmand.net/) - offline mobile maps & navigation
- [K-9 client](https://k9mail.app/) - email client
- [Fair Email client](https://email.faircode.eu/) - email client
- [andOTP](https://github.com/andOTP/andOTP) - two-factor authentication
- [freeOTP](https://freeotp.github.io/) - two-factor authentication
- [OTP Authenticator](https://f-droid.org/en/packages/net.bierbaumer.otp_authenticator/) - two-factor authentication
- [Scrambled Exif](https://f-droid.org/app/com.jarsilio.android.scrambledeggsif) - Remove the metadata from your pictures before sharing them
- [Exodus Privacy](https://f-droid.org/app/org.eu.exodus_privacy.exodusprivacy) - Show trackers and permissions from other installed apps
- [Netguard](https://www.netguard.me/) - application firewall (Android)
- [Lockdown](https://lockdownhq.com/) - application firewall (iOS)
- [Simple Apps](https://www.simplemobiletools.com/) - all can be found on F-Droid

# Password managers
- [Bitwarden](https://bitwarden.com/)
- [KeepassXC](https://keepassxc.org/)
- [gopass](https://www.gopass.pw/) - team sharing cli password manager

# Hosting
- [Uberspace](https://uberspace.de/en/) - really epic sever provider(shared server hosting)

# Pastebin
- [Privatebin](https://privatebin.info/) - pastebin, server has zero knowledge of pasted data

# Other
- [Nextcloud](https://www.nextcloud.com) - self-hosted productivity platform
- [Veracrypt](https://www.veracrypt.fr) - disk encryption software for Windows, Mac OSX and Linux.
- [Cryptomator](https://cryptomator.org/) - encrypt backups before sending it to the cloud for Linux, MacOS and Windows
- [LibremOne](https://librem.one/) - paid for secure chat, email, vpn, social media, etc.

# Hardware
- https://www.pine64.org/ - Opensource phones, laptops, smartwatches, IOT, IP camera, etc
```
The PinePhone aims to be fully open source in its drivers and bootloader. Despite this, due to the scarcity of open source components for cellular and wireless connectivity, the firmware for the Realtek RTL8723CS WiFi/Bluetooth, as well as the optional auto-focus firmware for the OmniVision OV6540 back camera, remain proprietary software. In order to mitigate potential threats to privacy, these components communicate with the rest of the system only over serial protocols, such as USB 2.0, I2S and SDIO, which do not allow direct memory access (DMA). Use of these protocols also permits them to be physically disconnected via kill switches.
```

- https://shop.puri.sm/ - Servers, Laptops, phones, etc. Almost no proprietary software. Kill switches are also available on some units
```
Laptops - At the firmware level, we utilize Coreboot instead of a proprietary BIOS/UEFI, a huge advancement for current high-end laptops. Within coreboot there are still some binaries though.

We are “as close to free software foundations respects your freedom as possible with current Intel CPUs” but are spending real money to advance that toward complete binary freedom.
```

## Linux Tools
- full disk encryption
- linux hardened kernel
- [Security](https://wiki.archlinux.org/index.php/Security)
- [firejail](https://wiki.archlinux.org/index.php/Firejail) - running environment of untrusted applications using Linux namespaces
- [apparmor](https://wiki.archlinux.org/index.php/AppArmor) - enforcing a specific rule set on a per application basis
- [systemd-nspawn](https://wiki.archlinux.org/index.php/Systemd-nspawn) - may be used to run a command or OS in a light-weight namespace container
- [unbound](https://wiki.archlinux.org/index.php/Unbound) - local DNS cach
- [tinc](https://wiki.archlinux.org/index.php/Tinc) - VPN server and client
- [wireguard](https://www.wireguard.com/) - VPN server and client
- [openvpn](https://wiki.archlinux.org/index.php/OpenVPN) - VPN server and client
- [sshfs](https://wiki.archlinux.org/index.php/SSHFS) - client for mounting remote directories over a Secure Shell connection
- [masscan](https://github.com/robertdavidgraham/masscan) - mass IP port scanner (Monitor large networks)
- [nmap](https://wiki.archlinux.org/index.php/Nmap) - IP port scanner (Monitor self or small network)
- [zmap](https://zmap.io/) - collection of tools that enable researchers to perform large-scale studies of the hosts and services
- [iptables](https://wiki.archlinux.org/index.php/Iptables) - advanced firewall
- [ufw](https://help.ubuntu.com/community/UFW) - simple firewall
- [firewalld](https://www.digitalocean.com/community/tutorials/how-to-set-up-a-firewall-using-firewalld-on-centos-8) - simple firewall
- [encfs](https://github.com/vgough/encfs) - provides an encrypted filesystem in user-space (created on top of an existing file system)
- [creat_ap](https://github.com/oblique/create_ap) - Create an access point for others to connet to
- [mac adress spoofing](https://wiki.archlinux.org/index.php/MAC_address_spoofing)
- [dig](https://linux.die.net/man/1/dig) - DNS lookup utility
- [socat](https://linux.die.net/man/1/socat) - multipurpose relay (SOcket CAT)
- [netcat](https://linux.die.net/man/1/nc) - arbitrary TCP and UDP connections and listens
- You want your cache to be a tmpfs which means it lives in RAM -> faster and
deletes itself at reboot.
```
## Delete your cache
rm -r $HOME/.cache/*
# put this in your /etc/fstab (change )
tmpfs /home//.cache tmpfs noatime,nodev,nosuid,size=1G
# mount the tmpfs sudo mount -a
```
# Related awesome lists
- [alternate-internet](https://github.com/redecentralize/alternative-internet) - This is gold !
- [privacy tools](https://www.privacytools.io/) - Really epic comprehensive list of tools
- [awesome-vpn](https://github.com/hugetiny/awesome-vpn) - A curated list of awesome free VPNs and proxies.
- [awesome-privacy](https://github.com/KevinColemanInc/awesome-privacy) - Limiting personal data leaks on the internet
- [personal-security-checklist](https://github.com/Lissy93/personal-security-checklist) - A curated list of links and tips, to protect privacy and improve security
- [Awesome anti censorship list](https://github.com/danoctavian/awesome-anti-censorship)
- [Awesome list of piracy](https://github.com/Igglybuff/awesome-piracy#how-to-use-this-list)
- [Complete list of Google alternatives](https://www.techspot.com/news/80729-complete-list-alternatives-all-google-products.html)

