Archive-Opsec

Search

/ to open · ↑↓ to move · Enter to open

Indexes guides, archive entries, news, resources and sources. Nothing is sent to a third party.

Guides

Guides explain a subject and recommend an approach. They are written to be read in order, they state how hard they are, and they finish with the documents they were written from. Nothing here is a product review.

Start here

Guide Browser

Browser Fingerprinting (Guide)

How a device gets identified from the shape of its requests, what resists it, and what a fingerprint is worth.

2 min · Intermediate

Guide Metadata

Metadata Explained (Guide)

A worked primer on data about data: what leaks even with perfect encryption, and the measures that actually reduce it.

3 min · Introductory

Guide Password Managers

Using a Password Manager (Guide)

Why password reuse is the main threat, what to look for in a manager, and how to migrate without a lockout.

3 min · Introductory

Guide Privacy

What Privacy Actually Means (Guide)

A working definition of privacy, the four kinds people mean, and why the word gets used to sell things.

3 min · Introductory

Guide OPSEC & Threat Modeling

Define Your Threat Model (Guide)

Work out who you are protecting something from before you install anything, using a written, revisable model.

3 min · Introductory

Guide Tor

What Tor Is (Guide)

How onion routing works, what it guarantees, what it does not, and the misconceptions that cause harm.

3 min · Introductory

Guide VPNs

What VPNs Do and Do Not Do (Guide)

The single change a VPN makes, the trust it transfers rather than removes, and how to read a provider claim.

3 min · Intermediate

Start here. What privacy actually means, who it protects, and how to think about it without jargon.

Decide what you are protecting, from whom, and what "good enough" looks like before you configure anything.

What a browser reveals about you by default, and how fingerprint-resistant browsers reduce it.

Search queries are a surprisingly complete record of your interests.

End-to-end encryption, metadata, and the difference between the two.

Why email is hard to secure, and which compromises are actually worth making.

The single highest-value change most people can make to their security.

Passwords, one-time codes, passkeys, and how to add a second factor without losing access.

What a VPN changes, what it does not, and how to tell a good one from a marketing page.

Onion routing, its guarantees, its limits, and the browser built around it.

Name resolution leaks your browsing to the network, and how to close that leak.

Baseline hardening: updates, encryption, permissions, and reducing telemetry.

Phones are the most capable trackers most people carry.

Data about data is still data. A short primer with worked examples.

Encryption in transit and at rest, key management, and the limits of both.

Your local network sees more than your ISP does. What to do about it.