# Education

## Documentaries
- [citizen four](https://youtu.be/SVwnD9KKm6k) - Edward Snowden
- [zero days](https://youtu.be/PJBBRUraKgo) - Stuxnet, computer malware that the U.S. and Israel unleashed to destroy a key part of an Iranian nuclear facility
- [the intenets own boy](https://youtu.be/9vz06QO3UkQ) - Aaron Swartz
- [Cambridge Analytica Uncovered: Secret filming reveals election tricks](https://youtu.be/mpbeOCKZFfQ)

## Related Videos from CCC
> Some videos on security, hacking, privacy
- [security_analysis_of_estonia_s_internet_voting_system](https://media.ccc.de/v/31c3_-_6344_-_en_-_saal_1_-_201412281400_-_security_analysis_of_estonia_s_internet_voting_system_-_j_alex_halderman)
- [where_in_the_world_is_carmen_sandiego](https://media.ccc.de/v/33c3-7964-where_in_the_world_is_carmen_sandiego)
- [shopshifting](https://media.ccc.de/v/32c3-7368-shopshifting)
- [do you thing thats funny](https://media.ccc.de/v/30C3_-_5376_-_en_-_saal_1_-_201312271130_-_do_you_think_that_s_funny_-_lizvlx)
- [advanced_interconnect_attacks](https://media.ccc.de/v/camp2015-6785-advanced_interconnect_attacks)
- [attacking_end-to-end_email_encryption](https://media.ccc.de/v/35c3-9463-attacking_end-to-end_email_encryption)
- [Surveillance in and around the Ecuadorian embassy in London](https://media.ccc.de/v/36c3-11247-technical_aspects_of_the_surveillance_in_and_around_the_ecuadorian_embassy_in_london) - Details about the man hunt for Julian Assange and Wikileaks
- [What we can learn from Hong Kong](https://media.ccc.de/v/36c3-10933-what_the_world_can_learn_from_hongkong)

## Youtube content
- [The Hated One Youtube Channel](https://www.youtube.com/channel/UCjr2bPAyPV7t35MvcgT3W8Q/featured) - epic resource containing all you need to know about privacy
- [Fixing Social Media for Good](https://www.youtube.com/watch?v=oOiCACmjKBM)
- [MentalOutlaw Youtube Channel](https://www.youtube.com/c/MentalOutlaw/featured) - Has some good privacy and linux content

## Websites
- [Stop using Facebook](https://www.stopusingfacebook.co/)


## Basic privacy tutorials
- [How to protect your online privacy in 2020 | Tutorial](https://youtu.be/jxeeKKfjb5o)
- [Ultimate smartphone security guide | How to secure your phone tutorial](https://youtu.be/m_SN1CB3Kts)
- [How to protect privacy on your phone in 5 minutes | Tutorial for normies](https://youtu.be/tkY9dhOF2WU)

# Other sites
- [Opensource ecology](https://www.opensourceecology.org/)
- [riseup](https://riseup.net)
- [EFF](https://www.eff.org/)
- [libre-soc](https://libre-soc.org/) - open source hardware project
- [edri](https://edri.org/newsletters/) - European digital rights

#### Feel free to make a pull request to improve this list :)